Privacy notice
Operator and contact
Mahalai is operated by EGO-Works. For support, privacy questions, or account and data deletion requests, contact mahalaiapp@gmail.com.
Information Mahalai handles
Account creation uses your email address and authentication data through Supabase Auth. Your profile can include your school, faculty, student or staff status, entry year, nickname, and avatar. Enrollment verification handles submitted documents, their type and review status, and limited extracted text such as a name and student or admission number when found.
Mahalai handles posts, comments, photos, polls and votes, marketplace details, reports and appeals, support requests and attachments, chat messages and photos, friend and group relationships, timetable blocks, GPA course entries, and notification preferences that you create or provide. It stores device push tokens when you enable notifications, plus operational timestamps, moderation decisions, reports, and administrator actions.
Purposes and visibility
These records support sign-in, school membership, profiles, school feeds, chat and notifications, timetable and GPA tools, support, moderation, report handling, and prevention of duplicate enrollment-proof approvals.
Posts are limited to members of the same school and are anonymous by default. Posters can choose to show their nickname and avatar. Comments use anonymous labels, but the service processes account identifiers internally. Anonymous one-to-one chats can be opened from posts and comments; those rooms hide participant identity in the participant-facing view and disable photo sending. Friend chats and group chats are visible to their participants.
Accepted friends can see current-semester class names and locations for timetable blocks marked as classes. Other personal blocks show only day and time. Group timetable comparisons show busy/free time. A timetable image shared in a chat is visible to that chat's participants.
Enrollment documents and support requests are restricted to the submitting user and authorized administrators in the app. Chat messages and attachments are available to conversation participants and authorized report handling. Administrators can review reported or moderated content and enrollment documents.
Providers and external processing
- Supabase provides authentication, database, storage, realtime updates, and server functions.
- Google Cloud Vision receives enrollment documents for OCR and post images for OCR and safety review.
- Google Vertex AI receives post/comment text and related context for moderation, and can receive attached post images and OCR text.
- OpenAI is used by a legacy moderation route for submitted school-board names that reach its keyword check.
- Expo Push receives device push tokens and notification payloads, which can contain short chat/comment previews. Android delivery is configured with Firebase Cloud Messaging.
- Resend can receive administrator email addresses and generic moderation/legal-request alerts. The reviewed email body does not include reported content.
For questions about external processing or a privacy request, contact mahalaiapp@gmail.com.
Retention currently configured
A daily scheduled job is configured to delete reviewed proof files 90 days after review, and clear extracted name/number candidates and per-submission document hashes after that period. The submission metadata row remains. A separate duplicate-prevention claim retains an HMAC identity key and approved-document hash while the account exists.
Orphaned proof files become eligible for cleanup after one day. Support attachments become eligible after their support request is deleted and they have been orphaned for one day. A failed job or missing storage credentials can delay cleanup; these are configured schedules, not verified deletion guarantees.
Original moderation text snapshots, report/moderation snapshots, and post-image OCR text have 90-day purge rules subject to active legal holds. Soft-deleted posts and comments are eligible for deletion after 90 days unless held. Administrator-role audits, moderation events, and legal-request records have no general automatic expiry in the reviewed migrations. These application cleanup schedules do not guarantee simultaneous erasure of service-provider logs or backups.
