Privacy Policy

TanukiVision · Last updated August 2, 2026

TanukiVision stores your music library on your device. Playback and library management happen locally on your iPhone unless you choose a feature that contacts an external service.

Tanuki Cloud

If you sign in with Apple, TanukiVision connects to Tanuki Cloud to identify your account. With an active Tanuki VIP subscription, you may back up or restore a library index—metadata and playlists only—not audio files. Sign-in uses Apple’s identity token; we do not receive your Apple ID password.

App Activity

When you open TanukiVision while online, the app may send an anonymous activity ping to our first-party server. This includes a random install identifier, app version, build channel, coarse device type (iPhone or iPad), OS version, UI language, and aggregated daily counts: app launches, stability signals (crashes and hangs reported by the system, memory warnings, slow launch buckets, and local library-store open failures), playback error categories, library format and source totals, optional feature usage taps, and optional online-enhancement attempt/outcome counters. It does not include your account, song or artist names, file paths, error messages, playback history, or audio files. We use this only to measure app health and usage. Data is retained for 90 days and then deleted automatically. You may request deletion of your install’s records by emailing us; we can also delete records from our admin tools. TanukiVision does not include third-party analytics SDKs.

Metadata & Artwork

Metadata & Artwork is optional and disabled by default. When enabled in Settings → Metadata, TanukiVision automatically enhances metadata and artwork from Apple Music. Audio files, your full music library, and local files are never uploaded.

Lyrics

Online lyrics search is optional and disabled by default. When enabled in Settings → Metadata, TanukiVision searches LRCLIB for missing lyrics. Audio files, your full music library, and local files are never uploaded.

Online Metadata Matching

Search text derived from a song’s title, artist, or file name may be sent to Apple Music first, then MusicBrainz if no matches are found. TanukiVision does not upload your audio files, lyrics, artwork, or your full music library. This feature is optional and only runs when you start a metadata match.

LRCLIB

When online lyrics search is enabled, TanukiVision sends the song title, artist, album, and duration to LRCLIB to search for synced or plain lyrics. Audio files are never uploaded.

Apple Music

When you preview cover art, TanukiVision downloads artwork from Apple Music for the selected match. Audio files are never uploaded.

AcoustID

When audio fingerprinting is enabled, TanukiVision generates a Chromaprint fingerprint locally and sends the fingerprint plus track duration to AcoustID. Raw audio is never uploaded.

Developer Options

Developer Options is hidden by default and intended for internal diagnostics only. Cloud backup is managed in Account; metadata, artwork, and lyrics enhancement toggles are under Settings → Metadata. Audio files are never uploaded.

Google API Services User Data

Connecting Google Drive is optional. TanukiVision requests the https://www.googleapis.com/auth/drive.file scope. This scope can technically allow an app to view, edit, create, or delete only the specific Google Drive files that a user opens with, selects for, or otherwise shares with that app. TanukiVision uses this authorization only for read-only music-library features and does not use the scope's create, modify, upload, rename, move, or delete capabilities. You can use TanukiVision without connecting Google Drive.

Data Accessed

After you authorize Google Drive and make files available to the app, TanukiVision may access your Google Drive account display name and email address; the IDs, names, MIME types, parent relationships, directory information, and resource-version information of files or folders you use with the app; and the contents of audio, artwork, lyric, or other supported music-library files you select or share with the app. The display name and email address are used only to label the connected account inside the app.

Data Usage

Google user data is used only to provide features you request: displaying files and folders made available to the app, selecting and refreshing music sources, identifying supported audio, reading embedded song information and artwork, indexing your library, and playing or temporarily caching selected audio on your device. In the current version, TanukiVision performs read operations only and does not create, modify, upload, rename, move, or delete Google Drive files. TanukiVision does not use Google user data for advertising, user profiling, credit decisions, surveillance, or training generalized artificial-intelligence or machine-learning models.

Current Read-Only Operation & Future Product Plan

The current Google Drive integration is read-only. TanukiVision retains the capabilities provided by the drive.file scope as part of its product roadmap for possible future, optional library-management features that may create or update companion files, such as user-requested lyrics or artwork, for specific files the user has opened with, selected for, or shared with the app. These write features are not currently enabled. Before any such feature is released, TanukiVision will update this privacy policy and the relevant in-app disclosure. Any future write action will require an explicit user action or an option the user deliberately enables, will be limited to the specific files made available to the app, and will not silently alter existing audio files.

Data Sharing

TanukiVision does not sell Google user data and does not share it with advertisers or data brokers. Google OAuth tokens, your Google account email address, complete Drive listings, and raw Google Drive audio files are not sent to TanukiVision servers or third-party enhancement services.

If you separately enable or start an optional enhancement feature, limited song information derived from a selected file—such as title, artist, album, duration, or search text—may be sent to Apple Music, MusicBrainz, or LRCLIB to find metadata, artwork, or lyrics. If you enable audio fingerprinting, a fingerprint generated locally and the track duration may be sent to AcoustID; raw audio is not sent. If you enable Tanuki VIP synchronization, library metadata, playlists, source references, and playback-related state may be synchronized through Tanuki Cloud or Apple CloudKit; Google OAuth credentials and Google Drive audio files are not included.

