# นโยบายความเป็นส่วนตัว — NIS iPad Onsite
วันที่มีผลบังคับใช้: 6 สิงหาคม 2569
ปรับปรุงล่าสุด: 6 สิงหาคม 2569
บริษัท เน็ตเวิร์ค อินทิเกรชั่น โซลูชั่น จำกัด (“NIS”, “บริษัท”, “เรา” หรือ “ของเรา”) ให้ความสำคัญกับการคุ้มครองข้อมูลส่วนบุคคล นโยบายนี้อธิบายว่าบริษัทเก็บรวบรวม ใช้ เปิดเผย เก็บรักษา และลบข้อมูลส่วนบุคคลผ่านแอปพลิเคชัน **NIS iPad Onsite** (“แอป”) อย่างไร รวมถึงทางเลือกและสิทธิของเจ้าของข้อมูล
1. ขอบเขตและผู้ควบคุมข้อมูลส่วนบุคคล
แอปเป็นระบบบริหารงานบริการภาคสนามสำหรับพนักงาน ผู้รับจ้าง และบุคลากรที่ NIS อนุญาตเท่านั้น บุคคลทั่วไปไม่สามารถสร้างบัญชีผ่านแอปได้
นโยบายนี้ครอบคลุมข้อมูลของ:
- ผู้ใช้แอปและบุคลากรของ NIS
- ลูกค้า ผู้แจ้งงาน ผู้ประสานงาน ผู้ตรวจรับงาน และผู้รับรายงาน; และ
- บุคคลที่ข้อมูลอาจปรากฏในตั๋วงาน ข้อความ รูปภาพ ลายเซ็น รายงานบริการ หรือเอกสารที่จัดทำผ่านแอป
สำหรับการประมวลผลตามนโยบายนี้ ผู้ควบคุมข้อมูลส่วนบุคคลคือ:
บริษัท เน็ตเวิร์ค อินทิเกรชั่น โซลูชั่น จำกัด
1 ซอยจันทน์ 7 แขวงช่องนนทรี เขตยานนาวา กรุงเทพมหานคร 10120
เว็บไซต์: [https://www.nisolution.co.th](https://www.nisolution.co.th)
อีเมล: [info@nisolution.co.th](mailto:info@nisolution.co.th)
โทรศัพท์: 02-678-9995, 093-289-1664
2. ข้อมูลที่เราเก็บรวบรวมและวิธีเก็บรวบรวม
- ข้อมูลที่เก็บขึ้นอยู่กับบัญชี หน้าที่ และฟังก์ชันที่ผู้ใช้เลือกใช้งาน
2.1 ข้อมูลบัญชีและข้อมูลติดต่อ
- ชื่อ นามสกุล ชื่อผู้ใช้ อีเมล หมายเลขโทรศัพท์ ตำแหน่ง หน่วยงาน และบทบาท
- รหัสผู้ใช้ รหัสบริษัท รูปประจำตัว และรูปลายเซ็นพนักงาน
- สิทธิการใช้งาน รหัส session, access token, refresh token และสถานะการเข้าสู่ระบบ
- รหัสอุปกรณ์ที่แอปสร้าง ประเภทระบบปฏิบัติการ เวอร์ชันแอป และข้อมูลอุปกรณ์ที่ใช้ควบคุม session
ผู้ใช้ส่งชื่อผู้ใช้และรหัสผ่านไปยังระบบยืนยันตัวตนของ NIS ผ่านการเชื่อมต่อ HTTPS แอปไม่จัดเก็บรหัสผ่านในรูปข้อความธรรมดาหลังส่งคำขอเข้าสู่ระบบ แต่อาจเก็บ token และข้อมูล session บนอุปกรณ์เพื่อคงสถานะการเข้าสู่ระบบ
2.2 ข้อมูลงานบริการและการดำเนินงาน
- เลขที่ตั๋วงาน โครงการ ลูกค้า สถานที่ ผู้ติดต่อ ผู้แจ้งงาน ผู้รับผิดชอบ กำหนดการ และสถานะ
- เวลาเช็กอินและเช็กเอาต์ รายการตรวจสอบ ขอบเขตงาน บันทึกการทำงาน ปัญหา วิธีแก้ไข และประวัติกิจกรรม
- ข้อมูลอุปกรณ์ อะไหล่ หมายเลขซีเรียล สินค้าคงคลัง การรับประกัน ความเสียหาย และการเคลม
