EGO-Works · Mahalai
Privacy and account deletion
Last updated · 27 September 2026
EGO-Works · Mahalai
ประกาศความเป็นส่วนตัวและการลบบัญชี
อัปเดตล่าสุด · 27 กันยายน 2026
Privacy notice
Operator and contact
Mahalai is operated by EGO-Works. For support, privacy questions, or account and data deletion requests, contact mahalaiapp@gmail.com.
Information Mahalai handles
Account creation uses your email address and authentication data through Supabase Auth. Your profile can include your school, faculty, student or staff status, entry year, nickname, and avatar. Enrollment verification handles submitted documents, their type and review status, and limited extracted text such as a name and student or admission number when found.
Mahalai handles posts, comments, photos, polls and votes, marketplace details, reports and appeals, support requests and attachments, chat messages and photos, friend and group relationships, timetable blocks, GPA course entries, and notification preferences that you create or provide. It stores device push tokens when you enable notifications, plus operational timestamps, moderation decisions, reports, and administrator actions.
Purposes and visibility
These records support sign-in, school membership, profiles, school feeds, chat and notifications, timetable and GPA tools, support, moderation, report handling, and prevention of duplicate enrollment-proof approvals.
Posts are limited to members of the same school and are anonymous by default. Posters can choose to show their nickname and avatar. Comments use anonymous labels, but the service processes account identifiers internally. Anonymous one-to-one chats can be opened from posts and comments; those rooms hide participant identity in the participant-facing view and disable photo sending. Friend chats and group chats are visible to their participants.
Accepted friends can see current-semester class names and locations for timetable blocks marked as classes. Other personal blocks show only day and time. Group timetable comparisons show busy/free time. A timetable image shared in a chat is visible to that chat's participants.
Enrollment documents and support requests are restricted to the submitting user and authorized administrators in the app. Chat messages and attachments are available to conversation participants and authorized report handling. Administrators can review reported or moderated content and enrollment documents.
Providers and external processing
- Supabase provides authentication, database, storage, realtime updates, and server functions.
- Google Cloud Vision receives enrollment documents for OCR and post images for OCR and safety review.
- Google Vertex AI receives post/comment text and related context for moderation, and can receive attached post images and OCR text.
- OpenAI is used by a legacy moderation route for submitted school-board names that reach its keyword check.
- Expo Push receives device push tokens and notification payloads, which can contain short chat/comment previews. Android delivery is configured with Firebase Cloud Messaging.
- Resend can receive administrator email addresses and generic moderation/legal-request alerts. The reviewed email body does not include reported content.
For questions about external processing or a privacy request, contact mahalaiapp@gmail.com.
Retention currently configured
A daily scheduled job is configured to delete reviewed proof files 90 days after review, and clear extracted name/number candidates and per-submission document hashes after that period. The submission metadata row remains. A separate duplicate-prevention claim retains an HMAC identity key and approved-document hash while the account exists.
Orphaned proof files become eligible for cleanup after one day. Support attachments become eligible after their support request is deleted and they have been orphaned for one day. A failed job or missing storage credentials can delay cleanup; these are configured schedules, not verified deletion guarantees.
Original moderation text snapshots, report/moderation snapshots, and post-image OCR text have 90-day purge rules subject to active legal holds. Soft-deleted posts and comments are eligible for deletion after 90 days unless held. Administrator-role audits, moderation events, and legal-request records have no general automatic expiry in the reviewed migrations. These application cleanup schedules do not guarantee simultaneous erasure of service-provider logs or backups.
