Wealthline← 回到首頁
隱私權政策使用條款免責聲明

隱私權政策Wealthline Privacy Policy

生效日期:2026 年 10 月 8 日

Wealthline Privacy Policy (English)

Effective date: October 8, 2026 · App: Wealthline · Website: https://wealthline.haomeh.com · Developer: Harvey Chen

This privacy policy explains how Wealthline (wealthline.haomeh.com), a free, open-source personal asset tracking web app, accesses, uses, stores, shares and deletes Google user data. Wealthline lets you record bank balances, stocks, funds and crypto holdings and shows your total net worth and asset allocation. All of your data is stored only in your own Google Drive. Wealthline has no backend database, and its developer cannot see your data.

1. Google user data we access

When you sign in with Google, Wealthline requests only these scopes:

ScopeWhy Wealthline needs it
openidConfirms which Google account signed in
https://www.googleapis.com/auth/userinfo.emailReads your email address to show which account is signed in and to offer one-click sign-in next time
https://www.googleapis.com/auth/userinfo.profileReads your name and profile picture to show them in the account menu
https://www.googleapis.com/auth/drive.fileCreates the "We Wealth" folder and the we-wealth-data.json file in your Google Drive, then reads and updates that file. It can only access files this app created and cannot see any other file in your Drive

From these scopes Wealthline accesses:

  • your Google account email address, name and profile picture URL;
  • the single data file that Wealthline creates in your Google Drive (My Drive / We Wealth / we-wealth-data.json), which holds the accounts, balances, holdings, exchange rates, daily snapshots and edit log that you enter;
  • a short-lived OAuth access token (about one hour) used to call the Google Drive API on your behalf.

Wealthline does not access Gmail, Contacts, Calendar or any other file in your Google Drive.

2. How we use Google user data

Google user data is used only to provide the features you see in the app:

  • your email, name and picture are shown in the account menu so you know which account is signed in, and your email lets you sign in again with one click;
  • the Drive file is read to display your asset statistics and written when you press “Save”.

Wealthline does not use Google user data for advertising, does not sell it, does not use it for credit or lending decisions, does not build user profiles or databases from it, and does not let any person read it. Wealthline does not use Google user data, including data obtained through Google Workspace APIs, to develop, improve or train generalized or non-personalized AI or machine learning models.

3. How we share, transfer or disclose Google user data

We do not share, transfer or disclose Google user data with any third party. Google user data travels only between your browser and Google. To look up market prices, the browser sends only ticker symbols (for example 2330.TW) to the app's own quote relay on Cloudflare Workers, which asks Yahoo Finance, and only currency or coin codes to ExchangeRate-API and CoinGecko. These requests contain no Google user data, no amounts and no identity. Cloudflare hosts the website and may log technical data such as IP addresses under its own policy.

4. How we store and protect Google user data

  • Your asset data is stored in your own Google Drive and protected by your Google account's security. Wealthline keeps no copy on any server.
  • Sign-in information (access token, email, name and picture URL) is stored only in your browser's localStorage on your device, never on a server.
  • All traffic between your browser, Google and Wealthline uses HTTPS (TLS) encryption.
  • Wealthline only requests the narrow drive.file scope, so it cannot reach your other files.
  • The full source code is public on GitHub, so anyone can verify these statements.

5. Data retention and deletion

  • The Drive data file stays in your Drive until you delete it. Delete the "We Wealth" folder and empty the trash to remove it completely.
  • Sign-in information stays in your browser until you sign out. Signing out revokes the access token with Google and clears it. Clearing your browser's site data also removes it.
  • You can revoke Wealthline's access at any time at Google Account → Third-party apps & services.
  • Because the developer stores none of your data, there is nothing to delete on our side. If you have a deletion or privacy request, open an issue at GitHub Issues or contact the developer through GitHub.

6. Limited Use disclosure

Wealthline's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

7. Cookies and tracking

Wealthline uses no cookies, analytics, advertising or tracking technologies.

8. Children

Wealthline is not directed at children under 13 and does not knowingly process their personal data.

9. Changes to this policy

When this policy changes, the effective date above is updated, and every change is visible in the GitHub history.

10. Contact

Developer: Harvey Chen. Contact: GitHub Issues or https://github.com/zhChenOuO.

中文版

Wealthline(wealthline.haomeh.com)是一個開放原始碼的個人資產統計工具,讓你記錄銀行存款、股票、基金與加密貨幣,並換算成新臺幣看清資產配置。 我們的設計原則很簡單:你的資產資料只存在你自己的 Google Drive,作者沒有任何伺服器或資料庫保存它,也看不到它。 本政策說明本服務存取哪些資料、如何使用、存放、分享與刪除。英文版本在本頁上方,兩者內容相同。

一、適用範圍與聯絡方式

本政策適用於 https://wealthline.haomeh.com 上的 Wealthline 網頁應用程式。本服務由個人開發者 Harvey Chen 開發與維護,聯絡方式為 GitHub Issues 或作者的 GitHub 個人頁面。

二、我們向 Google 要求的權限

以 Google 帳號登入時,Google 會顯示授權畫面,請你同意以下權限。每個權限的用途如下:

