龙门AI超级助手 - 隐私政策 / Privacy Policy

适用于:Chrome Extension / 龙门AI超级助手

最后更新日期 / Last Updated: April 13, 2026

中文版本

欢迎使用“龙门AI超级助手”Chrome 插件(以下简称“本插件”)。 本隐私政策用于说明您在使用本插件过程中,我们如何处理与插件功能相关的信息。 如您安装、访问或使用本插件,即表示您已阅读并理解本政策。

1. 插件功能概述

本插件用于在 Chrome 浏览器中便捷访问和使用“龙门AI超级助手”的相关功能,包括但不限于:

  • AI 对话、智能体调用、辅助问答等能力;
  • 与您的业务系统进行身份集成、能力集成或页面级集成;
  • 插件配置、偏好设置、界面状态保存;
  • 根据用户主动操作,在当前页面中触发与插件功能相关的处理。

2. 我们可能处理的信息类型

信息类型 说明
本地配置数据 例如插件偏好设置、界面配置、功能开关、最近一次选择的选项等。通常保存在浏览器本地,仅用于改善使用体验和维持插件正常运行。
认证相关信息 OAuth 本插件不直接提供账号注册或密码登录功能。对于需要认证的功能,您可能会被跳转或接入您所属系统的 OAuth 认证流程。插件可能会在本地或运行时环境中临时使用必要的认证状态、会话标识或凭证信息(如 token),仅用于维持登录状态和调用已授权功能。
用户主动输入或提交的内容 例如您在 AI 对话、智能体调用、提示词输入、页面选中文本、业务集成输入框中主动输入、选中或提交的文本内容。这些内容可能会被发送至后端服务以生成结果或完成功能处理。
技术运行信息 例如请求时间、接口调用状态、错误信息、浏览器基础环境信息、版本信息、必要的安全审计日志等,用于保障服务稳定性、安全性和问题排查。
页面上下文信息 如插件功能需要在当前页面执行操作,可能会读取您当前页面的有限上下文信息。此类读取仅在用户主动触发插件功能时发生,并以实现该功能所必需的最小范围为限。

3. 我们如何使用这些信息

我们仅在实现本插件核心功能和保障安全稳定运行所必需的范围内使用上述信息,主要用途包括:

  • 保存并同步您的插件本地设置与使用偏好;
  • 识别您的登录状态,并与已授权的业务系统完成身份集成;
  • 处理 AI 请求、智能体调用、页面辅助操作和相关功能请求;
  • 预防滥用、保障账号安全、开展审计追踪及排查故障;
  • 提升服务可用性、兼容性与功能体验。

我们不会将您的信息用于与本插件核心功能无关的用途,也不会将其出售给任何第三方。

4. 关于登录与身份认证

本插件不直接收集、保存您的账号密码。 当您使用需要身份认证的功能时,认证通常由您所属系统或相关业务平台通过 OAuth 或其他统一身份认证机制完成。

为了在插件中维持登录状态、识别授权结果并调用已授权接口,插件可能会读取、传递、缓存或临时使用必要的认证状态信息或令牌信息。 这些信息仅用于实现认证后的业务功能,不用于广告、画像或无关用途。

5. 关于数据传输

当您主动使用 AI 对话、智能体、问答或其他模型相关能力时,您提交的内容可能会被发送至我们的服务器,或发送至经我们集成的模型服务/推理服务,用于生成回答、执行任务、返回功能结果或保障服务质量。

除非实现功能所必需,请不要主动输入与当前业务无关的敏感个人信息、账号密码、银行卡信息、身份证号等高敏感数据。

6. 信息共享与第三方服务

我们不会将您的信息出售给第三方,也不会将您的信息用于广告投放、跨站追踪或用户画像。

在以下情形下,为了实现您主动发起的功能请求,相关信息可能会被传输至对应服务:

  • 您所属系统的统一身份认证平台、OAuth 服务或单点登录系统;
  • 本插件关联的业务系统后端接口;
  • 用于提供 AI 能力的模型服务、推理服务或相关技术服务;
  • 为保障安全、审计、监控和故障排查所必需的技术服务组件。

上述共享均以完成您主动请求的功能为目的,并遵循最小必要原则。

7. 浏览器权限使用说明

本插件申请的浏览器权限仅用于实现必要功能,不会超范围使用。常见权限用途包括但不限于:

