นโยบายความเป็นส่วนตัว
แพลตฟอร์ม Moowan AI (revoxai.ai) · มีผลบังคับใช้: 5 สิงหาคม 2569 (August 5, 2026) · English version below
1. เราคือใคร
แพลตฟอร์ม Moowan AI (“แพลตฟอร์ม”, “เรา”) ให้บริการผู้ช่วย AI สำหรับองค์กร ที่โดเมน revoxai.ai นโยบายฉบับนี้อธิบายว่าเราเก็บ ใช้ และคุ้มครองข้อมูลส่วนบุคคลของคุณอย่างไร ตามพระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 (PDPA) และนโยบายข้อมูลผู้ใช้ของบริการ Google API
2. ข้อมูลที่เราเก็บ
- ข้อมูลบัญชี — อีเมล ชื่อที่แสดง รูปโปรไฟล์ องค์กรที่สังกัด และบทบาทผู้ใช้
- เนื้อหาการใช้งาน — ข้อความแชท เอกสารที่อัปโหลดเข้าคลังความรู้ และการตั้งค่า agent
- ข้อมูลการใช้งานระบบ — บันทึกการเข้าใช้ (audit log) จำนวนโทเคน และค่าใช้จ่ายของโมเดล
- คุกกี้ — เฉพาะคุกกี้ session สำหรับการยืนยันตัวตน ไม่ใช้คุกกี้โฆษณาหรือติดตามข้ามเว็บ
3. ข้อมูลจากบัญชี Google ของคุณ
เมื่อคุณเลือกเชื่อมต่อบัญชี Google (เข้าสู่ระบบด้วย Google, เชื่อมต่อ Gmail หรือผูกคลาวด์ไดรฟ์) เราจะขอสิทธิ์เท่าที่จำเป็นต่อฟีเจอร์ที่คุณเปิดใช้เท่านั้น:
- อีเมลและโปรไฟล์พื้นฐาน — เพื่อยืนยันตัวตนและแสดงว่าเชื่อมต่อบัญชีใด
- Gmail (ส่ง/อ่าน) — เพื่อให้ agent ส่งและอ่านอีเมลตามที่คุณสั่งเท่านั้น
- Google Sheets / Calendar — เพื่ออ่าน-เขียนข้อมูลตามคำสั่งของคุณผ่าน agent
- Google Drive / OneDrive — เพื่อเรียกดู อัปโหลด ดาวน์โหลด และจัดการไฟล์ผ่านตัวจัดการไฟล์ของแพลตฟอร์ม
วิธีที่เราจัดการข้อมูลเหล่านี้: refresh token ถูกเก็บแบบเข้ารหัส (AES-256-GCM) ฝั่งเซิร์ฟเวอร์เท่านั้น และไม่เคยส่งถึงเบราว์เซอร์ · access token อายุสั้นถูกใช้ในหน่วยความจำของเซิร์ฟเวอร์ · ไฟล์ที่เรียกดูหรือดาวน์โหลดผ่านตัวจัดการไฟล์ถูกส่งผ่าน (stream) โดยไม่เก็บสำเนาบนเซิร์ฟเวอร์ ยกเว้นไฟล์ที่คุณสั่งนำเข้าคลังความรู้อย่างชัดแจ้ง · เนื้อหาอีเมลไม่ถูกเก็บถาวร เว้นแต่เป็นผลลัพธ์ที่คุณสั่งให้บันทึก
การใช้ข้อมูลที่ได้รับจาก Google API เป็นไปตาม Google API Services User Data Policy รวมถึงข้อกำหนด Limited Use — เราไม่ขายข้อมูล ไม่ใช้เพื่อโฆษณา และไม่ใช้ข้อมูลจาก Google API ในการฝึกโมเดล AI
4. การใช้ข้อมูลกับผู้ให้บริการโมเดล AI
ข้อความแชทและเอกสารที่คุณส่งให้ผู้ช่วย AI จะถูกประมวลผลโดยผู้ให้บริการโมเดลภายนอก (เช่น Google Gemini) ตามที่องค์กรของคุณกำหนดค่าไว้ เราส่งเฉพาะเนื้อหาที่จำเป็นต่อการตอบคำถามนั้น และไม่ส่ง credential ใดๆ ของคุณให้ผู้ให้บริการโมเดล
5. การเปิดเผยข้อมูล
เราไม่ขายข้อมูลส่วนบุคคล และไม่เปิดเผยต่อบุคคลที่สาม ยกเว้น (ก) ผู้ให้บริการโมเดล AI ตามข้อ 4 (ข) เมื่อกฎหมายกำหนด หรือ (ค) ผู้ดูแลองค์กรของคุณ ซึ่งเห็นข้อมูลการใช้งานภายในองค์กรตนเองตามบทบาท
6. การเก็บรักษาและการลบข้อมูล
- ยกเลิกการเชื่อมต่อ Google ได้ทุกเมื่อที่ ตั้งค่า → การเชื่อมต่อ — ระบบจะเพิกถอน token กับ Google และลบ token ฝั่งเรา
- เพิกถอนสิทธิ์ฝั่ง Google ได้เองที่ myaccount.google.com/permissions
- ขอลบบัญชีและข้อมูลที่เกี่ยวข้องได้โดยติดต่อผู้ดูแลองค์กรของคุณ หรืออีเมลถึงเราตามข้อ 9
7. ความปลอดภัย
ข้อมูลรับส่งผ่าน HTTPS ทั้งหมด · ความลับ (API key, token) ถูกเก็บแบบเข้ารหัสและไม่อยู่ในโค้ด · การเข้าถึงข้อมูลถูกจำกัดตามบทบาทและองค์กร (การแบ่งขอบเขตระดับ tenant) · ทุกการเปลี่ยนแปลงสำคัญถูกบันทึกใน audit log แบบตรวจสอบย้อนหลังได้
8. สิทธิ์ของคุณตาม PDPA
คุณมีสิทธิ์ขอเข้าถึง แก้ไข ลบ ระงับการใช้ หรือคัดค้านการประมวลผลข้อมูลส่วนบุคคลของคุณ รวมถึงถอนความยินยอมได้ทุกเมื่อ โดยติดต่อเราตามช่องทางในข้อ 9
9. ติดต่อเรา
คำถามหรือคำขอเกี่ยวกับข้อมูลส่วนบุคคล: revo.expertise001@gmail.com
10. การเปลี่ยนแปลงนโยบาย
หากมีการแก้ไขสาระสำคัญ เราจะประกาศบนหน้านี้พร้อมปรับวันที่มีผลบังคับใช้
Privacy Policy
Moowan AI platform (revoxai.ai) · Effective: 5 สิงหาคม 2569 (August 5, 2026)
