อัปเดตล่าสุด: May 2026 · VisionAI Workspace Beta
เนื้อหา Orbit ของคุณอยู่ใน Google Drive ของคุณ ซึ่งเป็นบันทึกหลัก VisionAI Workspace อ่านและเขียนไปยังที่นั่นขณะที่คุณใช้งานแพลตฟอร์ม โดยเก็บเพียงแคชระยะสั้น (ล้างอัตโนมัติภายใน 24 ชั่วโมง) รวมถึงข้อมูลบัญชี/การใช้งานที่จำเป็นต่อการให้บริการ เนื้อหาจริงของคุณยังคงอยู่ใน Drive ของคุณ ภายใต้การควบคุมของคุณ
VisionAI Workspace ออกแบบมาเพื่อให้คุณเป็นเจ้าของข้อมูลของคุณ เราเก็บรวบรวมขั้นต่ำที่จำเป็นเพื่อให้บริการ:
เราใช้ข้อมูลที่เก็บรวบรวมเพื่อดำเนินการแพลตฟอร์ม VisionAI Workspace เท่านั้น:
เมื่อคุณลงชื่อเข้าใช้ VisionAI Workspace ขอสิทธิ์ OAuth เพื่อเข้าถึง Google Sheets, Google Drive (เฉพาะการสร้างไฟล์) และ Google Docs ในนามของคุณ การเข้าถึงนี้ใช้เฉพาะเพื่อ:
สำคัญ: หากคุณเพิกถอนการเข้าถึง Google Drive ของ VisionAI Workspace ในเวลาใดก็ตาม แพลตฟอร์มจะไม่สามารถเข้าถึง workspace ของคุณได้และจะหยุดทำงานจนกว่าจะได้รับการกู้คืน ข้อมูลของคุณใน Google Drive ยังคงเป็นของคุณและไม่ได้รับผลกระทบ
VisionAI Workspace ใช้สถาปัตยกรรม AI หลายผู้ให้บริการที่ออกแบบมาเพื่อขยายตามเวลา เมื่อคุณส่งงาน เนื้อหา prompt ของคุณจะถูกประมวลผลชั่วคราวโดยหนึ่งในผู้ให้บริการ AI ต่อไปนี้เพื่อสร้างการตอบสนอง — ผู้ให้บริการที่ใช้จริงจะแตกต่างกันไปตามคำขอ:
VisionAI Workspace ไม่เก็บรักษาสำเนา prompt หรือผลลัพธ์ AI นอก Google Sheet ของคุณ อย่างไรก็ตาม แต่ละผู้ให้บริการ AI บุคคลที่สามอาจบันทึกหรือประมวลผลข้อมูลอินพุตของคุณชั่วคราวตามนโยบายความเป็นส่วนตัวของตนเอง เราแนะนำให้ตรวจสอบนโยบายความเป็นส่วนตัวของผู้ให้บริการเหล่านี้หากคุณมีความกังวล
ในการส่งอีเมลธุรกรรมและบัญชี (เช่น การยืนยันรายชื่อรอ การแจ้งเตือน และคำเชิญ) VisionAI Workspace ใช้ Brevo ซึ่งเป็นผู้ให้บริการส่งอีเมลบุคคลที่สาม เมื่อเราส่งอีเมลถึงคุณ ที่อยู่อีเมลและเนื้อหาข้อความของคุณจะได้รับการประมวลผลโดย Brevo เพื่อส่งอีเมลนั้นเท่านั้น Brevo ประมวลผลข้อมูลนี้ตามนโยบายความเป็นส่วนตัวของตนเอง เราไม่ใช้ Brevo เพื่อการโฆษณา
How it is protected. All traffic between your browser, this platform and Google's APIs runs over HTTPS/TLS. Your Google OAuth tokens are stored in our Supabase Postgres database, encrypted at rest, and are read only by server-side code — they are never sent to your browser and never appear in client-side JavaScript. Account records are protected by row-level security so one account cannot read another's, and the elevated key used for server-side work exists only in server environment variables, never in the app bundle.
The narrowest scopes that work. Drive access is drive.file, which reaches only files this application itself created for you — not the rest of your Drive. Calendar access is calendar.app.created, which reaches only a secondary calendar this application itself created; it cannot see your primary calendar or any event this app did not write. Either can be revoked at any time from your Google Account settings.
Limited Use. VisionAI Workspace's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. The use of raw or derived user data received from Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements.