  • storage:用于保存插件本地设置、功能偏好、界面状态及必要配置;
  • activeTab / tabs:用于在用户主动触发时访问当前标签页、读取必要页面上下文、执行与插件功能相关的处理;
  • scripting:用于在当前页面注入或执行实现插件功能所需的脚本;
  • host permissions / 网络访问权限:用于访问已授权的业务系统、认证服务、AI 接口或插件后台服务;
  • identity 或相关认证权限(如适用):用于支持浏览器或系统级认证集成能力;
  • contextMenus / clipboard / notifications(如适用):仅在对应功能确有需要时使用。
实际权限以您正式发布版本的 manifest.json 为准。 若您未申请某项权限,请删除本政策中对应描述;若实际申请了额外权限,也应补充其用途说明。

8. 数据存储位置与保留期限

不同类型的信息可能存储在不同位置:

  • 插件配置和偏好类信息:通常存储在您的浏览器本地;
  • 认证状态或运行时缓存:可能以临时形式存在于浏览器、插件环境或服务端会话中;
  • 日志与审计信息:可能在服务端按安全与运维要求保存,用于故障分析和安全审计。

我们将根据功能实现需要、合同要求、系统配置、安全审计要求、法律法规义务及最小必要原则确定保留期限。 在超出必要期限后,我们将依法依规删除或匿名化处理相关信息。

9. 数据安全

我们会采取合理的技术与管理措施,尽力保护相关信息免遭未经授权的访问、披露、篡改、丢失或损坏,包括但不限于:

  • 访问控制与权限隔离;
  • 传输过程中的安全保护措施;
  • 必要的日志审计、异常监控与故障排查机制;
  • 按需进行安全更新与漏洞修复。

但请您理解,任何互联网传输或电子存储方式都无法保证绝对安全。

10. 您的选择与权利

在适用法律法规允许的范围内,您可能享有以下权利:

  • 了解我们处理您相关信息的方式;
  • 停止使用本插件,或清除浏览器中的本地插件数据;
  • 退出已登录状态,停止在插件中使用相关功能;
  • 就与身份认证、业务数据、日志留存相关的问题,联系您所属系统管理员或联系我们;
  • 在适用情况下,请求访问、更正、删除或限制处理相关信息。

11. 政策更新

我们可能根据产品功能变化、法律法规要求或业务调整对本隐私政策进行更新。 更新后的版本将在本页面发布,并自发布之日起生效。 如法律法规要求,我们也可能以适当方式向您提示重大变更。

12. 联系我们

联系主体:上海市上海中学

联系邮箱:shzximo2026@gmail.com

English Version

Welcome to the “Longmen AI Super Assistant” Chrome extension (the “Extension”). This Privacy Policy explains how information related to the Extension may be processed when you install, access, or use it. By using the Extension, you acknowledge that you have read and understood this Policy.

1. Overview of the Extension

The Extension is designed to provide convenient access to AI-powered features and system integrations within the Chrome browser, including but not limited to:

  • AI chat, agent invocation, assistant features, and related model-based capabilities;
  • Identity integration and business system integration;
  • Local configuration, preferences, and UI state management;
  • User-initiated actions performed in the current page context.

2. Categories of Information We May Process

Category Description
Local configuration data For example, extension settings, feature toggles, interface preferences, or the most recently selected options. This data is typically stored locally in the browser and used only to maintain functionality and improve user experience.
Authentication-related data OAuth The Extension does not directly provide account registration or password login. For authenticated features, users may be redirected to or integrated with an OAuth or single sign-on flow provided by their own system. The Extension may temporarily use authentication state, session identifiers, or credentials such as tokens only to maintain login state and access authorized features.
User-submitted content This may include text you actively type, select, submit, or send through AI prompts, agent requests, page interactions, or business integrations. Such content may be transmitted to backend services in order to generate responses or complete requested functions.
Technical operation data This may include request timestamps, API status, error messages, browser environment data, version details, and required security or audit logs for reliability, diagnostics, and security.
Page context data If needed for a requested feature, the Extension may access limited information from the current page context. Such access only occurs when triggered by the user and is limited to what is reasonably necessary for the requested function.

