PRIVACY NOTICE FOR CANVAS GALLERY
(Effective Date: August 20,2026)
This Privacy Notice describes how Hisense Visual Technology Co., Ltd., its affiliates and subsidiaries (“we”, “us”, or “our”) collect, use, share, and protect your Personal Data in connection with the Canvas Gallery application (the “Software”). This Privacy Notice forms an integral part of, and should be read together with, our End User License Agreement and Terms of Service for Canvas Gallery (“EULA”).
By using the Software, you acknowledge and consent to the collection and use of your Personal Data as described in this Privacy Notice. If you do not agree, please discontinue use of the Software.
Contact: Hisense Visual Technology Co., Ltd. No. 218, Qianwangang Road, Economic and Technique Development Zone, Qingdao, China Email: hsappdeveloper@hisense.com Quebec Privacy Officer: hsappdeveloper@hisense.com (Attn: Privacy Officer)
1. DEFINITIONS
“Personal Data” (used interchangeably with “Personal Information”) means information that identifies or relates to an identifiable individual, household, or device, as defined by the law applicable to your location.
“User-Imported Content” means photos, images, music, or other materials you import into the Software from USB, a mobile device on your local network, a third-party cloud service you connect (such as Google Photos, OneDrive), or a network-attached storage (“NAS”) device on your local network.
2. WHAT WE COLLECT (NOTICE AT COLLECTION)
This Section also serves as our “Notice at Collection” under the California Consumer Privacy Act.
Information You Voluntarily Provide. We do not require a Hisense account. If you contact us or exercise a privacy right, we receive the information you send us for that purpose.
Firebase Analytics (Automatic). We use Google Firebase Analytics to collect aggregate diagnostic and usage information, including: application launch, page navigation, feature interactions (such as import, framing, cropping, rotation, background music toggle), content display events, and standard technical fields (app version, device brand and model, language and locale, OS type, network type, event timestamp). The Firebase SDK also generates pseudonymous per-installation identifiers used solely to distinguish installations; these can be reset via in-Software settings or invalidated by uninstalling.
Each event records only that an action took place; the events do not carry your identity, cloud account name, file names, or file content.
Firebase Crashlytics (Automatic). When the Software crashes, we collect stack traces, device state at the time of the crash, and app/OS versions — solely to diagnose crashes.
Cloud and NAS Import Features. The Software allows you to import content from third-party cloud services (such as Google Photos, OneDrive) and from NAS devices on your local network (SMB or WebDAV):
•	Cloud services. You authenticate directly with the third-party provider via that provider’s authentication flow. We receive only the read-only access token required to retrieve files you select; we do not receive your password or account profile data.
•	NAS. Server address and login credentials are managed by the operating system’s credential store; the Software itself does not store or transmit your NAS password. Imported files remain in the Software’s local sandbox on your Device.
We do not read, index, or upload the content of files imported from cloud services or NAS. Each import event we collect records only that an import occurred.
User-Imported Content (Local Only). All User-Imported Content is stored only on your Device. We do not access content, EXIF data, or facial features, and we do not collect biometric identifiers under the Illinois Biometric Information Privacy Act (BIPA), Texas CUBI, Washington biometric privacy law, or similar statutes.
Mobile Upload (Local Network Only). Photos transmit only within your local Wi-Fi network — never through Hisense, Google, or any other third-party server.
WHAT WE DO NOT COLLECT. The Software does not collect: (i) IP or MAC address; (ii) the content or metadata of photos or music you import; (iii) your individual viewing history beyond aggregated events; (iv) contacts, SMS, microphone, or camera data; (v) precise geolocation (within 1,850 feet as defined by the CCPA/CPRA); (vi) the Android Advertising ID (AAID), the Android SSAID, or any other advertising or cross-app tracking identifier — collection of these is explicitly disabled in our Firebase configuration; or (vii) inferred demographic attributes (age, gender, interests) — the Software does not integrate with advertising SDKs and does not enable Google Signals. Interactions with Google Photos, OneDrive are limited to the authentication token exchange and the specific files you select.