ประกาศความเป็นส่วนตัว
ผู้ดำเนินการและช่องทางติดต่อ
Mahalai ดำเนินการโดย EGO-Works หากต้องการความช่วยเหลือ สอบถามเรื่องความเป็นส่วนตัว หรือส่งคำขอลบบัญชีและข้อมูล โปรดติดต่อ mahalaiapp@gmail.com
ข้อมูลที่ Mahalai จัดการ
การสร้างบัญชีใช้ที่อยู่อีเมลและข้อมูลการยืนยันตัวตนของคุณผ่าน Supabase Auth โปรไฟล์ของคุณอาจมีชื่อสถานศึกษา คณะ สถานะนักศึกษาหรือบุคลากร ปีที่เข้าเรียน ชื่อเล่น และรูปประจำตัว การตรวจสอบสถานะนักศึกษาหรือบุคลากรจะจัดการเอกสารที่ส่งมา ประเภทเอกสาร สถานะการตรวจสอบ และข้อความที่ดึงออกมาได้ในวงจำกัด เช่น ชื่อและเลขประจำตัวนักศึกษาหรือเลขรับเข้าเมื่อพบข้อมูลดังกล่าว
Mahalai จัดการโพสต์ ความคิดเห็น รูปภาพ โพลและการโหวต รายละเอียดประกาศซื้อขาย รายงานและคำอุทธรณ์ คำขอความช่วยเหลือและไฟล์แนบ ข้อความและรูปภาพในแชต ความสัมพันธ์กับเพื่อนและกลุ่ม ช่วงเวลาในตารางเรียน รายวิชาและคะแนน GPA รวมถึงการตั้งค่าการแจ้งเตือนที่คุณสร้างหรือให้ไว้ เมื่อคุณเปิดใช้การแจ้งเตือน ระบบจะเก็บโทเค็นสำหรับส่งการแจ้งเตือนของอุปกรณ์ รวมถึงเวลาในการดำเนินงาน การตัดสินใจตรวจสอบเนื้อหา รายงาน และการดำเนินการของผู้ดูแลระบบ
วัตถุประสงค์และการมองเห็นข้อมูล
ข้อมูลเหล่านี้ใช้เพื่อรองรับการเข้าสู่ระบบ การเป็นสมาชิกสถานศึกษา โปรไฟล์ ฟีดของสถานศึกษา แชตและการแจ้งเตือน เครื่องมือตารางเรียนและ GPA การช่วยเหลือ การตรวจสอบเนื้อหา การจัดการรายงาน และการป้องกันการอนุมัติหลักฐานการศึกษาเดียวกันซ้ำ
โพสต์จะแสดงแก่สมาชิกของสถานศึกษาเดียวกันเท่านั้น และตั้งค่าเป็นนิรนามไว้โดยปริยาย ผู้โพสต์เลือกแสดงชื่อเล่นและรูปประจำตัวได้ ความคิดเห็นใช้ป้ายชื่อแบบนิรนาม แต่บริการประมวลผลตัวระบุบัญชีภายในระบบได้ สามารถเริ่มแชตแบบตัวต่อตัวที่ไม่เปิดเผยตัวตนจากโพสต์และความคิดเห็นได้ โดยหน้าจอของผู้เข้าร่วมจะซ่อนตัวตนของคู่สนทนาและปิดการส่งรูปภาพ แชตกับเพื่อนและแชตกลุ่มจะมองเห็นได้โดยผู้เข้าร่วมในแชตนั้น
เพื่อนที่ตอบรับแล้วจะเห็นชื่อวิชาและสถานที่เรียนของภาคการศึกษาปัจจุบัน สำหรับช่วงเวลาในตารางที่ระบุว่าเป็นคาบเรียน ช่วงเวลาส่วนตัวประเภทอื่นจะแสดงเฉพาะวันและเวลา การเปรียบเทียบตารางของกลุ่มจะแสดงช่วงเวลาว่างหรือไม่ว่าง รูปตารางเรียนที่แชร์ในแชตจะมองเห็นได้โดยผู้เข้าร่วมในแชตนั้น
เอกสารยืนยันสถานะและคำขอความช่วยเหลือจะจำกัดการเข้าถึงไว้สำหรับผู้ส่งและผู้ดูแลระบบที่ได้รับอนุญาตภายในแอป ข้อความและไฟล์แนบในแชตจะเข้าถึงได้โดยผู้เข้าร่วมการสนทนาและผู้ที่ได้รับอนุญาตให้จัดการรายงาน ผู้ดูแลระบบสามารถตรวจสอบเนื้อหาที่ถูกรายงานหรือส่งเข้ากระบวนการตรวจสอบ รวมถึงเอกสารยืนยันสถานะได้
ผู้ให้บริการและการประมวลผลภายนอก
- Supabase ให้บริการยืนยันตัวตน ฐานข้อมูล พื้นที่จัดเก็บข้อมูล การอัปเดตแบบเรียลไทม์ และฟังก์ชันฝั่งเซิร์ฟเวอร์
- Google Cloud Vision ได้รับเอกสารยืนยันสถานะเพื่อทำ OCR และได้รับรูปภาพโพสต์เพื่อทำ OCR และตรวจสอบความปลอดภัย
- Google Vertex AI ได้รับข้อความโพสต์หรือความคิดเห็นและบริบทที่เกี่ยวข้องเพื่อตรวจสอบเนื้อหา และอาจได้รับรูปภาพที่แนบกับโพสต์และข้อความ OCR ด้วย
- เส้นทางตรวจสอบเนื้อหารุ่นเดิมใช้ OpenAI กับชื่อกระดานของสถานศึกษาที่ส่งเข้ามาถึงขั้นตอนตรวจคำสำคัญ
