荣路径® 九型人格测试

隐私权政策 / Privacy Policy

最后更新日期 / Last updated: 2026-08-29

我们收集哪些信息

使用本测验时,我们只会收集两样东西:您在表单里填写的称呼(不要求也不需要是您的真实姓名,您可以填写任何方便称呼您的文字),以及您勾选题目后计算出的九型人格分数。我们不要求也不会收集您的电子邮件、电话、身份证号或其他可识别真实身份的资料。付款过程中,您的卡号等付款信息由 Stripe 直接处理(见下方「第三方服务:Stripe」),完全不会经过我们自己的伺服器。

What we collect. When you use this test, we only collect two things: the display name you type into the form (your real legal name is neither required nor needed — any name you're comfortable being addressed by works), and the Enneagram scores calculated from the statements you checked. We do not ask for or collect your email, phone number, government ID, or any other information that identifies your real-world identity. During payment, your card details are handled directly by Stripe (see "Third-party service: Stripe" below) and never pass through our own servers.

这些信息会用来做什么

您的称呼与分数会被送到 Google Gemini API,用来生成一份个人化的 AI 人格解读报告,显示在页面上,并可以下载成 PDF。除此之外没有其他用途。

How we use it. Your display name and scores are sent to the Google Gemini API to generate a personalized AI analysis report, shown on the page and downloadable as a PDF. That is the only purpose they're used for.

我们不会存储您填写的测验内容——但生成报告的过程中会短暂经手

您的称呼与分数本身,在提交前到付款完成前,只存在您自己的浏览器里(暂存在浏览器的 sessionStorage,用来撑过前往 Stripe 付款、再跳转回来的这段过程)。

付款确认后,称呼与分数会被送到我们的伺服器,转发给 Google Gemini API 生成报告——这个处理过程中,它们可能会短暂经过一个加密的内部处理队列(用来让报告生成不受限于浏览器愿意等待多久),处理完成后立即从队列中移除,队列本身不会长期保留它们。生成出来的报告本身,会以加密方式暂存在我们的资料库里,最长 24 小时(或到您的兑换权限到期为止,以先到者为准)——这是为了让您即使网路不稳、页面意外关闭、或还没来得及下载 PDF,也能凭同一笔付款重新取回同一份报告,不用重新生成、也不用重新付费。您成功下载 PDF 后,这份暂存的报告会立即从资料库删除;如果您始终没有取回,也会在最长 24 小时后自动删除。

会被伺服器额外短暂储存的,是付款本身的记录:您的 Stripe 付款会话 ID、付款状态(已付款/处理中/已兑换),以及一份用来核对兑换凭证是否正确的加密验证值——真正能兑换报告的原始凭证只存在您自己的浏览器里(见下方「浏览器本地储存」一节),我们的伺服器从来不会拿到、也不会储存这个原始值本身。这笔记录不包含您的称呼或分数,只用来证明「这次请求真的付过钱」;不论最后有没有被兑换,这笔记录都会在建立后约 48 小时进入资料库的非同步删除流程(不是精确到秒的即时删除,实际完全移除的时间可能略晚于 48 小时)。这是为了防止同一笔付款被重复兑换、也让您在网路不稳或页面意外关闭时,仍然能凭同一笔付款重新拿到报告,而不用重新付一次钱。

We don't store what you typed into the quiz — but generating your report briefly involves it. Your display name and scores stay entirely in your own browser before payment completes (held in sessionStorage, just long enough to survive the round trip to Stripe's payment page and back).

Once payment is confirmed, your display name and scores are sent to our server and forwarded to the Google Gemini API to generate your report — during this process they may briefly pass through an encrypted internal processing queue (used so report generation isn't limited by how long your browser is willing to wait), and are removed from that queue as soon as processing finishes; the queue itself does not retain them long-term. The generated report itself is held, encrypted, in our database for up to 24 hours (or until your redemption window expires, whichever comes first) — this exists so that a flaky connection, an accidentally closed tab, or simply not downloading the PDF right away doesn't cost you the report you already paid for; you can come back and retrieve the same report without regenerating it or paying again. Once you've successfully downloaded the PDF, this temporarily stored copy is deleted immediately; if you never retrieve it, it's deleted automatically after that 24-hour window.