Sensitive Personal Data. We do not collect Sensitive Personal Data for purposes that would trigger the CCPA/CPRA “right to limit use of Sensitive Personal Information.”
CCPA/CPRA Statutory Category Mapping (California Residents).
Category	Collected?	Purpose	Shared With
A. Identifiers (Firebase per-installation identifiers)	Yes	Analytics, diagnostics	Google LLC
B. Customer Records (Authentication access token for cloud services; email/name only if returned by an authentication scope you approve)	Yes (Device-local; not transmitted to us)	Cloud file import	None
F. Internet/Network Activity	Yes	Analytics, product improvement	Google LLC
G. Coarse Geolocation (city-level, by Google only; not stored by us)	Transient at Google	Fraud prevention	Google LLC (transient)
All other categories (C, D, E, H, I, J, K, and L. Sensitive Personal Information)	No	—	—
3. HOW WE USE PERSONAL DATA
We use Personal Data to operate the Software; retrieve files you select from connected cloud services or NAS; analyze usage patterns and improve the Software; diagnose crashes; prevent fraud and security threats; comply with applicable law; and support business transfers. We do not use Personal Data for materially different purposes without notice and, where required, your consent.
4. HOW WE SHARE PERSONAL DATA
•	Google LLC (Firebase). Google processes Firebase Analytics and Crashlytics data on our behalf under written contract prohibiting it from selling or sharing your data.
•	Third-Party Cloud Services (such as Google Photos, Microsoft OneDrive). If you choose to use these cloud-import features, you interact directly with the provider under its own terms and privacy policy. We do not share Hisense Software data with the provider beyond what is required to retrieve the files you select.
•	Legal. We may disclose Personal Data to comply with law, enforce the EULA, protect rights or safety, or respond to lawful government requests.
•	Business Transfers. Personal Data may be transferred in connection with a merger, acquisition, or sale of assets.
NO SALE, SHARING, TARGETED ADVERTISING, OR PROFILING. We do not “sell” or “share” Personal Data, do not engage in “targeted advertising,” and do not engage in “profiling” producing legal or similarly significant effects, as those terms are defined under the CCPA/CPRA and other U.S. state privacy laws (CO, CT, VA, TX, OR, UT, MT, MD, IA, DE, NH, NJ, MN, TN). We do not process the Personal Data of consumers known to be under 16 for these purposes. We recognize and honor the Global Privacy Control (GPC) signal as an opt-out request.
5. CROSS-BORDER TRANSFERS
Personal Data is transferred as follows:
•	To the United States — data processed by Google Firebase Analytics and Crashlytics is transferred to Google data centers in the United States.
•	To China — our engineers in China may access, store, or process Personal Data, in the way permitted or limited by Google Firebase, for business operations, IT support, audit, compliance, and security purposes.
•	Third-Party Cloud Providers. If you use the cloud-import features, your interaction with Google or Microsoft may involve cross-border transfers under those providers’ own policies. We are not a party to those transfers.
Safeguards include written data-processing agreements requiring confidentiality and security, TLS 1.3 encryption in transit, encryption at rest, and access controls on a need-to-know basis.
6. RETENTION
•	Local event cache on your Device: cleared automatically after 7 days.
•	Firebase Analytics data (Google backend): 14 months.
•	Firebase Crashlytics data (Google backend): 90 days.
•	Authentication tokens for connected cloud services: stored on your Device until you sign out, revoke access, or uninstall the Software.
•	User-Imported Content: stored on your Device until you delete it or uninstall the Software.
•	Contact and rights-request correspondence: up to 3 years.
If you withdraw consent, we stop new collection and clear your local cache immediately.
7. SECURITY
We apply TLS 1.3 in transit, encryption at rest, Android sandbox protections on device, need-to-know access controls with strong authentication. However, please be noted no method of transmission or storage is 100% secure.