ประกาศความเป็นส่วนตัว
ผู้ดำเนินการและช่องทางติดต่อ
Mahalai ดำเนินการโดย EGO-Works หากต้องการความช่วยเหลือ สอบถามเรื่องความเป็นส่วนตัว หรือส่งคำขอลบบัญชีและข้อมูล โปรดติดต่อ mahalaiapp@gmail.com
ข้อมูลที่ Mahalai จัดการ
การสร้างบัญชีใช้ที่อยู่อีเมลและข้อมูลการยืนยันตัวตนของคุณผ่าน Supabase Auth โปรไฟล์ของคุณอาจมีชื่อสถานศึกษา คณะ สถานะนักศึกษาหรือบุคลากร ปีที่เข้าเรียน ชื่อเล่น และรูปประจำตัว การตรวจสอบสถานะนักศึกษาหรือบุคลากรจะจัดการเอกสารที่ส่งมา ประเภทเอกสาร สถานะการตรวจสอบ และข้อความที่ดึงออกมาได้ในวงจำกัด เช่น ชื่อและเลขประจำตัวนักศึกษาหรือเลขรับเข้าเมื่อพบข้อมูลดังกล่าว
Mahalai จัดการโพสต์ ความคิดเห็น รูปภาพ โพลและการโหวต รายละเอียดประกาศซื้อขาย รายงานและคำอุทธรณ์ คำขอความช่วยเหลือและไฟล์แนบ ข้อความและรูปภาพในแชต ความสัมพันธ์กับเพื่อนและกลุ่ม ช่วงเวลาในตารางเรียน รายวิชาและคะแนน GPA รวมถึงการตั้งค่าการแจ้งเตือนที่คุณสร้างหรือให้ไว้ เมื่อคุณเปิดใช้การแจ้งเตือน ระบบจะเก็บโทเค็นสำหรับส่งการแจ้งเตือนของอุปกรณ์ รวมถึงเวลาในการดำเนินงาน การตัดสินใจตรวจสอบเนื้อหา รายงาน และการดำเนินการของผู้ดูแลระบบ
วัตถุประสงค์และการมองเห็นข้อมูล
ข้อมูลเหล่านี้ใช้เพื่อรองรับการเข้าสู่ระบบ การเป็นสมาชิกสถานศึกษา โปรไฟล์ ฟีดของสถานศึกษา แชตและการแจ้งเตือน เครื่องมือตารางเรียนและ GPA การช่วยเหลือ การตรวจสอบเนื้อหา การจัดการรายงาน และการป้องกันการอนุมัติหลักฐานการศึกษาเดียวกันซ้ำ
โพสต์จะแสดงแก่สมาชิกของสถานศึกษาเดียวกันเท่านั้น และตั้งค่าเป็นนิรนามไว้โดยปริยาย ผู้โพสต์เลือกแสดงชื่อเล่นและรูปประจำตัวได้ ความคิดเห็นใช้ป้ายชื่อแบบนิรนาม แต่บริการประมวลผลตัวระบุบัญชีภายในระบบได้ สามารถเริ่มแชตแบบตัวต่อตัวที่ไม่เปิดเผยตัวตนจากโพสต์และความคิดเห็นได้ โดยหน้าจอของผู้เข้าร่วมจะซ่อนตัวตนของคู่สนทนาและปิดการส่งรูปภาพ แชตกับเพื่อนและแชตกลุ่มจะมองเห็นได้โดยผู้เข้าร่วมในแชตนั้น
เพื่อนที่ตอบรับแล้วจะเห็นชื่อวิชาและสถานที่เรียนของภาคการศึกษาปัจจุบัน สำหรับช่วงเวลาในตารางที่ระบุว่าเป็นคาบเรียน ช่วงเวลาส่วนตัวประเภทอื่นจะแสดงเฉพาะวันและเวลา การเปรียบเทียบตารางของกลุ่มจะแสดงช่วงเวลาว่างหรือไม่ว่าง รูปตารางเรียนที่แชร์ในแชตจะมองเห็นได้โดยผู้เข้าร่วมในแชตนั้น
เอกสารยืนยันสถานะและคำขอความช่วยเหลือจะจำกัดการเข้าถึงไว้สำหรับผู้ส่งและผู้ดูแลระบบที่ได้รับอนุญาตภายในแอป ข้อความและไฟล์แนบในแชตจะเข้าถึงได้โดยผู้เข้าร่วมการสนทนาและผู้ที่ได้รับอนุญาตให้จัดการรายงาน ผู้ดูแลระบบสามารถตรวจสอบเนื้อหาที่ถูกรายงานหรือส่งเข้ากระบวนการตรวจสอบ รวมถึงเอกสารยืนยันสถานะได้