- การมอบหมาย การอนุมัติ การตีกลับ และประวัติการปิดงาน
- รายงานบริการ ไฟล์ PDF ข้อมูลผู้รับอีเมล และข้อมูลที่ใช้ส่งรายงาน; และ
- นัดหมายและข้อมูลปฏิทินที่เกี่ยวข้องกับงาน
2.3 ตำแหน่งที่ตั้งแบบละเอียด
เมื่อผู้ใช้อนุญาตให้เข้าถึงตำแหน่งขณะใช้แอป แอปจะอ่านพิกัด latitude และ longitude ณ เวลาที่ผู้ใช้เช็กอินหรือเช็กเอาต์ เพื่อนำไปบันทึกกับตั๋วงานและรายงานบริการ แอปไม่ได้ติดตามตำแหน่งอย่างต่อเนื่องหรือเข้าถึงตำแหน่งเบื้องหลัง
2.4 รูปภาพ ลายเซ็น และเนื้อหาที่ผู้ใช้สร้าง
- รูปหน้างาน รูปก่อนและหลังดำเนินงาน รูปอุปกรณ์หรือความเสียหาย และรูปที่ผู้ใช้เลือกจากคลังรูปภาพ
- ลายเซ็นของลูกค้าหรือผู้ตรวจรับงาน พร้อมวัน เวลา และตั๋วงานที่เกี่ยวข้อง
- ข้อความแชต ข้อความช่วยเหลือ บันทึกส่วนตัว รายการสิ่งที่ต้องทำ และข้อความอิสระ; และ
- เอกสารหรือเนื้อหาอื่นที่ผู้ใช้สร้างหรือแนบเพื่อดำเนินงานบริการ
แอปเข้าถึงเฉพาะรูปที่ผู้ใช้ถ่ายหรือเลือกเพื่อแนบกับงาน ผู้ใช้ควรหลีกเลี่ยงการถ่ายหรือนำเข้าข้อมูลของบุคคลอื่นเกินกว่าที่จำเป็นต่อการให้บริการ
2.5 ข้อมูลการแจ้งเตือนและข้อมูลทางเทคนิค
- Expo Push Token, Apple Push Notification service (APNs) token, รหัสอุปกรณ์ ประเภทอุปกรณ์ และเวอร์ชันแอป
- ข้อมูลตั๋วงาน ประเภทเหตุการณ์ และผู้รับที่จำเป็นต่อการส่งการแจ้งเตือน; และ
- ข้อมูลคำขอเครือข่าย เวลาเชื่อมต่อ สถานะการตอบกลับ และข้อมูลทางเทคนิคหรือความปลอดภัยที่ระบบเซิร์ฟเวอร์บันทึกเพื่อให้บริการ แก้ไขข้อผิดพลาด ป้องกันการใช้งานโดยไม่ได้รับอนุญาต และรักษาความมั่นคงปลอดภัย
2.6 แหล่งที่มาของข้อมูล
เราเก็บข้อมูล:
- โดยตรงจากผู้ใช้ เมื่อเข้าสู่ระบบ กรอกข้อมูล ส่งข้อความ ถ่ายหรือเลือกรูป ลงลายเซ็น หรือใช้ฟังก์ชันของแอป;
- จากระบบของ NIS เช่น ระบบบัญชีผู้ใช้ ระบบบริการ/CRM ระบบโครงการ ระบบคลังสินค้า และระบบเคลม;
- จากลูกค้า ผู้ประสานงาน ผู้ตรวจรับงาน และบุคลากรที่ได้รับอนุญาต;
- จากอุปกรณ์ เมื่อผู้ใช้ให้สิทธิ เช่น ตำแหน่ง กล้อง คลังรูปภาพ และการแจ้งเตือน; และ
- จากบริการที่เชื่อมต่อ เช่น Google Calendar, Expo Push Notifications และ APNs
หากผู้ใช้บันทึกข้อมูลของบุคคลอื่น ผู้ใช้ต้องมีอำนาจหรือฐานทางกฎหมายที่เหมาะสม และแจ้งบุคคลนั้นเกี่ยวกับการประมวลผลข้อมูลตามความเหมาะสม
3. วัตถุประสงค์และฐานทางกฎหมาย
เราใช้ข้อมูลเพื่อ:
- ยืนยันตัวตน จัดการบัญชี session และสิทธิตามบทบาท;
