นโยบายความเป็นส่วนตัว
Privacy Policy
อัปเดตล่าสุด / Last updated: 2 ตุลาคม 2569 / October 2, 2026
AI Content Workflow (https://aiwf.kasetos.com) เป็นเครื่องมือส่วนตัวที่เจ้าของใช้ผลิตวิดีโอสั้นด้วย AI และโพสต์ไปยังบัญชีโซเชียลของเจ้าของเอง (TikTok, Facebook, Instagram, YouTube) เอกสารนี้อธิบายว่าเก็บข้อมูลอะไรและใช้อย่างไร
ข้อมูลที่เก็บ
- ข้อมูลบัญชีผู้ใช้ระบบ: อีเมลและรหัสผ่านที่เข้ารหัสผ่านระบบของ Supabase Auth (ผู้ใช้ระบบมีเพียงเจ้าของ ปิดการสมัครสมาชิกใหม่)
- โทเคนการเชื่อมบัญชีโซเชียล (OAuth): เก็บแบบเข้ารหัส AES-256-GCM ใช้เพื่อโพสต์วิดีโอและอ่านสถิติของบัญชีที่เจ้าของเชื่อมเองเท่านั้น
- สถิติของโพสต์: ยอดวิว ไลก์ คอมเมนต์ แชร์ และข้อมูลที่แพลตฟอร์มเปิดให้ผ่าน API เฉพาะโพสต์ของบัญชีที่เชื่อม
- คอนเทนต์ที่สร้าง: สคริปต์ ภาพ เสียง วิดีโอ และต้นทุนการผลิต
การใช้ข้อมูล
- โพสต์วิดีโอ/อัปโหลดแบบร่างไปยังบัญชีที่เชื่อมตามที่เจ้าของอนุมัติ
- แสดงสถิติและวิเคราะห์ผลงานของเจ้าของเพื่อพัฒนาคอนเทนต์
- ไม่ขายหรือแบ่งปันข้อมูลให้บุคคลที่สาม ไม่ใช้ข้อมูลเพื่อโฆษณา และไม่ดึงข้อมูลของผู้ใช้อื่นของแพลตฟอร์ม
ผู้ให้บริการที่เก็บ/ประมวลผลข้อมูล
Supabase (ฐานข้อมูลและการล็อกอิน), Railway (เซิร์ฟเวอร์), Cloudflare R2 (ไฟล์สื่อ) และผู้ให้บริการ AI ที่ใช้สร้างคอนเทนต์ (เช่น Anthropic, fal.ai, Google Cloud) — ส่งเฉพาะข้อมูลที่จำเป็นต่อการสร้างคอนเทนต์
การยกเลิกและการลบข้อมูล
- ยกเลิกการเชื่อมได้ทุกเมื่อที่หน้า “ตั้งค่า” หรือที่หน้าตั้งค่าความปลอดภัยของแต่ละแพลตฟอร์ม (Google: myaccount.google.com/permissions, Facebook/Instagram: Settings → Business Integrations, TikTok: Settings → Security → Manage app permissions)
- ขอลบข้อมูลทั้งหมดได้โดยติดต่อตามช่องทางด้านล่าง ระบบจะลบโทเคนและข้อมูลที่เกี่ยวข้อง
YouTube API Services
การใช้งานเชื่อมต่อ YouTube เป็นไปตาม YouTube Terms of Service และ Google Privacy Policy; การใช้และถ่ายโอนข้อมูลที่ได้รับจาก Google APIs เป็นไปตาม Google API Services User Data Policy รวมถึงข้อกำหนด Limited Use
ความปลอดภัย
ทุกหน้ายกเว้นหน้านี้ ข้อกำหนด และหน้าเข้าสู่ระบบ ต้องล็อกอินและรองรับการยืนยัน 2 ขั้นตอน (2FA) ความลับทั้งหมดเก็บในตัวแปรสภาพแวดล้อมของเซิร์ฟเวอร์ ไม่เก็บในโค้ด
การเปลี่ยนแปลงนโยบาย
หากมีการเปลี่ยนแปลงสำคัญ จะอัปเดตวันที่ด้านบนของหน้านี้
Privacy Policy (English)
AI Content Workflow (https://aiwf.kasetos.com) is a private tool its owner uses to produce short AI-generated videos and publish them to the owner's own social accounts (TikTok, Facebook, Instagram, YouTube). This policy explains what data is stored and how it is used.
Data we store
- Application account: email and password (handled by Supabase Auth). The only user is the owner; public sign-ups are disabled.
- OAuth tokens for connected social accounts, encrypted with AES-256-GCM, used solely to publish videos and read statistics for accounts the owner connected.
- Post statistics (views, likes, comments, shares and similar data exposed by platform APIs) for the connected accounts' own posts only.
- Generated content: scripts, images, audio, videos and production costs.
How we use data
- Publish or upload drafts to the connected accounts as approved by the owner.
- Show statistics and analyse the owner's own performance to improve content.
- We do not sell or share data with third parties, do not use it for advertising, and do not collect data about other users of the platforms.
Processors
Supabase (database & authentication), Railway (hosting), Cloudflare R2 (media storage) and the AI providers used to generate content (for example Anthropic, fal.ai, Google Cloud). Only data necessary to generate content is sent to them.
Revoking access & deletion
- Disconnect accounts at any time from Settings or from each platform's security settings (Google: myaccount.google.com/permissions; Facebook/Instagram: Settings → Business Integrations; TikTok: Settings → Security → Manage app permissions).
- To request deletion of all data, contact us below; tokens and related data will be erased.
YouTube API Services
Use of YouTube features is subject to the YouTube Terms of Service and the Google Privacy Policy. Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Security
Every page other than this policy, the terms and the sign-in page requires authentication and supports two-factor authentication. Secrets are kept in server environment variables, never in source code.
Changes
Material changes will be reflected by updating the date at the top of this page.
ติดต่อ / Contact: anusit.srb@gmail.com