HSKBase verifies the Google ID token and uses the account identifier, verified email, and display name for sign-in and subscription ownership.
Clear data use, at every boundary.
What Google sign-in establishes, what stays in your browser, and when billing, AI, or audio data reaches a provider.
Your identity and learning progress have separate boundaries.
You can use the free learning routes without signing in. Choosing Google sign-in creates an HSKBase session; it does not turn browser-local progress into a cloud backup.
Practice history, preferences, and weak-item lists remain on the device unless a feature explicitly says otherwise. Export them before clearing site data.
Billing, AI practice, and pronunciation assessment send the minimum request data to the provider named below.
Google sign-in and your HSKBase session
You can use free routes without signing in. When you choose Google sign-in, Google handles the account chooser and supplies an ID credential. HSKBase verifies that credential on the server and creates a signed, HttpOnly session cookie for up to 30 days. The session carries the account identifier, verified email, and display name needed to recognize you. HSKBase does not request access to Google Drive, contacts, or other Google services.
Signing out removes the HSKBase session cookie from that browser. You can also revoke HSKBase access from your Google Account. Revoking Google access does not cancel a paid subscription; use the billing cancellation path described in the Terms.
Most learning state remains local
Progress, answers, study plans, preferences, and review queues are primarily stored in browser storage. Clearing HSKBase site data, changing browsers, or changing devices can remove or separate them. Signing in currently does not upload or merge this learning state. Account & progress provides the available export and deletion controls.
Local speaking playback stays in the active browser session. HSKBase does not intentionally save those recordings as account files.
Data used for billing, AI, and pronunciation
- Waffo Pancake
- If checkout is enabled and you choose a subscription, HSKBase sends a pseudonymous buyer identifier and your signed-in email to Waffo to create and attribute hosted checkout. Waffo processes payment, tax, subscription, receipt, refund, and transaction data under its own policies. HSKBase stores the billing environment, allowed product, subscription state, and paid-through evidence needed to grant Pro access; it does not receive your full card number.
- DeepSeek
- When you submit an AI practice request, your prompt and the limited recent context disclosed beside that feature are sent through the HSKBase server for a reply. Do not enter sensitive personal information.
- YouTube videos
- Homepage video covers are served by HSKBase. Opening a video loads a YouTube privacy-enhanced player and sends technical request data, including your IP address and site origin, to YouTube. Playback is optional and follows Google’s privacy policy. Closing the player removes it from the page. A channel or watch link opens YouTube directly.
- Tencent pronunciation assessment
- If you choose automated pronunciation assessment, a short WAV recording, reference Chinese text, and limited task context are sent through the HSKBase server to the configured Tencent service. HSKBase processes the request transiently and does not intentionally retain the audio as a user recording.
Analytics and service logs
Production analytics may process page paths, referrers, browser and operating-system type, device category, approximate region, visit timing, performance data, and selected product events. HSKBase does not intentionally attach typed answers or recording contents to analytics events. Hosting and network services receive IP addresses to deliver requests and may retain access or security logs. HSKBase may retain account and billing evidence while needed to operate subscriptions, prevent fraud, resolve disputes, and meet legal obligations.
Website feedback
When you send feedback, HSKBase stores your message, optional email address, the source page path (without query parameters), submission time, and processing status on its server. Only authorized HSKBase administrators can view and manage these messages. We use them to investigate website issues, improve the service, and follow up by email when you provide an address. Feedback is not published or sent to an AI provider.
Providing an email is optional. We retain feedback while it is needed to investigate or follow up on the issue. To ask us to delete a message, contact qingxi.fang199713@gmail.com. We use short-lived request counters to limit spam. Please do not include passwords or payment card details.
Access, export, delete, and ask
You can continue on free routes without signing in, sign out at any time, deny microphone access, export or delete supported browser-local data, and cancel a subscription before its next renewal. For an account-data or privacy request, email qingxi.fang199713@gmail.com. We may need to verify the account before changing billing-linked records.
HSKBase will update this policy before materially changing how it uses identity, learning, or payment data. External services and links have their own privacy terms. See the Terms & Refund Policy for subscription and service rules.