*Last updated: 2026-09-07*
公开版本:https://tonglens-privacy.pages.dev/
简短版:当通镜在明确英文页面自动翻译,或你主动点击翻译时,待翻译的网页文本会由浏览器直接发送到你选择的翻译服务(默认 Google 翻译通道或你自配的 LLM)。第三方远程请求使用 HTTPS;用户自配的本机回环服务可使用 HTTP,数据不会离开本机。开发者不自建接收或保存这些内容的服务器;API key 仅在本机 chrome.storage.local 保存。
开发者不自建接收或保存用户数据的服务器,也不通过扩展收集浏览记录、翻译内容或 API key。启用翻译后,待翻译的网页文本会发送给你选择的第三方服务商;该服务商对这些请求的处理适用其自身隐私政策。
网页内容仅用于响应你请求的翻译,不用于广告、用户画像、出售或人工阅读。开发者不自建接收、代理或保存这些内容的服务器。
API key 和翻译缓存仅存本机 Chrome 的 chrome.storage.local。当你在 Chrome 中开启同步时,以下非敏感数据会存入 chrome.storage.sync 并在你的 Chrome 设备间同步;开发者没有接收或保存这些规则的服务器:
| 数据 | 用途 | 是否上传 |
| 翻译引擎选择、目标语言、endpoint、模型、提示词、站点黑名单 | 扩展配置 | Chrome 官方同步(若你已开启) |
| 用户明确保存的域名与 CSS 选择器标记 | 指定该位置必须翻译 | Chrome 官方同步(若你已开启) |
| API key(如你填了) | 本机保存;调用自配 LLM endpoint 时作为 Bearer 认证信息随请求发送给该 endpoint | 本机保存;请求时发送给你配置的 endpoint |
| 翻译缓存(已翻译过的段落) | 避免重复请求 | ❌ 仅本机 |
卸载扩展时所有数据自动删除。
当你启用翻译时:
translate.googleapis.com。这是 Google 的服务,受 Google 隐私政策 约束localhost、127.0.0.1 和 [::1] 等本机回环地址可使用 HTTP开发者不自建接收、代理或保存这些请求的服务器;请求从你的浏览器直接发往所选服务。Google 通道失败时不会把文本改发给其他翻译商。
不追踪:
通镜本身没集成任何第三方分析或广告 SDK。但你使用以下服务时,需遵守它们的隐私政策:
通镜不面向 13 岁以下儿童。若你启用翻译,网页文本和(如适用)认证信息会按本政策所述发送给你选择的第三方服务商。
如本政策更新,会更新顶部日期。
问题与功能建议:1793master@gmail.com。你主动发送反馈时,我们会收到你的邮件地址和你选择提供的内容,仅用于回复、排查和改进功能;不用于营销。你可通过同一邮箱要求删除反馈邮件。反馈页不会自动读取浏览历史、API key 或上传文件。
TL;DR: When Tonglens automatically translates a clearly English page, or when you explicitly request translation, selected web-page text is sent directly from your browser to your chosen translation service (the Google translation channel by default or your configured LLM). Remote third-party requests use HTTPS; a user-configured local loopback service may use HTTP and does not leave the device. The developer operates no server that receives or stores this content. API keys are stored in local chrome.storage.local.
The developer operates no server that receives or stores user data and does not collect browsing history, translation content, or API keys through the extension. When you enable translation, selected web-page text is sent to your chosen third-party provider, whose privacy policy governs its processing.
Web-page content is used only to provide the translation you request. It is not used for advertising, profiling, sale, or human review. The developer operates no server that receives, proxies, or stores this content.
API keys and translation cache stay only in local chrome.storage.local. If you enable Chrome Sync, the following non-sensitive data is stored in chrome.storage.sync and syncs between your Chrome devices; the developer has no server receiving or storing these rules:
| Data | Purpose | Uploaded? |
| Provider choice, target language, endpoint, model, prompt, site blocklist | Extension config | Chrome Sync (if enabled) |
| Explicitly saved hostname and CSS selector markers | Translate that marked location | Chrome Sync (if enabled) |
| API key (if you provide one) | Stored locally; sent as Bearer authentication to your configured LLM endpoint when making a request | Stored locally; sent to your configured endpoint with a request |
| Translation cache | Avoid redundant requests | ❌ Local only |
All data is automatically deleted when you uninstall the extension.
When you enable translation:
translate.googleapis.com. This is Google's service, governed by Google's Privacy Policylocalhost, 127.0.0.1, and [::1] may use HTTPThe developer operates no server that receives, proxies, or stores these requests; they go directly from your browser to the selected service. A Google channel failure does not redirect the text to another translation provider.
No tracking:
Tonglens itself bundles no third-party analytics or ad SDKs. When you use the following services, their privacy policies apply:
Tonglens is not directed at children under 13. If you enable translation, web-page text and, where applicable, authentication information are sent to your chosen third-party provider as described in this policy.
If this policy is updated, the date at the top will change.
Contact: 1793master@gmail.com. If you choose to send feedback, we receive your email address and the content you provide, solely to reply, diagnose issues and improve the product, not for marketing. Contact the same address to request deletion. The feedback page does not automatically collect browsing history, API keys or files.