- มอบหมาย วางแผน ดำเนินการ ติดตาม ตรวจรับ อนุมัติ และตรวจสอบงานบริการ;
- ยืนยันเวลาและสถานที่ปฏิบัติงาน จัดทำหลักฐาน และสร้างรายงานบริการ;
- สื่อสารผ่านแชต อีเมล ปฏิทิน และการแจ้งเตือน;
- บริหารอุปกรณ์ สินค้าคงคลัง การรับประกัน และการเคลม;
- รักษาความมั่นคงปลอดภัย ป้องกันการใช้งานโดยไม่ได้รับอนุญาต แก้ไขปัญหา และรักษาความต่อเนื่องของบริการ;
- ปฏิบัติตามสัญญากับลูกค้าและหน้าที่ที่เกี่ยวข้องกับการจ้างงาน; และ
- ปฏิบัติตามกฎหมาย การบัญชี การตรวจสอบ หรือก่อตั้ง ใช้ และป้องกันสิทธิเรียกร้อง
ฐานทางกฎหมายอาจได้แก่ ความจำเป็นเพื่อปฏิบัติตามสัญญาหรือหน้าที่ในการทำงาน การปฏิบัติตามกฎหมาย ประโยชน์โดยชอบด้วยกฎหมายของ NIS ลูกค้า หรือบุคคลที่เกี่ยวข้อง การก่อตั้งหรือป้องกันสิทธิเรียกร้อง และความยินยอมในกรณีที่กฎหมายกำหนด
เราจะไม่นำข้อมูลไปใช้เพื่อวัตถุประสงค์ใหม่ที่ไม่สอดคล้องกับวัตถุประสงค์ข้างต้น เว้นแต่จะแจ้งให้ทราบและขอความยินยอมหรือมีฐานทางกฎหมายอื่นรองรับ
4. สิทธิบนอุปกรณ์และทางเลือกของผู้ใช้
แอปอาจขอสิทธิเมื่อผู้ใช้เรียกใช้ฟังก์ชันที่เกี่ยวข้อง:
– **ตำแหน่งขณะใช้แอป:** สำหรับบันทึกพิกัดเมื่อเช็กอินหรือเช็กเอาต์;
– **กล้อง:** สำหรับถ่ายรูปหน้างาน อุปกรณ์ และความเสียหาย;
– **คลังรูปภาพ:** สำหรับเลือกรูปที่เกี่ยวข้องกับงาน; และ
– **การแจ้งเตือน:** สำหรับแจ้งงานใหม่ งานที่ถูกตีกลับ งานเลยกำหนด ข้อความ และเหตุการณ์ที่เกี่ยวข้อง
แอปไม่ขอใช้ไมโครโฟน รายชื่อผู้ติดต่อ หรือตำแหน่งเบื้องหลัง ผู้ใช้สามารถอนุญาต ปฏิเสธ หรือเพิกถอนสิทธิได้ตลอดเวลาที่ **Settings > Privacy & Security** หรือ **Settings > Notifications** บนอุปกรณ์ การปฏิเสธสิทธิจะไม่ปิดกั้นการเข้าสู่ระบบหรือฟังก์ชันหลักที่ไม่เกี่ยวข้อง แต่อาจทำให้ฟังก์ชันเช็กอิน ถ่ายหรือแนบรูป หรือรับการแจ้งเตือนทำงานได้ไม่ครบถ้วน
การปิดการแจ้งเตือนไม่กระทบสิทธิในการใช้งานฟังก์ชันหลักของแอป
5. การเปิดเผยข้อมูลและผู้ให้บริการภายนอก
เราอาจเปิดเผยข้อมูลเท่าที่จำเป็นแก่:
– พนักงาน ผู้บริหาร ทีมบริการ ทีมคลังสินค้า ฝ่ายขาย ฝ่ายบัญชี ผู้ดูแลระบบ และบุคลากร NIS ที่ได้รับอนุญาตตามบทบาท;
– ลูกค้า ผู้แจ้งงาน ผู้ประสานงาน หรือผู้รับรายงานที่เกี่ยวข้องกับงาน;
– ผู้ให้บริการระบบโฮสติ้ง ฐานข้อมูล สำรองข้อมูล ความปลอดภัย การส่งอีเมล และโครงสร้างพื้นฐานที่ NIS ใช้;
– **Apple** สำหรับ APNs และเมื่อผู้ใช้เลือกเปิดสถานที่ผ่าน Apple Maps;
