English
Nsurator is a local-first macOS video library manager. You do not need a Nsurator account to manage a local library. This policy explains what data the app and its optional online features process.
1. Local library data
Nsurator stores library information on your Mac, including file paths, titles and other metadata, people, collections, tags, ratings, favorites, playback history, thumbnails, caches, security-scoped bookmarks, and app settings. Your video files are not uploaded to Nsurator-operated servers by default.
Private Space is available only for files archived into the movie library. Private files are moved into the hidden .nsurator-private area of that library. This area is hidden but not encrypted. When Private Space is locked, the app removes private titles, artwork, and related accessibility elements from the interface.
2. Files and permissions
The app accesses only folders and files that you select or otherwise authorize through macOS. It uses that access to scan, play, organize, rename, move, archive, or delete files when you request those actions. A file move or deletion does not occur merely because a folder was scanned.
3. Optional network features and third parties
- Nearby playback. When you choose AirPlay, Chromecast, DLNA, Roku, or another supported receiver, the selected media bytes, media metadata, and playback-control messages may be sent over your network to the device you selected. Temporary local-server URLs or in-memory access tokens may be used during that session and expire when the session ends.
- Remote media sources. If you add WebDAV, mounted SMB, Emby, Jellyfin, or another supported source, Nsurator connects directly to the server you configure. Connection settings are stored locally; passwords and access tokens are stored in the macOS Keychain where supported. The operator of that source processes your requests under its own privacy policy.
- Baidu Netdisk authorization. If you choose Baidu Netdisk, authorization takes place in your browser using Baidu's official OAuth flow. Nsurator's authorization broker processes a one-time transaction identifier and challenge and temporarily holds the encrypted authorization result, which may include Baidu access and refresh tokens. These results are normally retained only for delivery and retry, for no more than 24 hours, after which secret token payloads are cleared. The broker's strictly necessary cookie supports the authorization transaction and is not used for tracking. Delivered tokens are stored in your macOS Keychain. See Baidu's Privacy Policy.
- Purchases. App Store purchases and subscriptions are processed by Apple. Nsurator receives transaction and entitlement status and stores entitlement state locally; it does not receive your full payment-card details. See Apple's Privacy Policy.
- Optional model downloads. If you start a supported model download, the file may be requested from providers such as Hugging Face, GitHub, or Microsoft. Those providers receive ordinary network information such as your IP address and request metadata under their own policies.
- Agent integration. Agent access is off by default and its built-in service is limited to the local loopback interface. If you connect a third-party AI or automation client, only the data and actions you authorize are made available to that client. Nsurator does not automatically upload your library database to an AI service.
4. Collection, tracking, and legacy trial builds
Nsurator does not sell personal data, show behavioral advertising, or include third-party advertising trackers. The current Mac App Store app does not use a self-managed trial server. Nsurator-operated web hosting and reverse proxies may process ordinary request data, such as IP address, timestamp, and user-agent, for security, abuse prevention, and service reliability.
Some older direct-distribution or China-region trial builds may send a randomly generated persistent device identifier, a device-fingerprint hash, platform and app version, and a trial token to a Nsurator authorization server solely to determine trial eligibility and prevent repeated-trial abuse.
5. Retention and security
Local data remains on your Mac until you delete it. Removing the app may not remove media files, library folders, backups, or Keychain entries. OAuth authorization results are retained only for their short delivery and retry window, up to 24 hours, and secret payloads are then cleared. Minimal terminal transaction records and security logs may be retained briefly for reliability and abuse prevention. Information you voluntarily send for support is retained as needed to resolve the request and meet legal obligations.
We use measures such as HTTPS, the macOS Keychain, sandboxed helper processes, and encrypted OAuth result delivery where applicable. No security measure is absolute, and the hidden Private Space area is not encryption.
6. Your choices and rights
You can use the local library without enabling optional network services. You may remove a configured source, revoke third-party authorization, delete local library data, clear history and caches in the app where available, or delete files through Finder. Depending on where you live, you may have rights to request access, correction, deletion, restriction, or information about data processed by Nsurator-operated services.
7. Children, changes, and contact
Nsurator is a general-audience media utility and is not directed to children. We do not knowingly collect children's personal information through Nsurator-operated services. We may update this policy when app features or legal requirements change and will update the date above.
For privacy questions or requests, email 852310683@qq.com or visit the Support page.