- Expo Push ได้รับโทเค็นสำหรับส่งการแจ้งเตือนของอุปกรณ์และข้อมูลการแจ้งเตือน ซึ่งอาจมีตัวอย่างข้อความสั้นจากแชตหรือความคิดเห็น การส่งการแจ้งเตือนบน Android ตั้งค่าให้ใช้ Firebase Cloud Messaging
- Resend อาจได้รับที่อยู่อีเมลของผู้ดูแลระบบและการแจ้งเตือนทั่วไปเกี่ยวกับการตรวจสอบเนื้อหาหรือคำขอทางกฎหมาย เนื้อหาอีเมลที่ตรวจสอบไม่มีเนื้อหาที่ถูกรายงาน
หากมีคำถามเกี่ยวกับการประมวลผลภายนอกหรือต้องการส่งคำขอเกี่ยวกับความเป็นส่วนตัว โปรดติดต่อ mahalaiapp@gmail.com
ระยะเวลาการเก็บรักษาที่ตั้งค่าไว้ในปัจจุบัน
มีการตั้งค่างานตามกำหนดเวลารายวันให้ลบไฟล์หลักฐานที่ตรวจสอบแล้วเมื่อครบ 90 วันหลังการตรวจสอบ และล้างข้อมูลชื่อหรือเลขประจำตัวที่ดึงออกมาได้กับค่าแฮชเอกสารของแต่ละรายการส่งหลังพ้นช่วงเวลาดังกล่าว แถวข้อมูลเมตาของรายการส่งยังคงอยู่ ข้อมูลอ้างอิงแยกต่างหากเพื่อป้องกันการส่งซ้ำจะเก็บคีย์ระบุตัวตน HMAC และค่าแฮชของเอกสารที่อนุมัติไว้ตราบใดที่บัญชียังอยู่
ไฟล์หลักฐานที่ไม่มีรายการอ้างอิงจะเข้าเกณฑ์การล้างหลังจากหนึ่งวัน ไฟล์แนบคำขอความช่วยเหลือจะเข้าเกณฑ์หลังจากลบคำขอนั้นแล้วและไฟล์ไม่มีรายการอ้างอิงเป็นเวลาหนึ่งวัน งานที่ล้มเหลวหรือข้อมูลรับรองพื้นที่จัดเก็บที่ขาดหายไปอาจทำให้การล้างข้อมูลล่าช้า กำหนดการเหล่านี้เป็นค่าที่ตั้งไว้ ไม่ใช่การรับรองว่าลบสำเร็จแล้ว
สำเนาข้อความต้นฉบับที่ใช้ตรวจสอบ สำเนารายงานหรือการตรวจสอบเนื้อหา และข้อความ OCR จากรูปภาพโพสต์ มีกฎให้ล้างเมื่อครบ 90 วัน เว้นแต่มีการระงับการลบเพื่อดำเนินการทางกฎหมายที่ยังมีผลอยู่ โพสต์และความคิดเห็นที่ลบแบบไม่ถาวรเข้าเกณฑ์การลบหลัง 90 วัน เว้นแต่ถูกระงับไว้ บันทึกการกำหนดบทบาทผู้ดูแล เหตุการณ์การตรวจสอบเนื้อหา และบันทึกคำขอทางกฎหมายไม่มีวันหมดอายุอัตโนมัติทั่วไปใน migrations ที่ตรวจสอบแล้ว กำหนดการล้างข้อมูลของแอปเหล่านี้ไม่รับรองว่าบันทึกหรือข้อมูลสำรองของผู้ให้บริการจะถูกลบพร้อมกัน
Account and data deletion
Request in the app
Go to Profile → Settings → Delete account. The current flow asks for your password and calls the server-side account deletion function.
Request by email without installing the app
Contact mahalaiapp@gmail.com with the subject “Mahalai account and data deletion request”. Specify whether you want your account deleted, specific content containing personal information removed, or both. Provide the account email address and, for a content request, a link or enough detail to locate the content. Do not send your password or enrollment documents.
The EGO-Works operating team receives these requests and verifies account ownership before processing them. For a request about specific content, include a link or other details that allow the team to locate it. You can also ask privacy questions at the same address.
What the current account deletion function does
It removes the authentication account and profile-linked information, including private profile, timetable, group memberships, bookmarks, proof-submission rows, and the student-identity duplicate-prevention claim.