– **Expo** สำหรับการออกและส่ง Expo Push Token และ Push Notification;
– **Google** เมื่อองค์กรเปิดใช้ Google Calendar หรือเมื่อผู้ใช้เลือกเปิดสถานที่ผ่าน Google Maps;
– ที่ปรึกษา ผู้สอบบัญชี ผู้ให้บริการวิชาชีพ หรือคู่สัญญาที่จำเป็นต่อการดำเนินงาน; และ
– หน่วยงานรัฐ ศาล เจ้าหน้าที่ หรือบุคคลอื่นเมื่อกฎหมายกำหนด หรือเมื่อจำเป็นต่อการก่อตั้ง ใช้ หรือป้องกันสิทธิเรียกร้อง
ผู้ให้บริการที่ประมวลผลข้อมูลแทน NIS ต้องใช้ข้อมูลตามคำสั่งและวัตถุประสงค์ที่กำหนด รักษาความลับ ใช้มาตรการรักษาความมั่นคงปลอดภัย และให้ความคุ้มครองข้อมูลในระดับเดียวกันหรือไม่น้อยกว่าที่ระบุไว้ในนโยบายนี้และกฎหมายที่ใช้บังคับ
6. การโฆษณา การขายข้อมูล และการติดตาม
NIS:
– ไม่ขายหรือให้เช่าข้อมูลส่วนบุคคล;
– ไม่ใช้ข้อมูลจากแอปเพื่อโฆษณาแบบเจาะจง;
– ไม่แบ่งปันข้อมูลกับนายหน้าค้าข้อมูล; และ
– ไม่เชื่อมข้อมูลจากแอปกับข้อมูลจากแอปหรือเว็บไซต์ของบริษัทอื่นเพื่อโฆษณาหรือวัดผลโฆษณา
แอปไม่มีโฆษณาจากบุคคลภายนอก และไม่ติดตามผู้ใช้ตามความหมายของ App Tracking Transparency ของ Apple
7. การจัดเก็บข้อมูลบนอุปกรณ์และการโอนข้อมูลระหว่างประเทศ
แอปเก็บ token, session, รหัสอุปกรณ์ และสำเนาข้อมูลการปฏิบัติงานบางส่วนไว้ในพื้นที่จัดเก็บข้อมูลของแอปบนอุปกรณ์ เพื่อคงสถานะการเข้าสู่ระบบ รองรับการกลับมาทำงานต่อ และแสดงข้อมูลเมื่อการเชื่อมต่อไม่ต่อเนื่อง ผู้ใช้ควรใช้รหัสผ่านหรือชีวมิติล็อกอุปกรณ์ ไม่แบ่งปันอุปกรณ์กับบุคคลที่ไม่ได้รับอนุญาต และออกจากระบบเมื่อเลิกใช้งาน
ข้อมูลหลักจะถูกส่งผ่านการเชื่อมต่อ HTTPS ไปยังระบบของ NIS ผู้ให้บริการบางราย เช่น Apple, Expo และ Google อาจประมวลผลข้อมูลบนระบบที่อยู่นอกประเทศไทย หากมีการโอนข้อมูลระหว่างประเทศ NIS จะดำเนินการตามกฎหมายคุ้มครองข้อมูลส่วนบุคคลที่ใช้บังคับและใช้มาตรการคุ้มครองที่เหมาะสม เช่น ข้อตกลงประมวลผลข้อมูล ข้อกำหนดตามสัญญา การจำกัดการเข้าถึง และมาตรการรักษาความมั่นคงปลอดภัย
8. การเก็บรักษาและการลบข้อมูล
เราเก็บข้อมูลเท่าที่จำเป็นตามวัตถุประสงค์ต่อไปนี้:
– **token และ session:** จนกว่าผู้ใช้จะออกจากระบบ session หมดอายุ บัญชีถูกระงับ หรือสิทธิถูกเพิกถอน;
– **Push Token และรหัสอุปกรณ์:** ระหว่างที่อุปกรณ์ลงทะเบียนกับบัญชี และจนกว่าอุปกรณ์จะถอนทะเบียน ผู้ใช้ออกจากระบบ token ใช้ไม่ได้ หรือไม่มีความจำเป็นต้องส่งการแจ้งเตือน;