Data Storage & Protection

Google OAuth access and refresh tokens are stored locally in the Apple Keychain. Tokens are transmitted over encrypted HTTPS connections only when communicating with Google OAuth and Google Drive API endpoints. TanukiVision does not receive your Google password and does not upload Google OAuth tokens to TanukiVision servers. Selected-source settings, extracted metadata, artwork, lyrics, and temporary scan or playback caches may be stored in the app's iOS-protected local storage.

Data Retention & Deletion

Google OAuth credentials and the Google Drive connection remain on your device until you remove that connection, delete the app, or erase its data. Local library records and caches are retained as needed to provide the features you selected. To delete the locally stored Google Drive connection, credentials, and associated library entries, open TanukiVision and remove the Google Drive connection under Library → Sources. Temporary cached files are removed through normal cache cleanup or when you delete the app and its data.

Removing the connection from TanukiVision deletes the local credentials but does not itself revoke the authorization at Google. You can revoke TanukiVision access from your Google Account connections page. To request deletion of Google-related data that may be included in optional Tanuki Cloud synchronization or support records, email jie.mei.dev@icloud.com. We will process verified deletion requests within 30 days unless retention is required by law.

Google Limited Use

TanukiVision' use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Dropbox & OneDrive

Dropbox and OneDrive are also read-only music sources. TanukiVision reads folders and supported files for browsing, library indexing, and playback. It does not create, modify, or delete files in these cloud accounts, and your music files are not uploaded to TanukiVision servers.

Network Shares

If you connect an SMB or WebDAV share, TanukiVision reads audio from folders you select. Optional lyrics enhancement may write a matching .lrc file beside the audio on the share. Credentials stay on your device.

Your Music Files

Audio files remain in iCloud Drive, your connected cloud accounts, network shares, or on your iPhone. TanukiVision does not upload your music files to our servers. Optional Tanuki Cloud backup stores library metadata and playlists only.

Contact

Email jie.mei.dev@icloud.com.


简体中文

TanukiVision 在你的设备上存储音乐资料库。除非你选择会联系外部服务的功能,否则播放和资料库管理都在 iPhone 本地进行。

Tanuki Cloud:通过 Apple 登录后,TanukiVision 会连接 Tanuki Cloud 以识别账户并管理可选的 Tanuki VIP 功能。订阅 VIP 后,你可备份或恢复资料库索引(元数据与播放列表,不含音频文件)。登录使用 Apple 身份令牌,我们不会收到你的 Apple ID 密码。

App 活跃统计:在联网打开 App 时,可能会向我们的自有服务器发送匿名活跃 ping,包含随机安装标识符、App 版本、构建渠道、设备类型(iPhone/iPad)、系统版本、界面语言,以及汇总的每日计数(启动、稳定性信号、播放错误类别、资料库格式与来源统计、可选功能使用、可选在线增强尝试/结果计数)。不包含账户、歌曲或艺术家名称、文件路径、播放记录或音频文件,仅用于衡量 App 健康与使用情况。数据保留 90 天后自动删除;可通过邮件请求删除你的安装记录。TanukiVision 不含第三方 analytics SDK。

元数据与封面(可选,默认关闭):在 设置 → 元数据 中开启后,TanukiVision 会自动从 Apple Music 补全元数据和封面。不会上传音频文件、完整音乐库或本地文件。

歌词(可选,默认关闭):在 设置 → 元数据 中开启后,TanukiVision 会通过 LRCLIB 搜索缺失歌词。不会上传音频文件、完整音乐库或本地文件。

在线元数据匹配:可能先将搜索文本发送至 Apple Music,若无结果再发送至 MusicBrainz。不会上传音频、歌词、封面或完整资料库。

LRCLIB:启用在线歌词搜索时,会发送歌曲标题、艺术家、专辑与时长至 LRCLIB。不会上传音频文件。

Apple Music 封面:预览封面时可能从 Apple Music 下载封面。不会上传音频文件。

AcoustID:在本地生成 Chromaprint 指纹,并将指纹与曲目时长发送至 AcoustID。不会上传原始音频。

Google 云端硬盘(可选、现阶段只读使用):狸猫视界申请 drive.file 权限。该权限在技术上可允许 App 查看、编辑、创建或删除用户通过 App 打开、选择或分享给 App 的特定文件;当前版本仅将其用于读取音乐文件、元数据与封面、建立资料库索引,以及播放或临时缓存所选音频,不会创建、修改、上传、重命名、移动或删除 Google 云端硬盘文件。作为产品线路规划,狸猫视界保留在未来版本中提供可选资料库管理功能的可能,例如根据用户请求为特定文件创建或更新歌词、封面等配套文件;此类写入功能目前尚未启用。上线前我们会更新隐私政策和 App 内相关说明;未来的写入必须由用户主动操作或明确开启,只能作用于用户交给 App 使用的特定文件,并且不会静默修改原始音频文件。狸猫视界可能处理 Google 账户显示名称与邮箱(仅用于标记 App 内的连接),以及相关文件或文件夹名称、ID、类型、层级信息和文件内容。Google OAuth 令牌保存在设备的 Apple 钥匙串中;OAuth 凭据和音频文件不会上传至我们的服务器。你可在 资料库 → 来源 中移除连接以删除本地凭据和相关资料库记录,并可前往 Google 账户的连接页面撤销授权;如需删除可选云同步或支持记录中的相关数据,请联系 jie.mei.dev@icloud.com