We do not train models on your data. We do not use Google user data — raw, aggregated, anonymized or derived — to create, train, or improve any machine learning or artificial intelligence model of our own, and we never sell it or transfer it for advertising.
One open question, stated plainly rather than left out. Content is processed by third-party AI providers to carry out your requests, and those providers set their own terms. Google's Gemini API states that on its free tier, submitted content may be used to improve Google's products and models. We have asked Google directly whether routing content that originated in your Google Sheet through their own Gemini API falls within the Limited Use requirements, and we will update this policy with their answer. If it does not, we will either move that integration to a paid tier — where Google states it does not use submitted content to improve its products — or remove it.
Which AI services see your content, and when. Content is sent to an AI provider only to carry out something you asked for — running a worker on a task, generating an image, summarizing or drafting an email — and only for as long as that request takes. The providers currently used are Groq, Google Gemini, Mistral AI, OpenRouter (a gateway that routes to other providers), Cloudflare Workers AI and Hugging Face. We do not operate self-hosted or offline models; each of these is reached over an API.
Gmail (development only). The Gmail integration is presently limited to the platform owner's own account — a server-side check runs before any request reaches Google, so no other user can trigger it or see its consent screen. It requests gmail.modify (reading messages and most write actions — marking read, archiving — but not permanently deleting), https://mail.google.com/ (Gmail's broadest scope, requested solely because permanent delete has no narrower scope available; everything else this integration does works under gmail.modify alone), and gmail.compose (creating, editing and deleting drafts this app itself created — no code path sends mail beyond that). Message bodies are read live from Google and are not copied to our database. An email you explicitly attach to an orbit or a task is copied into your own Google Sheet — the same file that already stores the rest of your workspace — not to our servers. Two AI-generated artifacts derived from a message you asked to summarize or suggest a task from — the summary and the suggestion — are stored in our database per message so they don't have to be regenerated on every visit; nothing else about a message's content is retained.
การยืนยันตัวตนจัดการผ่าน Google OAuth และจัดการโดย Supabase ผู้ให้บริการโครงสร้างพื้นฐานการยืนยันตัวตนของเรา Supabase เก็บ token OAuth ของคุณอย่างปลอดภัยเพื่อรักษาความต่อเนื่องของเซสชัน VisionAI Workspace ไม่มีสิทธิ์เข้าถึงรหัสผ่าน Google หรือข้อมูลประจำตัวใดๆ นอกเหนือจาก token OAuth ที่จำเป็น เซสชันเชื่อมโยงกับการใช้งานแพลตฟอร์มของคุณ
คุกกี้: VisionAI Workspace ใช้เฉพาะ cookie เซสชันที่จำเป็น cookie เหล่านี้จำเป็นสำหรับการยืนยันตัวตนและรักษาสถานะเข้าสู่ระบบในระหว่างเซสชันของคุณ เราไม่ใช้ cookie โฆษณา พิกเซลติดตาม หรือ cookie การวิเคราะห์บุคคลที่สามใดๆ cookie ที่จำเป็นไม่สามารถปิดใช้งานได้โดยไม่ทำให้ฟังก์ชันหลักของแพลตฟอร์มเสียหาย
เวอร์ชันเบต้าปัจจุบันของ VisionAI Workspace ใช้งานได้ฟรีและไม่ต้องการข้อมูลการชำระเงิน เมื่อมีการนำเสนอฟีเจอร์ Pro แบบชำระเงิน การเรียกเก็บเงินทั้งหมดจะได้รับการจัดการโดยตัวประมวลผลการชำระเงินบุคคลที่สามที่ปลอดภัย VisionAI Workspace จะไม่เก็บหมายเลขบัตรเครดิต รายละเอียดธนาคาร หรือข้อมูลประจำตัวการชำระเงินใดๆ โดยตรง ตัวตนของตัวประมวลผลการชำระเงินจะถูกเปิดเผยเมื่อมีการเปิดตัวฟีเจอร์แบบชำระเงิน
เนื่องจากข้อมูล workspace ของคุณอยู่ใน Google Drive ของคุณเอง มันจะคงอยู่ตราบเท่าที่คุณเลือกเก็บไว้ที่นั่น นอกเหนือจากข้อมูลบัญชีของคุณ (ชื่อ อีเมล token OAuth ผ่าน Supabase) เรายังเก็บรักษาข้อมูลการดำเนินงานที่จำเป็นต่อการให้บริการแพลตฟอร์ม — บันทึกการใช้งานและความน่าเชื่อถือ ข้อมูลการตั้งเวลาและการแจ้งเตือน ประวัติการชำระเงินสำหรับแพ็กที่ซื้อ และแคชประสิทธิภาพระยะสั้นของเนื้อหา workspace ของคุณ (ล้างอัตโนมัติภายใน 24 ชั่วโมง) หากคุณร้องขอการลบบัญชี เราจะลบข้อมูลนี้ออกจาก Supabase Google Sheet และไฟล์ใดๆ ใน Drive ของคุณเป็นของคุณและต้องถูกลบโดยคุณโดยตรง