– **สำเนาข้อมูลบนอุปกรณ์:** จนกว่าข้อมูลจะถูกแทนที่หรือล้าง ผู้ใช้ล้างข้อมูลแอป หรือลบแอปออกจากอุปกรณ์;
– **ข้อมูลบัญชีและบุคลากร:** ตลอดระยะเวลาที่บัญชีหรือความสัมพันธ์ในการทำงานมีผล และต่อไปเท่าที่จำเป็นเพื่อปฏิบัติตามกฎหมาย นโยบายองค์กร การตรวจสอบ หรือข้อพิพาท;
– **ตั๋วงาน รายงาน ตำแหน่ง รูปภาพ ลายเซ็น เอกสาร แชต การอนุมัติ ข้อมูลอุปกรณ์ การรับประกัน และการเคลม:** ตลอดระยะเวลาการให้บริการ สัญญา การรับประกัน หรือการเคลม และต่อไปตามระยะเวลาที่กฎหมายกำหนดหรืออายุความที่เกี่ยวข้อง; และ
– **บันทึกทางเทคนิคและความปลอดภัย:** เท่าที่จำเป็นต่อการรักษาความปลอดภัย ตรวจสอบเหตุการณ์ แก้ไขปัญหา และปฏิบัติตามกฎหมาย
เมื่อหมดความจำเป็น เราจะลบ ทำลาย หรือทำให้ข้อมูลไม่สามารถระบุตัวบุคคลได้อย่างเหมาะสม ข้อมูลที่อยู่ในระบบสำรองจะถูกลบเมื่อสำเนาสำรองนั้นถูกแทนที่ตามรอบการเก็บรักษาปกติ เว้นแต่กฎหมายกำหนดให้เก็บไว้นานกว่า
การลบแอปจะลบข้อมูลที่แอปควบคุมอยู่บนอุปกรณ์ แต่ไม่ลบข้อมูลที่ส่งไปยังระบบ NIS แล้วโดยอัตโนมัติ
แอปไม่มีระบบสร้างบัญชีสำหรับบุคคลทั่วไป บัญชีออกให้และบริหารโดย NIS ผู้ใช้สามารถขอปิดบัญชีหรือขอลบข้อมูลได้โดยติดต่อผู้ดูแลระบบของ NIS หรืออีเมล [info@nisolution.co.th](mailto:info@nisolution.co.th) เมื่อได้รับคำขอที่ตรวจสอบตัวตนแล้ว เราจะระงับการเข้าถึงและลบหรือทำให้ข้อมูลไม่สามารถระบุตัวบุคคลได้ เว้นแต่จำเป็นต้องเก็บข้อมูลตามกฎหมาย สัญญา การรับประกัน การตรวจสอบ หรือเพื่อก่อตั้ง ใช้ หรือป้องกันสิทธิเรียกร้อง
9. การรักษาความมั่นคงปลอดภัย
เราใช้มาตรการทางเทคนิคและการบริหารที่เหมาะสมกับความเสี่ยง รวมถึงการรับส่งข้อมูลผ่าน HTTPS/TLS การยืนยันตัวตน การจัดการ session การกำหนดสิทธิตามบทบาท การจำกัดการเข้าถึง และการบันทึกเหตุการณ์ที่จำเป็นต่อความปลอดภัย
อย่างไรก็ตาม ไม่มีการรับส่งหรือจัดเก็บข้อมูลใดปลอดภัยโดยสมบูรณ์ หากสงสัยว่าบัญชี อุปกรณ์ หรือข้อมูลถูกเข้าถึงโดยไม่ได้รับอนุญาต โปรดเปลี่ยนข้อมูลรับรองการเข้าสู่ระบบตามที่ผู้ดูแลระบบกำหนดและติดต่อ NIS ทันที
10. สิทธิของเจ้าของข้อมูลส่วนบุคคล
ภายใต้พระราชบัญญัติคุ้มครองข้อมูลส่วนบุคคล พ.ศ. 2562 และกฎหมายที่ใช้บังคับ เจ้าของข้อมูลอาจมีสิทธิ:
– ขอเข้าถึงและขอรับสำเนาข้อมูล;
– ขอแก้ไขข้อมูลที่ไม่ถูกต้องหรือไม่สมบูรณ์;
– ขอให้ลบ ทำลาย หรือทำให้ข้อมูลไม่สามารถระบุตัวบุคคล;
– ขอจำกัดหรือระงับการประมวลผล;
– คัดค้านการประมวลผลในบางกรณี;
– ขอรับหรือโอนข้อมูลในกรณีที่กฎหมายให้สิทธิ;
