Google I/O 2025 新功能:使用
裝置記憶 (Beta 版),偵測並防範重複濫用行為和您指定的其他動作,同時保護使用者隱私。
服務條款與資料安全性
透過集合功能整理內容
你可以依據偏好儲存及分類內容。
使用或存取 Play Integrity API 之前,請完成下列操作:
- 閱讀《Play Integrity API 服務條款》。
- 瞭解 API 如何處理資料。
服務條款
上次修訂日期:2024 年 5 月 20 日
- 使用 Play Integrity API,即表示同意遵守這些條款及
《Google API 服務條款》
(以下簡稱「API 服務條款」)。Play Integrity API 的作用是保護應用程式安全
防範濫用、詐欺和未經授權的存取行為。
- 透過使用 Play Integrity API,您的應用程式或 SDK 將有權存取特定功能,並根據
Play Integrity API
說明文件所述的資格條件獲得有限配額。相關資格條件可能有所變動。
- 如果您的應用程式或 SDK 不符合或不再符合相關資格條件,Google Play
保留移除功能存取權及減少配額的權利。
- 若您獲准使用其他功能或增加配額,這類權益不得轉讓,且只適用於指定應用程式或 SDK。
- 您不得使用 Play Integrity API 來識別或追蹤個別使用者或裝置。
- Google 可隨時變更這些條款。如有變更,Google 會發送通知。屆時您可以選擇不繼續使用
Play Integrity API。Google 會在
https://developer.android.com/google/play/integrity/terms#tos
發布條款修訂通知。變更將不溯及既往。
資料安全性
Google Play 提供了
資料安全性專區,
可讓開發人員揭露應用程式的資料收集、分享和安全性做法。為確保您滿足「資料安全性」
專區的相關要求,您可使用下方的資訊瞭解 Play Integrity API 如何處理資料。
Play Integrity API 是 Google Play 商店在執行階段的介面。因此,在應用程式中使用
Play Integrity 時,Play 商店會執行自己的程序,包括依據
《Google Play 服務條款》
處理資料。以下資訊說明 Play Integrity API 如何處理資料,以便因應來自應用程式的特定要求。
收集到資料的使用情況 |
一律收集:
- 應用程式在要求中提供的資訊,包括
requestHash 和
nonce 欄位
- 應用程式中繼資料,包括套件名稱、版本編號和簽署憑證
- 裝置上已登入使用者帳戶的
Google
Play 授權狀態
- 裝置資訊,包括金鑰認證憑證和由 Google Play 服務產生的裝置認證權杖
只有在要求權限的應用程式選擇接收
環境詳細資料
時,系統才會收集以下資料:
- 用於判斷應用程式是否執行中,且可擷取螢幕畫面或控制裝置的應用程式活動資訊
- 用於判斷 Google Play 安全防護狀態的裝置資訊
|
資料收集目的 |
收集到的資料會用於驗證應用程式完整性、授權狀態、
環境詳細資料和裝置完整性。 |
資料加密 |
資料已加密。 |
資料分享 |
資料不會轉移給任何第三方。 |
資料刪除 |
過了固定的保留期限後,系統會刪除資料。 |
雖然我們力求盡可能維持透明公開,但您必須全權決定如何回覆
Google Play 資料安全性專區
中針對應用程式的資料收集、分享和安全性做法的表單。
這個頁面中的內容和程式碼範例均受《內容授權》中的授權所規範。Java 與 OpenJDK 是 Oracle 和/或其關係企業的商標或註冊商標。
上次更新時間:2024-05-25 (世界標準時間)。
[null,null,["上次更新時間:2024-05-25 (世界標準時間)。"],[],[],null,["# Terms of Service and data safety\n\nBefore you use or access the Play Integrity API, do the following:\n\n1. Read the [Play Integrity API Terms of Service](#tos).\n2. Understand [how the API handles data](#data-safety).\n\nTerms of Service\n----------------\n\nLast modified: May 20, 2024\n\n1. By using the Play Integrity API, you agree to these terms in addition to the [Google APIs Terms of Service](https://developers.google.com/terms) (\"API ToS\"). The Play Integrity API is provided to protect app security and to mitigate abuse, fraud, and unauthorized access.\n2. By using the Play Integrity API, your app or SDK will have access to certain features and be granted quota limits based on the eligibility criteria described in the [Play Integrity API\n documentation](http://g.co/play/integrityapi). Eligibility criteria are subject to change.\n 1. Google Play reserves the right to remove feature access and reduce quota if your app or SDK does not meet, or stops meeting, the eligibility criteria.\n 2. The approval of additional features or increased quota is non-transferable and will only apply to the specified app or SDK.\n3. You may not use the Play Integrity API to fingerprint or track individual users or devices.\n4. Google may make changes to these terms at any time with notice and the opportunity to decline further use of the Play Integrity API. Google will post notice of modifications to the terms at `https://developer.android.com/google/play/integrity/terms#tos`. Changes will not be retroactive.\n\nData safety\n-----------\n\nGoogle Play has a [data safety\nsection](https://support.google.com/googleplay/answer/11416267) for developers\nto disclose their apps' data collection, sharing, and security practices. To\nhelp you complete the data safety section requirements, you can use the\ninformation below on how the Play Integrity API handles data.\n\nThe Play Integrity API is a runtime interface with the Google Play Store. As\nsuch, when you use Play Integrity in your app, the Play Store runs its own\nprocesses, which include handling data as governed by the [Google Play Terms of\nService](https://play.google.com/intl/en-US_us/about/play-terms/index.html). The\ninformation below describes how the Play Integrity API handles data to process\nspecific requests from your app.\n\n|----------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|\n| Data collected on usage | Always collected: - App-provided information in the request including the `requestHash` and `nonce` fields - App metadata including package name, version number, and signing certificate - The app's [Google Play license status](/google/play/integrity/verdicts#account-details-field) for the signed in user accounts on the device - Device information including a key attestation certificate and a device attestation token generated by Google Play services Only collected when the requesting app is opted in to receiving [environment details](/google/play/integrity/verdicts#environment-details-field): - App activity information used to determine if apps are running that can capture the screen or control the device - Device information used to determine the status of Google Play Protect |\n| Purpose of data collection | The data collected is used to verify the application integrity, the licensing status, environment details, and the device integrity. |\n| Data encryption | Data is encrypted. |\n| Data sharing | Data is not transferred to any third parties. |\n| Data deletion | Data is deleted following a fixed retention period. |\n\nWhile we aim to be as transparent as possible, you are solely responsible for\ndeciding how to respond to\n[Google Play's data safety section form](https://support.google.com/googleplay/android-developer/answer/10787469)\nregarding your app's user data collection, sharing, and security practices."]]