คุณมีสิทธิ์ที่จะ:
VisionAI Workspace มีไว้สำหรับผู้ใหญ่และไม่ได้มุ่งเป้าหมายไปที่ผู้ที่มีอายุต่ำกว่า 18 ปี เราไม่เก็บรวบรวมข้อมูลส่วนบุคคลจากผู้ที่มีอายุต่ำกว่า 18 ปีโดยตั้งใจ หากคุณเชื่อว่าผู้ที่มีอายุต่ำกว่า 18 ปีได้ให้ข้อมูลส่วนบุคคลแก่เรา โปรดติดต่อเราและเราจะดำเนินการลบออก
เมื่อ VisionAI Workspace เติบโตเกินกว่าเบต้า นโยบายความเป็นส่วนตัวนี้จะได้รับการอัปเดตเพื่อสะท้อนฟีเจอร์ ผู้ให้บริการ และข้อกำหนดทางกฎหมายใหม่ๆ เราจะแจ้งให้ผู้ใช้ที่ใช้งานอยู่ทราบเกี่ยวกับการเปลี่ยนแปลงที่สำคัญผ่านอีเมลหรือการแจ้งเตือนในแอป การใช้งานแพลตฟอร์มต่อไปหลังจากการเปลี่ยนแปลงถือเป็นการยอมรับนโยบายที่อัปเดต
Whose Drive shared content is written to. A workspace can have more than one person in it: an owner, and the crew they invite. The owner’s Google Drive is the system of record for the whole workspace. When a crew member uploads a file or an image to a conversation, or an AI worker produces an artifact for one of the workspace’s orbits, that content is written to the owner’s Drive under the owner’s Google account — never to the crew member’s own Drive. One consequence is worth stating plainly rather than leaving to be discovered: because attachments are stored in the owner’s Drive, a workspace owner may be able to see a file that was attached to a conversation they are not a member of, even though the conversation itself is not readable by them.
What we store for messaging. Conversation membership, message text, attachment references, emoji reactions, read state and your per-conversation notification preference are stored in our Supabase Postgres database rather than in Google Drive. Row-level security restricts reads to the members of a conversation. Typing indicators and who is currently viewing a conversation are broadcast live between connected clients and are not stored at all.
Who can see a message. An orbit’s crew room is readable by everyone the owner has granted that orbit to, and its membership is kept in step with that grant automatically. A direct message is readable only by its participants, and can only be started between people who share at least one orbit — with the exception of the workspace owner, who is reachable by anyone in their workspace and may group any of their crew together.
Notifications carry part of the message. When a message needs to reach somebody who is not looking at the app, the notification contains the sender’s name, the orbit’s name or an indication that it is a direct message, and the first 90 characters of the message body. Depending on your settings that is delivered in-app, by email through Brevo, and as a web push notification through your browser or operating system’s push service. If you would rather message content did not leave the app that way, set a conversation to Quiet or Muted using the bell in its header.
Messages are not sent to AI providers. Conversations between people in a workspace are not routed to any AI model. Content reaches an AI provider only when somebody explicitly runs a worker on a task, as described in Section 4.
Deleting, and leaving a workspace. Deleting a message clears its text and its attachment references from our database; the underlying file already written to the workspace owner’s Drive is not removed by that action and has to be deleted from Drive by its owner. If an owner withdraws your access to the last orbit you hold in their workspace — including by archiving that orbit — your membership ends and you lose access to that workspace’s orbits, rooms and message history. Messages you sent and files you uploaded stay with the workspace. Deleting your own VisionAI Workspace account removes your account data from our systems; it does not retract content you contributed to somebody else’s workspace.
หากคุณมีคำถามเกี่ยวกับนโยบายความเป็นส่วนตัวนี้ ข้อมูลของคุณ หรือวิธีที่ VisionAI Workspace จัดการข้อมูลของคุณ โปรดติดต่อโดยตรง:
ส่งคำขอความเป็นส่วนตัว