– ถอนความยินยอม โดยไม่กระทบความชอบด้วยกฎหมายของการประมวลผลก่อนถอน; และ
– ร้องเรียนต่อสำนักงานคณะกรรมการคุ้มครองข้อมูลส่วนบุคคล
ส่งคำขอได้ที่ [info@nisolution.co.th](mailto:info@nisolution.co.th) โดยใช้หัวข้อ **“คำขอใช้สิทธิข้อมูลส่วนบุคคล — NIS iPad Onsite”** เราอาจขอข้อมูลเพิ่มเติมเพื่อยืนยันตัวตนและป้องกันการเปิดเผยข้อมูลแก่บุคคลที่ไม่มีสิทธิ
บางคำขออาจถูกจำกัดหรือปฏิเสธเมื่อกฎหมายอนุญาต เช่น เมื่อจำเป็นต้องเก็บข้อมูลเพื่อปฏิบัติตามกฎหมาย สัญญา การรับประกัน การตรวจสอบ หรือสิทธิเรียกร้อง โดยเราจะแจ้งเหตุผลตามที่กฎหมายกำหนด
## 11. ข้อมูลของเด็ก
แอปเป็นเครื่องมือทางธุรกิจสำหรับบุคลากรที่ได้รับอนุญาต และไม่ได้ออกแบบหรือมุ่งให้บริการแก่เด็ก เราไม่เจตนาเก็บข้อมูลของเด็กผ่านแอป หากพบว่ามีการบันทึกข้อมูลเด็กโดยไม่จำเป็นหรือไม่มีฐานทางกฎหมาย โปรดติดต่อเราเพื่อตรวจสอบและดำเนินการตามกฎหมาย
## 12. การเปลี่ยนแปลงนโยบาย
เราอาจปรับปรุงนโยบายนี้เมื่อฟังก์ชัน เทคโนโลยี ผู้ให้บริการ หรือข้อกำหนดทางกฎหมายเปลี่ยนแปลง เราจะแสดงวันที่ปรับปรุงล่าสุด และจะแจ้งการเปลี่ยนแปลงที่มีสาระสำคัญผ่านแอป เว็บไซต์ อีเมล หรือช่องทางที่เหมาะสมก่อนหรือเมื่อการเปลี่ยนแปลงมีผล
## 13. ติดต่อเรา
หากมีคำถาม ข้อร้องเรียน เหตุด้านความปลอดภัย ต้องการเพิกถอนความยินยอม ขอปิดบัญชี หรือใช้สิทธิเกี่ยวกับข้อมูลส่วนบุคคล โปรดติดต่อ:
บริษัท เน็ตเวิร์ค อินทิเกรชั่น โซลูชั่น จำกัด
1 ซอยจันทน์ 7 แขวงช่องนนทรี เขตยานนาวา กรุงเทพมหานคร 10120
อีเมล: [info@nisolution.co.th](mailto:info@nisolution.co.th)
โทรศัพท์: 02-678-9995, 093-289-1664
เวลาทำการ: วันจันทร์–วันศุกร์ เวลา 9:00–18:00 น.
# Privacy Policy — NIS iPad Onsite
Effective date: August 6, 2026
Last updated: August 6, 2026
Network Integration Solutions Co., Ltd. (“NIS,” “we,” “us,” or “our”) respects your privacy. This Privacy Policy explains how we collect, use, disclose, retain, and delete personal data through the **NIS iPad Onsite** application (the “App”), as well as the choices and rights available to individuals.
## 1. Scope and Data Controller
The App is an enterprise field-service management tool for employees, contractors, and personnel authorized by NIS. Members of the public cannot create an account through the App.