Dropbox / OneDrive(可选、只读):仅用于浏览文件夹、建立音乐资料库及播放文件;不会创建、修改或删除云盘文件。

网络共享(可选):SMB/WebDAV 仅读取所选文件夹;可选歌词旁路写在共享目录音频旁。

你的音乐文件保留在 iCloud、所连接的云盘、网络共享或 iPhone 上。我们不会上传你的音乐文件;可选 Tanuki Cloud 备份仅存储资料库元数据与播放列表。


繁體中文

TanukiVision 在你的裝置上儲存音樂資料庫。除非你選擇會聯絡外部服務的功能,否則播放和資料庫管理都在 iPhone 本機進行。

Tanuki Cloud:透過 Apple 登入後會連線 Tanuki Cloud 以識別帳號並管理可選的 Tanuki VIP 功能。訂閱 VIP 後可備份或還原資料庫索引(中繼資料與播放清單,不含音訊檔案)。登入使用 Apple 身分權杖,我們不會收到你的 Apple ID 密碼。

App 活躍統計:在連線開啟 App 時,可能會向我们的自有伺服器傳送匿名活躍 ping,包含隨機安裝識別碼、App 版本、建置渠道、裝置類型、系統版本、介面語言,以及匯總的每日計數(啟動、穩定性、播放錯誤、資料庫格式與來源、功能使用、線上增強計數)。不包含帳號、歌曲或藝人名稱、檔案路徑、播放紀錄或音訊檔案;資料保留 90 天後自動刪除,可來信要求刪除。TanukiVision 不含第三方 analytics SDK。

線上中繼資料與封面、歌詞增強均為可選功能,預設關閉,可在 設定 → 元數據 中分別管理。無需 Tanuki VIP。不會上傳音訊檔案、完整音樂資料庫或本機檔案。

Google 雲端硬碟(可選、現階段唯讀使用):狸貓音樂申請 drive.file 權限;此權限在技術上可查看、編輯、建立或刪除使用者透過 App 開啟、選擇或分享給 App 的特定檔案。目前版本只用它讀取音樂與中繼資料、建立音樂資料庫及播放或暫存所選檔案,不會建立、修改、上傳、重新命名、移動或刪除雲端硬碟檔案。依產品路線規劃,未來版本可能提供由使用者主動啟用的可選資料庫管理功能,例如為特定檔案建立或更新歌詞、封面等配套檔案;這些寫入功能目前尚未啟用,上線前會更新隱私政策與 App 內說明。未來任何寫入都必須由使用者主動操作或明確開啟,只能作用於交給 App 使用的特定檔案,且不會靜默修改原始音訊。OAuth 權杖儲存在裝置的 Apple 鑰匙圈中,也不會把 OAuth 憑證或音訊上傳至我們的伺服器。你可在資料庫 → 來源中移除連線,並可在 Google 帳號連線頁面撤銷授權。

你的音樂檔案保留在 iCloud、所連接的雲端、網路共享或 iPhone 上;可選 Tanuki Cloud 備份僅儲存資料庫中繼資料與播放清單。


日本語

TanukiVision はデバイス上に音楽ライブラリを保存します。外部サービスに接続する機能を選ばない限り、再生とライブラリ管理は iPhone 上で行われます。

Tanuki Cloud:Apple でサインインすると、アカウント識別と Tanuki VIP 機能のために Tanuki Cloud に接続します。VIP ではライブラリ索引(メタデータとプレイリストのみ、音声ファイルは含まない)をバックアップ/復元できます。Apple ID パスワードは受け取りません。

アプリ利用状況:オンラインで起動した際、匿名の利用 ping(ランダムなインストール ID、アプリ版、ビルド種別、端末種別、OS 版、UI 言語、日次集計カウンター:起動、安定性、再生エラー、ライブラリ形式/ソース、機能利用、オンライン拡張の試行/結果)を自社サーバーに送る場合があります。アカウント、曲名・アーティスト名、ファイルパス、再生履歴、音声ファイルは含まれません。データは 90 日保持後に自動削除されます。メールで削除を依頼できます。第三者 analytics SDK は使用しません。

オンラインのメタデータ・カバーアートと歌詞拡張はオプションで既定ではオフ、設定 → メタデータ で個別に管理できます。Tanuki VIP 不要です。音声ファイル、ライブラリ全体、ローカルファイルはアップロードされません。