8. YOUR PRIVACY RIGHTS
We do not discriminate against you for exercising any privacy right.
All Users. You may ask questions about our processing, request correction or deletion of your Personal Data, and withdraw consent.
California Residents (CCPA/CPRA). You may (a) know the categories and specific pieces of Personal Data we collect, sources, purposes, and recipients; (b) request deletion; (c) request correction; (d) opt out of sale or sharing — N/A because we do not sell or share, and we honor GPC signals; (e) limit use of Sensitive Personal Data — N/A because we do not collect it for triggering purposes; (f) be free from discrimination; and (g) designate an authorized agent (we may require signed written authorization plus verification of your identity). We acknowledge requests within 10 business days and respond within 45 days, extendable by 45 additional days for complex cases.
Other U.S. State Residents (VA, CO, CT, UT, TX, OR, MT, IA, DE, NH, NJ, MD, MN, TN). You may confirm and access your Personal Data; correct it; delete it; obtain a portable copy; opt out of sale, targeted advertising, and certain profiling (N/A as noted above; we honor GPC); appeal a denial by replying with “Appeal” to our response, after which you may complain to your State Attorney General; and be free from discrimination. For Maryland residents (effective October 1, 2025), we collect only Personal Data reasonably necessary and proportionate to operate the Software. We respond within 45 days, extendable by 45 more days.
Canadian Residents (PIPEDA and Provincial Laws). You may access and request correction of your Personal Data, withdraw consent, and file a complaint with the Office of the Privacy Commissioner of Canada or your provincial commissioner.
Quebec Residents (Quebec Law 25). You have the additional rights of access, rectification, erasure, data portability, withdrawal of consent, and to be informed of and refuse automated decision-making (which we do not perform). Complaints may be filed with the Commission d’accès à l’information du Québec (CAI). Our Privacy Officer for Quebec Law 25 purposes: hsappdeveloper@hisense.com (Attn: Privacy Officer).
How to Exercise Your Rights. Email hsappdeveloper@hisense.com with (i) the right you are exercising and the law under which you exercise it; (ii) sufficient information to verify your identity (device model, approximate install date, or other identifier); and (iii) for authorized-agent requests, signed written authorization. You may also disable Usage Diagnostics in the Software at any time. To revoke Software access to a cloud service, sign out or clear authorization within the Software and, additionally, revoke access at the provider’s account settings. Requests are free unless manifestly unfounded or excessive.
Because the Software does not require a Hisense account, we may be unable to link Personal Data to you as an individual with reasonable certainty; if verification is not possible, we will explain that limitation in our response.
9. CHILDREN’S PRIVACY
The Software is not directed to children under 13. Consistent with the U.S. Children’s Online Privacy Protection Act (“COPPA”), we do not knowingly collect Personal Data from children under 13 without verifiable parental consent. For users aged 13–17, we do not sell or share Personal Data, engage in targeted advertising, or profile for legally significant decisions, consistent with the CCPA/CPRA, Connecticut Data Privacy Act, Colorado Privacy Act, Maryland Online Data Privacy Act, and similar laws.
10. CONSENT AND WITHDRAWAL
On first launch, the Software presents a consent panel covering your acceptance of this Privacy Notice. Connecting a third-party cloud service or a NAS device requires your separate, affirmative action. You may withdraw consent at any time by disabling Usage Diagnostics in-Software, revoking cloud-service authorization, or by emailing hsappdeveloper@hisense.com. Withdrawal does not affect the lawfulness of processing before withdrawal.
11. CHANGES TO THIS NOTICE
For material changes (new processing, new third parties, or expanded categories of Personal Data), we will notify you within the Software before the change takes effect and, where required by applicable law, obtain your renewed consent. Non-material changes will be reflected by updating the Effective Date above.
12. CONTACT US
Hisense Visual Technology Co., Ltd. No. 218, Qianwangang Road, Economic and Technique Development Zone, Qingdao, China Email: hsappdeveloper@hisense.com