This Policy applies to data relating to:
– App users and NIS personnel;
– customers, service requesters, contact persons, service approvers, and report recipients; and
– individuals whose data may appear in service tickets, messages, photos, signatures, reports, or documents created through the App.
The data controller is:
Network Integration Solutions Co., Ltd.
1 Soi Chan 7, Chong Nonsi, Yan Nawa, Bangkok 10120, Thailand
Website: [https://www.nisolution.co.th](https://www.nisolution.co.th)
Email: [info@nisolution.co.th](mailto:info@nisolution.co.th)
Telephone: +66 2 678 9995, +66 93 289 1664
## 2. Data We Collect and How We Collect It
The data collected depends on the user’s account, responsibilities, and the features the user chooses to use.
### 2.1 Account and Contact Data
– name, username, email address, telephone number, job title, department, and role;
– user and company identifiers, profile image, and employee signature image;
– permissions, session ID, access token, refresh token, and sign-in status; and
– an App-generated device identifier, operating-system type, App version, and device information used to manage sessions
The username and password entered by a user are transmitted to NIS’s authentication system over HTTPS. The App does not retain the password in plaintext after the authentication request. It may store authentication tokens and session data on the device to keep the user signed in.
### 2.2 Service and Operational Data
– ticket, project, customer, site, contact, requester, assignee, schedule, and status information;
– check-in/check-out times, checklists, scope of work, work notes, issues, solutions, and activity history;
– equipment, parts, serial numbers, inventory, warranty, damage, and claim information;
– assignment, approval, rejection, and job-closure history;
– service reports, PDF files, recipient email addresses, and information used to send reports; and
– work-related appointments and calendar information
### 2.3 Precise Location
When the user grants location permission while using the App, the App reads latitude and longitude at the time the user checks in or checks out. The coordinates are associated with the service ticket and report. The App does not continuously track location or access location in the background.
### 2.4 Photos, Signatures, and User Content
– site, before/after, equipment, and damage photos, including images selected from the photo library;
– customer or service-approver signatures and the related date, time, and ticket;
– chat and support messages, personal notes, to-do items, and free-form text; and
– other documents or content created or attached for service operations
The App accesses only images that the user captures or selects for attachment to a task. Users should avoid capturing or uploading another person’s data beyond what is necessary for the service.
### 2.5 Notification and Technical Data
– Expo Push Tokens, Apple Push Notification service (APNs) tokens, device identifiers, platform, and App version;
– ticket, event-type, and recipient data required to deliver notifications; and
– network-request information, connection times, response status, and technical or security information recorded by our systems to operate the service, troubleshoot errors, prevent unauthorized use, and protect the service
### 2.6 Sources
We collect data:
– directly from users when they sign in, enter data, send messages, capture or select photos, sign, or use App features;
– from NIS systems such as account, service/CRM, project, inventory, and claims systems;
– from customers, service contacts, approvers, and authorized personnel;
– from the device when the user grants access to location, camera, photos, or notifications; and
– from connected services such as Google Calendar, Expo Push Notifications, and APNs
If a user provides another person’s data, the user must have appropriate authority or another lawful basis and should make information about the processing available to that person where appropriate.
## 3. Purposes and Legal Bases
We use data to:
– authenticate users and manage accounts, sessions, and role-based access;
– assign, schedule, perform, monitor, accept, approve, and audit field-service work;
– record when and where work is performed and create service evidence and reports;
– communicate through chat, email, calendar, and notifications;
– manage equipment, inventory, warranties, and claims;
– maintain security, prevent unauthorized use, troubleshoot, and ensure service continuity;
– perform customer contracts and employment-related obligations; and
– comply with legal, accounting, audit, and dispute-resolution obligations and establish, exercise, or defend legal claims
Our legal bases may include performance of a contract or employment-related obligations, compliance with law, the legitimate interests of NIS, customers, or relevant parties, establishment or defense of legal claims, and consent where required by law.
We will not use data for a materially different and incompatible purpose unless we provide notice and obtain consent or have another lawful basis.