3. How We Use Information

We process information only to the extent reasonably necessary to provide core functionality, maintain service quality, and protect security. Typical purposes include:

  • Saving local settings, preferences, and extension state;
  • Recognizing login status and completing authorized identity integrations;
  • Handling AI requests, agent requests, page-level assistance, and related user-initiated functions;
  • Preventing abuse, protecting account security, supporting audit trails, and troubleshooting technical issues;
  • Improving compatibility, availability, and user experience.

We do not sell personal information, and we do not use your data for unrelated advertising or profiling purposes.

4. Authentication and Login

The Extension does not directly collect or store your account password. When authentication is required, login is typically handled by your organization’s backend system, identity platform, or business platform through OAuth or a similar authentication mechanism.

In order to maintain session state and access authorized features, the Extension may read, pass, cache, or temporarily use required authentication state or token data. Such information is used only for the requested functionality.

5. Data Transmission

When you actively use AI chat, assistant, agent, or other model-related capabilities, the content you submit may be transmitted to our backend systems or to integrated model/inference services in order to generate outputs, complete tasks, return results, or support service quality and reliability.

Unless required for the intended function, please do not enter highly sensitive information such as passwords, bank card data, government-issued identification numbers, or unrelated personal data into the Extension.

If your production environment relies on third-party AI APIs, hosted inference providers, or external agent platforms, it is recommended that you identify those categories more specifically before publication.

6. Sharing and Third-Party Services

We do not sell your information to third parties, and we do not use it for cross-site tracking, ad targeting, or unrelated profiling.

However, information may be transmitted to the following categories of services when necessary to complete a user-requested function:

  • Your organization’s authentication platform, OAuth provider, or single sign-on system;
  • Backend APIs associated with the Extension’s business integrations;
  • Model services, inference services, or related technical services used to provide AI features;
  • Security, audit, monitoring, and diagnostics components required for safe and reliable operation.

Any such transmission is limited to what is reasonably necessary to fulfill the requested feature.

7. Chrome Permissions

The Extension requests browser permissions only as needed for legitimate functionality. Common examples may include:

  • storage: to save local settings, preferences, and extension configuration;
  • activeTab / tabs: to access the currently active page when the user explicitly triggers an Extension feature;
  • scripting: to inject or execute scripts needed to implement requested functionality;
  • host permissions / network access: to communicate with authorized business systems, authentication services, AI services, or extension backend services;
  • identity or related auth permissions (if applicable): to support browser-level or system-level authentication flows;
  • contextMenus / clipboard / notifications (if applicable): only when such features are actually provided.
The final list of permissions is determined by the published manifest.json. If a permission is not used in your release, remove the related description from this Policy. If additional permissions are requested, explain them clearly here.

8. Storage Locations and Retention

Different categories of information may be stored in different places:

  • Settings and preference data are generally stored locally in the browser;
  • Authentication state or runtime cache may be stored temporarily in the browser, extension runtime, or backend session context;
  • Operational, security, or audit logs may be stored on backend systems for diagnostics, monitoring, and compliance purposes.

Retention periods may depend on technical necessity, contractual requirements, system configuration, security needs, audit requirements, and applicable law. When information is no longer needed, we will delete or anonymize it as appropriate.

9. Security

We use reasonable technical and organizational measures intended to protect information against unauthorized access, disclosure, alteration, loss, or destruction, including as appropriate:

  • Access control and permission isolation;
  • Security measures applied during transmission;
  • Audit logging, anomaly monitoring, and troubleshooting controls;
  • Ongoing maintenance, updates, and vulnerability remediation where applicable.

However, no internet transmission or electronic storage system can be guaranteed to be absolutely secure.

10. Your Choices and Rights

Subject to applicable law, you may have certain rights and choices, including:

  • Understanding how information related to your use of the Extension is processed;
  • Stopping use of the Extension or clearing locally stored extension data;
  • Signing out of authenticated features;
  • Contacting your system administrator or us regarding authentication, business data, or log retention questions;
  • Where applicable, requesting access, correction, deletion, or restriction of processing.

11. Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in functionality, legal obligations, or business practices. Updated versions will be posted on this page and become effective as of the stated update date. Where required by law, we may also provide additional notice of material changes.

12. Contact Us

Organization: Shanghai High School

Email: shzximo2026@gmail.com