權限(Scope)用途
openid確認你的 Google 帳號身分
https://www.googleapis.com/auth/userinfo.email讀取你的電子郵件地址,顯示目前登入的帳號,並讓你下次一鍵繼續登入
https://www.googleapis.com/auth/userinfo.profile讀取你的名稱與大頭貼,顯示在右上角的帳號選單
https://www.googleapis.com/auth/drive.file在你的 Google Drive 建立「We Wealth」資料夾與 we-wealth-data.json 資料檔,並讀取、更新這個檔案。只能存取本服務建立的檔案,看不到你雲端硬碟中的其他檔案

本服務不會要求其他任何 Google 權限,例如 Gmail、通訊錄、日曆,或讀取整個雲端硬碟的權限。

三、我們存取與處理哪些資料

  • Google 帳號基本資料:電子郵件、名稱、大頭貼網址。用途:顯示登入身分、一鍵繼續登入。
  • Google 存取權杖:Google 發給本服務、約一小時後失效的權杖,用來代表你呼叫 Google Drive API。
  • 你輸入的資產資料:帳戶名稱、類型、國家、各幣別餘額、持有標的代號與數量、匯率、每日資產快照與修改紀錄。用途:計算與呈現你的資產統計。

本服務不蒐集你的銀行帳號、密碼、身分證字號、交易憑證或任何金融機構的登入資訊。

四、資料如何使用

上述資料只用於提供你在畫面上看到的功能:登入、讀寫你的資料檔、計算總資產與資產配置、顯示歷史走勢。我們不會:

  • 出售、出租或與任何第三方分享你的資料;
  • 將資料用於廣告、行銷、信用評估或建立使用者檔案;
  • 將資料用於訓練任何人工智慧或機器學習模型;
  • 讓任何人(包括作者)閱讀你的資料。

五、資料存放在哪裡、保存多久

  • 資產資料:以 JSON 檔存放在你的 Google Drive:我的雲端硬碟 / We Wealth / we-wealth-data.json。由你自己保管,直到你刪除它為止。
  • 登入資訊:存放在你這台裝置瀏覽器的 localStorage,包括存取權杖(約一小時後失效)以及電子郵件、名稱、大頭貼網址。保存到你登出為止;登出時會向 Google 撤銷權杖並清除這些資料。
  • 作者的伺服器:沒有。本服務沒有後端資料庫,不會把你的資產資料或個人資料傳送、複製或保存到作者控制的任何地方。

六、資料傳送給哪些第三方

你的瀏覽器會直接連線到下列服務,傳送的內容僅限於完成該功能所需:

  • Google(登入、使用者資料、Google Drive API):讀寫你的資料檔。適用 Google 隱私權政策。
  • 報價查詢 /api/quote:本服務部署在 Cloudflare Workers 上的轉發程式,只收到股票代號(例如 2330.TW),再向 Yahoo Finance 查詢價格。不包含數量、金額或你的身分,也不記錄任何內容。
  • ExchangeRate-API(open.er-api.com)與 CoinGecko:查詢匯率與加密貨幣價格,請求中只有幣別或幣種名稱。
  • Cloudflare:網站託管服務。和任何網站一樣,託管商可能依其政策記錄連線的 IP 位址等技術資訊。

從 Google API 取得的資料(包括你的帳號資料與 Drive 檔案內容)不會傳送給上述 Google 以外的任何服務。

七、Google API 使用者資料:有限使用聲明

Wealthline 對於從 Google API 取得之資訊的使用與傳輸,遵守 Google API 服務使用者資料政策,包括其中的「有限使用」(Limited Use)規定。從 Google 取得的資料只用於提供或改善使用者看得到的功能;不會轉讓給第三方;不會用於廣告;除非取得你的明確同意、基於安全目的或為遵守法律,任何人都不會閱讀這些資料。

八、如何刪除資料與撤銷授權

  • 刪除資產資料:在 Google Drive 刪除「We Wealth」資料夾並清空垃圾桶,資料即完全移除。作者沒有副本,無需另外申請。
  • 清除本機登入資訊:在本服務中按「登出」,或清除瀏覽器的網站資料。
  • 撤銷 Google 授權:到 Google 帳戶的第三方連結 移除 Wealthline 的存取權。
  • 依中華民國《個人資料保護法》,你可以行使查詢、閱覽、更正、停止處理與刪除等權利。由於作者並未保存你的個人資料,這些權利大多可以透過上述方式自行完成;如仍有需要,請透過第一節的管道聯絡。

九、Cookie 與追蹤

本服務不使用 Cookie、分析工具、廣告或任何追蹤技術。localStorage 只用來保存上述登入資訊。

十、安全

所有連線都使用 HTTPS。資料檔的保護由 Google Drive 的帳號安全機制負責,請為你的 Google 帳號啟用兩步驟驗證。本服務的程式碼完全公開在 GitHub,任何人都可以檢查上述說明是否屬實。

十一、兒童

本服務不以兒童為對象,也不會在知情的情況下處理兒童的個人資料。

十二、政策變更

本政策如有修改,會更新本頁的生效日期,並可在 GitHub 的版本紀錄中查到每一次的變更內容。

對本頁內容有任何問題,請到 GitHub Issues 提出,或聯絡作者 Harvey Chen。

© 2026 Harvey Chen · 開放原始碼,非商業授權
隱私權政策使用條款免責聲明授權條款 原始碼