What our server additionally briefly stores is a record of the payment itself: your Stripe checkout session ID, its status (paid / processing / redeemed), and a hash used to verify your claim credential — the actual credential that redeems your report only ever exists in your own browser (see "Browser local storage" below); our server never receives or stores that raw value itself. This record does not include your display name or scores — it only proves that a particular request was genuinely paid for. Whether or not it's ever redeemed, this record enters the database's asynchronous deletion process roughly 48 hours after it's created (not an instant, to-the-second deletion — actual removal may land a bit later than 48 hours). This exists to prevent the same payment from being redeemed twice, and so that a flaky connection or an accidentally closed tab doesn't force you to pay again to get the report you already bought.

第三方服务:Google Gemini

AI 解读报告由 Google Gemini API 生成。我们使用的是 Google Cloud 已启用计费的付费层级 API,而不是免费层级——这意味着依 Google 现行的服务条款,您的资料不会被用来训练 Google 的产品或模型。若 Google 未来调整这项政策,我们会更新这里的说明。

Third-party service: Google Gemini. The AI analysis is generated by the Google Gemini API. We use a billing-enabled paid tier of Google Cloud, not the free tier — under Google's current terms, this means your data is not used to train Google's products or models. If Google changes this policy in the future, we will update this notice accordingly.

第三方服务:Stripe

付款透过 Stripe 处理,支持信用卡、Alipay(支付宝)与 WeChat Pay(微信支付)。您在付款页输入的卡号等付款信息由 Stripe 直接收集与处理,完全不会经过我们自己的伺服器——我们的伺服器只会从 Stripe 收到「这笔付款成功了」这个确认通知,不会接触到您的实际付款信息。更多说明见服务条款与退款政策

Third-party service: Stripe. Payments are processed by Stripe, which supports credit cards, Alipay, and WeChat Pay. The card details you enter on the payment page are collected and processed directly by Stripe and never pass through our own servers — our server only receives a confirmation from Stripe that a payment succeeded, never your actual payment information. See our Terms of Service & Refund Policy for more.

浏览器本地储存(localStorage 与 sessionStorage)

我们会用您浏览器的 localStorage 记住您上次选择的介面语言(中文/英文),方便您下次造访时不用重新选择——这项资料完全不会离开您的浏览器,不会传送到我们的伺服器。我们也会用 sessionStorage 暂存您填写的称呼与分数,撑过跳转到 Stripe 付款页再跳转回来的这段过程;跟语言偏好不同,这部分资料在付款确认后,会经本站的伺服器转发给 Google Gemini API 用来生成您的 AI 解读报告,生成过程与结果的短暂储存方式见上方「我们不会存储您填写的测验内容」一节。付款完成、成功拿到报告后就会从 sessionStorage 清除;分页关闭后也会自动清除。

Browser local storage (localStorage and sessionStorage). We use your browser's localStorage to remember your last-chosen interface language (Chinese or English), so you don't need to reselect it on your next visit — this never leaves your browser, and is never sent to our servers. We also use sessionStorage to temporarily hold the display name and scores you entered, so they survive the round trip to Stripe's payment page and back. Unlike your language preference, this data is sent to our server and forwarded to the Google Gemini API once payment is confirmed, to generate your AI analysis report — see "We don't store what you typed into the quiz" above for how that generation process and its result are briefly stored. It's cleared from sessionStorage once payment succeeds and you've received your report, and automatically cleared when the tab closes.

关于您的权利

您下载到自己装置上的 PDF,删除方式跟管理其他档案一样,由您自行掌控。至于伺服器端短暂保留的资料——处理中/待取件的报告(最长 24 小时,或到兑换权限到期为止,见上方说明)与付款记录(约 48 小时后自动删除,见上方说明)——两者都会在各自的期限内自动删除;如果您希望提前删除,可以透过 服务条款页面上的联络方式跟我们联系。

Your rights. The PDF you download to your own device is yours to manage and delete like any other file. As for what our server briefly retains — a processing or not-yet-retrieved report (up to 24 hours, or until your redemption window expires, as described above) and the payment record (deleted automatically roughly 48 hours later, as described above) — both are deleted automatically once their respective window passes; if you'd like either deleted sooner, you can reach us through the contact details on our Terms of Service page.