ผู้ให้บริการและการประมวลผลภายนอก
- Supabase ให้บริการยืนยันตัวตน ฐานข้อมูล พื้นที่จัดเก็บข้อมูล การอัปเดตแบบเรียลไทม์ และฟังก์ชันฝั่งเซิร์ฟเวอร์
- Google Cloud Vision ได้รับเอกสารยืนยันสถานะเพื่อทำ OCR และได้รับรูปภาพโพสต์เพื่อทำ OCR และตรวจสอบความปลอดภัย
- Google Vertex AI ได้รับข้อความโพสต์หรือความคิดเห็นและบริบทที่เกี่ยวข้องเพื่อตรวจสอบเนื้อหา และอาจได้รับรูปภาพที่แนบกับโพสต์และข้อความ OCR ด้วย
- เส้นทางตรวจสอบเนื้อหารุ่นเดิมใช้ OpenAI กับชื่อกระดานของสถานศึกษาที่ส่งเข้ามาถึงขั้นตอนตรวจคำสำคัญ
- Expo Push ได้รับโทเค็นสำหรับส่งการแจ้งเตือนของอุปกรณ์และข้อมูลการแจ้งเตือน ซึ่งอาจมีตัวอย่างข้อความสั้นจากแชตหรือความคิดเห็น การส่งการแจ้งเตือนบน Android ตั้งค่าให้ใช้ Firebase Cloud Messaging
- Resend อาจได้รับที่อยู่อีเมลของผู้ดูแลระบบและการแจ้งเตือนทั่วไปเกี่ยวกับการตรวจสอบเนื้อหาหรือคำขอทางกฎหมาย เนื้อหาอีเมลที่ตรวจสอบไม่มีเนื้อหาที่ถูกรายงาน
หากมีคำถามเกี่ยวกับการประมวลผลภายนอกหรือต้องการส่งคำขอเกี่ยวกับความเป็นส่วนตัว โปรดติดต่อ mahalaiapp@gmail.com
ระยะเวลาการเก็บรักษาที่ตั้งค่าไว้ในปัจจุบัน
มีการตั้งค่างานตามกำหนดเวลารายวันให้ลบไฟล์หลักฐานที่ตรวจสอบแล้วเมื่อครบ 90 วันหลังการตรวจสอบ และล้างข้อมูลชื่อหรือเลขประจำตัวที่ดึงออกมาได้กับค่าแฮชเอกสารของแต่ละรายการส่งหลังพ้นช่วงเวลาดังกล่าว แถวข้อมูลเมตาของรายการส่งยังคงอยู่ ข้อมูลอ้างอิงแยกต่างหากเพื่อป้องกันการส่งซ้ำจะเก็บคีย์ระบุตัวตน HMAC และค่าแฮชของเอกสารที่อนุมัติไว้ตราบใดที่บัญชียังอยู่
ไฟล์หลักฐานที่ไม่มีรายการอ้างอิงจะเข้าเกณฑ์การล้างหลังจากหนึ่งวัน ไฟล์แนบคำขอความช่วยเหลือจะเข้าเกณฑ์หลังจากลบคำขอนั้นแล้วและไฟล์ไม่มีรายการอ้างอิงเป็นเวลาหนึ่งวัน งานที่ล้มเหลวหรือข้อมูลรับรองพื้นที่จัดเก็บที่ขาดหายไปอาจทำให้การล้างข้อมูลล่าช้า กำหนดการเหล่านี้เป็นค่าที่ตั้งไว้ ไม่ใช่การรับรองว่าลบสำเร็จแล้ว
สำเนาข้อความต้นฉบับที่ใช้ตรวจสอบ สำเนารายงานหรือการตรวจสอบเนื้อหา และข้อความ OCR จากรูปภาพโพสต์ มีกฎให้ล้างเมื่อครบ 90 วัน เว้นแต่มีการระงับการลบเพื่อดำเนินการทางกฎหมายที่ยังมีผลอยู่ โพสต์และความคิดเห็นที่ลบแบบไม่ถาวรเข้าเกณฑ์การลบหลัง 90 วัน เว้นแต่ถูกระงับไว้ บันทึกการกำหนดบทบาทผู้ดูแล เหตุการณ์การตรวจสอบเนื้อหา และบันทึกคำขอทางกฎหมายไม่มีวันหมดอายุอัตโนมัติทั่วไปใน migrations ที่ตรวจสอบแล้ว กำหนดการล้างข้อมูลของแอปเหล่านี้ไม่รับรองว่าบันทึกหรือข้อมูลสำรองของผู้ให้บริการจะถูกลบพร้อมกัน