1. Who we are
The Moowan AI platform (“the platform”, “we”) provides an AI assistant for organizations at revoxai.ai. This policy explains how we collect, use, and protect your personal data, in accordance with Thailand’s Personal Data Protection Act B.E. 2562 (PDPA) and the Google API Services User Data Policy.
2. Data we collect
- Account data — email, display name, avatar, organization membership, and role.
- Content — chat messages, documents you upload to the knowledge base, and agent configuration.
- Usage data — audit logs, token counts, and model cost accounting.
- Cookies — a session cookie for authentication only; no advertising or cross-site tracking cookies.
3. Google user data
When you choose to connect a Google account (Sign in with Google, Connect Gmail, or linking a cloud drive), we request only the scopes needed for the features you enable: basic profile/email (authentication and showing which account is connected), Gmail send/read (only to send and read email on your instruction via an agent), Google Sheets and Calendar (read/write on your instruction), and Google Drive / OneDrive (to browse, upload, download, and organize files through the platform’s File Manager).
How we handle it: refresh tokens are stored server-side only, encrypted at rest (AES-256-GCM), and never reach the browser; short-lived access tokens are used in server memory; files browsed or downloaded through the File Manager are streamed through the server without a copy being retained, except files you explicitly import into the knowledge base; email content is not stored permanently unless you instruct the assistant to save a result.
Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, do not use it for advertising, and do not use it to train AI models.
4. AI model providers
Chat messages and documents you submit to the assistant are processed by third-party model providers (such as Google Gemini) as configured by your organization. We send only the content required to answer the request, and never your credentials.
5. Disclosure
We do not sell personal data. We disclose it only to (a) AI model providers as described in section 4, (b) when required by law, or (c) your organization’s administrators, who can see usage within their own organization according to their role.
6. Retention and deletion
- Disconnect Google integrations at any time in Settings → Integrations — we revoke the token with Google and delete it on our side.
- You can also revoke access from Google directly at myaccount.google.com/permissions.
- To delete your account and associated data, contact your organization administrator or email us (section 9).
7. Security
All traffic is served over HTTPS; secrets (API keys, tokens) are stored encrypted and kept out of source code; data access is segregated by role and organization (tenant-level scoping); significant changes are recorded in a tamper-evident audit log.
8. Your rights under the PDPA
You may request access, correction, deletion, restriction of processing, or object to processing of your personal data, and withdraw consent at any time, by contacting us via section 9.
9. Contact
Privacy questions or requests: revo.expertise001@gmail.com
10. Changes to this policy
Material changes will be announced on this page with an updated effective date.