Updated September 16, 2026.

DUNCAN LINK is a fleet information and camera viewer for users authorized by the system operator. It connects to the service at camera.nguyenthuyen.vn. The app support and privacy contact is Nguyễn Đình Thuyên at [email protected].

Information processed

Sign-in and account information. Sign-in takes place in the system authentication browser through Cloudflare Access and the identity provider configured by the operator. After authentication, the app receives a session token, email address and expiry time. The server verifies the account identity and stores the email address, account identifier and name when supplied by the identity provider. The app does not provide a separate password collection form.

Usage sessions. The server records a random session identifier, start time, last activity, session end time/reason when available, language and app version. During camera viewing, the app sends vessel and camera identifiers, viewing mode, stream profile and session state so the server can authorize and coordinate connections and carry out administrator requests to stop a session. Authorized administrators can see the identity and state of active sessions. The service supports operational activity reports; when the operator enables report delivery, report data is sent to configured recipients through a mail service.

Camera and fleet content. The app receives camera images from the operator’s system, together with vessel positions, tracks and available operational/weather information. Map positions refer to vessels; the app does not request the viewer device’s GPS location. Vessel cameras may capture people or information in monitored areas. The operator of those camera/NVR systems manages their original collection and recording retention.

Technical information. Internet connectivity and sign-in involve processing network information, including IP addresses, and request/authentication information according to the infrastructure providers’ configuration. The app may write video diagnostics to the device’s system log, such as camera identifier, quality mode, connection timings, received data volume and error codes. The app has no feature that automatically uploads those complete device diagnostic logs to an external analytics service.

Support requests. If you email support, the information, contact details and attachments you choose to provide are used to handle your request. Send only what is necessary. Do not send passwords, sign-in codes or access-token-bearing links.

Information stored on your device

Sign-in credentials are stored in Apple Keychain using protection that permits access while the device is unlocked and prevents migration to another device through a Keychain backup. Language, appearance and favorite-camera settings are stored in the app’s local data.

Live playback uses a temporary in-memory video buffer. If you take a camera snapshot, the app creates a temporary JPEG on your device. It does not automatically upload that image to the server. You may choose to save or share it using the operating system’s share sheet. Your selected destination handles its copy under its own policy. Temporary images may remain in temporary app storage until replaced or cleaned up by the system; closing the screen does not mean that every copy is deleted.

Purposes and recipients

Information is used to authenticate accounts, enforce access permissions, display authorized content, maintain or end sessions, protect the service, troubleshoot problems and respond to support requests. Processing may involve the fleet/camera operator, authorized administrators, Cloudflare and the configured identity provider, infrastructure/mail providers where configured, and destinations you choose when sharing an image. In-app maps use Apple MapKit; Apple’s services are governed by Apple’s privacy policy.

The app does not integrate advertising SDKs or access advertising identifiers, and has no feature for tracking you across other companies’ apps or websites for advertising. Viewing the operator’s cameras does not require access to your contacts, microphone, device camera or photo library.

Retention, sign-out and data requests

Server audit retention depends on the operator’s retention configuration. Backups, emailed reports, authentication providers and camera systems may follow separate schedules. This policy does not promise one fixed automatic deletion period for every system. Contact us to ask about the information and retention schedule applicable to your account.

Signing out clears the app’s saved Keychain credential and attempts to end the server session when connectivity permits. It does not automatically erase server audit history, copies of shared snapshots, or identity-provider browser sessions.

To request access, correction, deletion or withdrawal of service access, contact [email protected] from your account email address. Handling a request may require identity verification and coordination with the system operator. Applicable retention obligations and data held in another party’s system may affect the scope of the request. The app currently uses previously authorized accounts and does not provide self-service account registration.

Safeguards and updates

Connections to the service use HTTPS/WSS, access authentication and operating-system protections. The sign-in token transfer also uses a cryptographic library to protect that transfer. No system can guarantee absolute security. Do not share accounts or images beyond the permissions granted by the operator.

When the app’s data practices change, this page will be updated with the revised date above. Privacy contact: [email protected].