| 19 | 19 | - [Active Insight](https://www.synology.com/) |
| 20 | 20 | - [MailPlus](https://www.synology.com/) |
| 21 | 21 | - [Synology Store](https://www.synology.com/) |
| 22 | 22 | - [C2](https://www.synology.com/) |
| 23 | 23 | - [Synology AI Advisor](https://www.synology.com/) |
| 24 | 24 | - [Synology Deep Search](https://www.synology.com/) |
| 25 | - [DSM Agent](https://www.synology.com/) |
| 25 | 26 | |
| 26 | 27 | ## Synology Account |
| 27 | 28 | |
| 28 | 29 | A Synology Account is the personal account you use to access Synology services, such as QuickConnect, Synology DDNS, Technical Support, Package Activation, Active Insight, and DiskStation Manager ("**DSM**") configuration. You will need to associate your Synology Account with your Synology device to enable those Synology services. Data collected by corresponding Synology services can also be found on this Service Data Processing Policy. Please read the relevant sections for more information. |
| 29 | 30 | |
| 30 | 31 | By creating a Synology Account, you will automatically receive our eNews from time to time. You may choose to opt-out from our eNews Service by changing the settings on your Synology Account newsletter page or by clicking on the "unsubscribe" link in the corresponding newsletters. However, if you are an EU resident other than a business user, you will only receive our eNews when your consent is validly provided and you may withdraw your consent at any time by using the methods described above. |
| 493 | 494 | |
| 494 | 495 | ### How we store your data |
| 495 | 496 | |
| 496 | 497 | GPS coordinates submitted through Photo Location Search are processed only for the time necessary to provide the requested place names and are not retained by Synology. Photo Location Search can be disabled at any time in the Deep Search settings to stop further GPS data transmission. |
| 497 | 498 | |
| 498 | 499 | The storage and retention of your Synology Account information and promotional access details are governed by Synology's [Privacy Statement](https://www.synology.com/company/legal/privacy). |
| 500 | |
| 501 | ## DSM Agent |
| 502 | |
| 503 | Synology DSM Agent is an interactive AI feature integrated into DSM that helps users obtain operating guidance, troubleshooting recommendations, and other information related to DSM services. To understand the context of user questions and provide relevant responses, DSM Agent collects and processes the data necessary to provide the service after obtaining user consent. Certain data may be processed with the assistance of third-party service providers. You may stop using this service at any time by disabling DSM Agent in Package Center. |
| 504 | |
| 505 | ### Data we collect |
| 506 | |
| 507 | DSM Agent may process the following data to provide its features, maintain service quality, and improve the service: |
| 508 | |
| 509 | - **Conversation content and system information:** This includes the questions you enter, conversation content, and device information such as the DSM version, product model, and physical memory capacity. Conversation content is processed to understand your requests, maintain conversation context, and generate relevant responses. System information is processed to provide operating guidance, troubleshooting recommendations, and compatibility information relevant to your system environment. |
| 510 | - **On-screen information:** If you enable this feature, DSM Agent may read information displayed in application interfaces currently open on your DSM desktop to understand the context of your request and provide more relevant responses. This may include settings displayed in Control Panel, file lists in File Station, and related information such as file names, paths, account names, or configuration details, which may contain personal data or confidential information. DSM Agent does not access on-screen information when this feature is disabled and does not proactively access application interfaces that are not open or the contents of files. |
| 511 | - **Technical identifiers:** DSM Agent uses a randomly generated session ID, as well as technical identifiers such as Storage ID, User ID, and Message ID, to associate messages with the relevant conversation, maintain conversation continuity, provide relevant services, and locate your data when you exercise your right to access or delete it. |
| 512 | - **Interaction statistics:** DSM Agent records interactions with certain action buttons in the conversation window, such as Support, Inquiry, Feedback. This data is used only in aggregated form to understand feature usage, maintain service quality, and improve DSM Agent, and cannot be used to identify a specific user. |
| 513 | |
| 514 | Note: DSM Agent does not require you to provide passwords, verification codes, private keys, access tokens, or other sensitive credentials. Do not enter such information in your questions or conversation content, or display it in an application interface when using the optional on-screen information feature. |
| 515 | |
| 516 | ### How we use your data |
| 517 | |
| 518 | DSM Agent uses the data described above to understand your requests, generate relevant AI responses, provide operating guidance and troubleshooting recommendations, maintain service functionality and stability, and analyze and improve the user experience. |
| 519 | |
| 520 | To provide DSM Agent services, your questions, conversation content, necessary system information, and, if you enable the optional feature, on-screen information are primarily transmitted to and processed on Synology servers. Certain data may also be processed by the third-party service providers listed below for the specific purposes described. Only the data necessary for the applicable purpose will be transmitted. |
| 521 | |
| 522 | - **Gemma 4 deployed on the Gemini Enterprise Agent Platform:** May be used to generate AI responses when Synology's AI service is unavailable. For more information about Google's privacy and data protection practices, please refer to the [Google Cloud Privacy Resource Center](https://cloud.google.com/privacy) and [Google Privacy Policy](https://policies.google.com/privacy). |
| 523 | - **OpenAI and Microsoft Azure embeddings:** Used to create text embeddings that help the system understand and match relevant content. For more information about the applicable service providers' privacy and data protection practices, please refer to the [OpenAI Privacy Policy](https://openai.com/policies/row-privacy-policy/) and [Microsoft Azure Privacy Policy](https://azure.microsoft.com/explore/trusted-cloud/privacy). |
| 524 | |
| 525 | Synology restricts access to the processed data based on the principle of least privilege. Only authorized personnel who require access for development, maintenance, troubleshooting, or service quality improvement may access relevant data within the scope necessary for their responsibilities. Such access is subject to internal access control and audit mechanisms. |
| 526 | |
| 527 | Synology may use interaction statistics and other de-identified or aggregated service data to prepare internal service quality reports, analyze feature usage, investigate service issues, and improve DSM Agent. These reports do not contain information that can directly identify a specific user and are accessible only to authorized personnel. |
| 528 | |
| 529 | ### How we store your data |
| 530 | |
| 531 | Synology implements reasonable and appropriate technical and organizational security measures, including encryption, access controls, and audit mechanisms, to reduce the risk of unauthorized access, use, alteration, or disclosure. |
| 532 | |
| 533 | The storage location and retention period for each type of data are as follows: |
| 534 | |
| 535 | | Data type | Storage location | Retention period | |
| 536 | | --- | --- | --- | |
| 537 | | Conversation records, system information, Session IDs, Message IDs, relevant on-screen information (if enabled), and interaction records | Synology AI Server | 31 days; automatically deleted upon expiration | |
| 538 | | Service quality analytics data (including conversation records and associated Session IDs) | Analytics server | Retained for the duration of the applicable service analysis or issue investigation and deleted when no longer necessary for those purposes | |
| 539 | | Conversation records (local) | User's NAS device | Controlled by the user and may be manually cleared at any time | |
| 540 | | Session ID / Storage ID / User ID (local) | User's NAS device / browser local storage | Not transmitted to external servers and may be cleared by the user at any time | |
| 541 | |
| 542 | ⠀ |
| 543 | |
| 544 | To delete DSM Agent conversation data, you may submit a deletion request to Synology. Once your request has been verified, the relevant data will be **permanently removed**. You may also clear locally stored conversation records directly from your NAS device at any time. |