Privacy
Data practices for the app and this website: zero telemetry, local data, explicit network scenarios.
ChengYoung runs on your computer. This version does not collect or upload usage data, and it does not create a device identifier. We never receive your conversations, code, files, or tool arguments; the installer ships with no telemetry code at all.
Scope
This statement covers two things:
- The ChengYoung desktop app — the Windows installer distributed on this site and its in-app auto-updates;
- This website — chengyoung.com, its English mirror, and the changelog pages.
The LicenseDesktop sub-product site (/license/) has its own privacy statement on site.
App: what stays on your device
- Conversations, settings, and logs in your local data folder
- Downloaded models and their configuration, kept on your disk
- Diagnostics leave your computer only if you export and send them yourself
- Extensions and skills are installed only from sources you choose
App: when it goes online
The app only goes online when you:
- Download local models (Hugging Face)
- Check for or download updates (GitHub Releases) — only your current version number is sent, with no device info or user identifiers
- Call the model providers you configured — your messages go only to that provider
Embedded browser
- Browser control is off by default. Only after you turn it on and authorize a site can the Agent read that page's text or click elements; what it reads enters the model context (a local model keeps it on your computer, a cloud provider you configured receives it). Page text is never written to any logs.
- Typing into fields and submitting forms require separate explicit permissions: every write and submit asks for your consent first, and the text the Agent types is never written to any logs.
- Pages you open in the embedded browser load straight from that site. We do not proxy, rewrite, or record them.
Data directory
Sessions and settings live on your machine in the local data directory (since 1.13.0: %APPDATA%\ChengYoung\; the first launch copies legacy data over automatically and leaves the old directory untouched, so it never conflicts with the original app).
This website
- This site is fully static. The main site does no traffic analytics and loads no analytics scripts.
- The LicenseDesktop sub-product site uses Cloudflare Web Analytics (cookieless aggregated statistics: page views and source country only, no personal identity).
- When you continue to GitHub Releases to download an installer, GitHub's own privacy policy applies; the SHA256 checksum of every installer is published with its release for independent verification.
Authoritative sources
- The in-app *Settings → About & Help → Privacy details* page shares its content with this page; PRIVACY.md in the product repository is one of the authoritative external documents.
- This page is a website-facing compilation; where bundled documents differ, the bundled documents and the repository files above take precedence.