Posts, comments, likes, votes, and chat messages remain with a newly generated account identifier. This does not remove personal information written in text or contained in photos, and does not prove that all retained records are anonymous. One-to-one chat rooms are removed when both former participants no longer have accounts; otherwise messages remain for other participants. Reports and appeals may remain without the deleted reporter's account reference.
Current limitation: account deletion does not automatically remove surviving content, media, or chat history. If retained content includes your personal information, you can request its removal by email. Existing content has no fixed automatic expiry through the account deletion function. We do not describe replacing an account identifier as removal of all personal information from text, photos, or message history.
การลบบัญชีและข้อมูล
ส่งคำขอในแอป
ไปที่ โปรไฟล์ → การตั้งค่า → ลบบัญชี ขั้นตอนปัจจุบันจะขอรหัสผ่านของคุณและเรียกใช้ฟังก์ชันลบบัญชีฝั่งเซิร์ฟเวอร์
ส่งคำขอทางอีเมลโดยไม่ต้องติดตั้งแอป
ส่งอีเมลถึง mahalaiapp@gmail.com โดยใช้หัวข้อ “Mahalai account and data deletion request” ระบุว่าต้องการลบบัญชี ลบเนื้อหาบางรายการที่มีข้อมูลส่วนบุคคล หรือต้องการทั้งสองอย่าง โปรดแจ้งที่อยู่อีเมลของบัญชี และหากขอให้ลบเนื้อหา โปรดส่งลิงก์หรือรายละเอียดที่เพียงพอให้ค้นหาเนื้อหานั้นได้ อย่าส่งรหัสผ่านหรือเอกสารยืนยันสถานะของคุณ
ทีมปฏิบัติงานของ EGO-Works จะรับคำขอเหล่านี้และตรวจสอบความเป็นเจ้าของบัญชีก่อนดำเนินการ หากเป็นคำขอเกี่ยวกับเนื้อหาเฉพาะ โปรดใส่ลิงก์หรือรายละเอียดอื่นที่ช่วยให้ทีมค้นหาเนื้อหานั้นได้ คุณสามารถสอบถามเรื่องความเป็นส่วนตัวได้ที่อีเมลเดียวกัน
สิ่งที่ฟังก์ชันลบบัญชีในปัจจุบันดำเนินการ
ฟังก์ชันจะลบบัญชีสำหรับการยืนยันตัวตนและข้อมูลที่เชื่อมโยงกับโปรไฟล์ รวมถึงข้อมูลโปรไฟล์ส่วนตัว ตารางเรียน การเป็นสมาชิกกลุ่ม รายการบันทึก แถวข้อมูลการส่งหลักฐาน และข้ออ้างสิทธิ์ที่ใช้ป้องกันการส่งข้อมูลระบุตัวตนนักศึกษาซ้ำ
โพสต์ ความคิดเห็น การกดถูกใจ การโหวต และข้อความแชตจะยังคงอยู่โดยเปลี่ยนเป็นตัวระบุบัญชีที่สร้างขึ้นใหม่ การเปลี่ยนนี้ไม่ได้ลบข้อมูลส่วนบุคคลที่เขียนไว้ในข้อความหรืออยู่ในรูปภาพ และไม่ได้ยืนยันว่าข้อมูลที่เก็บไว้ทั้งหมดเป็นนิรนาม ห้องแชตตัวต่อตัวจะถูกลบเมื่ออดีตผู้เข้าร่วมทั้งสองฝ่ายไม่มีบัญชีเหลืออยู่แล้วเท่านั้น มิฉะนั้นข้อความจะยังคงอยู่ให้ผู้เข้าร่วมอีกฝ่าย รายงานและคำอุทธรณ์อาจยังคงอยู่โดยไม่มีข้อมูลอ้างอิงถึงบัญชีของผู้รายงานที่ถูกลบไปแล้ว
ข้อจำกัดในปัจจุบัน: การลบบัญชีไม่ได้ลบเนื้อหา สื่อ หรือประวัติแชตที่ยังคงอยู่โดยอัตโนมัติ หากเนื้อหาที่ยังเก็บไว้มีข้อมูลส่วนบุคคลของคุณ คุณสามารถส่งคำขอลบเนื้อหานั้นทางอีเมลได้ ฟังก์ชันลบบัญชีไม่ได้กำหนดวันหมดอายุอัตโนมัติของเนื้อหาที่มีอยู่ เราไม่ถือว่าการเปลี่ยนตัวระบุบัญชีเป็นการลบข้อมูลส่วนบุคคลทั้งหมดออกจากข้อความ รูปภาพ หรือประวัติข้อความ