## 4. Device Permissions and User Choices
The App may request permission when the user invokes a related feature:
– **Location while using the App:** to record coordinates at check-in or check-out;
– **Camera:** to capture site, equipment, and damage photos;
– **Photo library:** to select work-related photos; and
– **Notifications:** for assignments, rejected work closures, overdue work, messages, and related events
The App does not request microphone access, contacts access, or background location. Users may grant, deny, or revoke permissions at any time in **Settings > Privacy & Security** or **Settings > Notifications** on the device. Denying a permission does not block sign-in or unrelated core features, but the associated check-in, photo, or notification feature may not work fully.
Disabling notifications does not affect access to the App’s core functionality.
## 5. Disclosure and Third-Party Services
We may disclose data, only as necessary, to:
– authorized NIS employees, managers, service, warehouse, sales, accounting, and system-administration personnel based on role;
– customers, service requesters, contacts, or report recipients associated with the work;
– hosting, database, backup, security, email-delivery, and infrastructure providers used by NIS;
– **Apple** for APNs and when the user chooses to open a location in Apple Maps;
– **Expo** to issue and deliver Expo Push Tokens and push notifications;
– **Google** when the organization enables Google Calendar or the user chooses to open a location in Google Maps;
– advisers, auditors, professional service providers, or counterparties necessary for operations; and
– authorities, courts, officials, or other parties where required by law or necessary to establish, exercise, or defend legal claims
Service providers processing data for NIS must follow our instructions and stated purposes, preserve confidentiality, apply appropriate security measures, and provide the same or an equivalent level of protection described in this Policy and required by applicable law.
## 6. Advertising, Sale of Data, and Tracking
NIS does not:
– sell or rent personal data;
– use App data for targeted advertising;
– share App data with data brokers; or
– combine App data with data from other companies’ apps or websites for advertising or advertising measurement
The App contains no third-party advertising and does not track users as defined by Apple’s App Tracking Transparency framework.
## 7. On-Device Storage and International Transfers
The App stores tokens, session data, device identifiers, and portions of operational data in the App’s storage on the device to maintain the session, resume work, and display data during intermittent connectivity. Users should protect the device with a passcode or biometrics, not share it with unauthorized persons, and sign out when finished.
Primary data is transmitted over HTTPS to NIS systems. Providers such as Apple, Expo, and Google may process data on systems outside Thailand. Where an international transfer occurs, NIS will comply with applicable data-protection law and use appropriate safeguards such as data-processing terms, contractual protections, access restrictions, and security measures.
## 8. Retention and Deletion
We retain data only as long as necessary under the following criteria:
– **tokens and sessions:** until logout, session expiry, account suspension, or access revocation;
– **Push Tokens and device identifiers:** while the device is registered to an account and until deregistration, logout, token invalidation, or the notification purpose ends;
– **on-device copies:** until replaced or cleared, the user clears App data, or the App is uninstalled;
– **account and personnel data:** while the account or employment relationship is active and afterward as necessary for legal, organizational-policy, audit, or dispute purposes;
– **tickets, reports, location, photos, signatures, documents, chat, approvals, equipment, warranties, and claims:** for the duration of the service, contract, warranty, or claim and afterward for applicable legal-retention or limitation periods; and
– **technical and security records:** as needed to secure the service, investigate incidents, troubleshoot, and comply with law
When data is no longer required, we delete, destroy, or appropriately anonymize it. Data in backups is deleted when the relevant backup is overwritten in the ordinary retention cycle unless longer retention is legally required.
Uninstalling the App removes App-controlled data from the device but does not automatically delete data previously transmitted to NIS systems.
The App does not offer public account creation. Accounts are issued and administered by NIS. A user may request account closure or data deletion through the NIS system administrator or by emailing [info@nisolution.co.th](mailto:info@nisolution.co.th). After verifying the request, we will disable access and delete or anonymize relevant data unless retention is required for legal, contractual, warranty, audit, or legal-claim purposes.
## 9. Security
We use technical and organizational safeguards appropriate to the risk, including HTTPS/TLS transmission, authentication, session management, role-based access, access restrictions, and security-related event logging.
No transmission or storage system is completely secure. If unauthorized access to an account, device, or data is suspected, follow the administrator’s instructions to update credentials and contact NIS immediately.
## 10. Individual Rights
Subject to Thailand’s Personal Data Protection Act B.E. 2562 (2019) and other applicable law, an individual may have the right to:
– access and obtain a copy of personal data;
– correct inaccurate or incomplete data;
– request deletion, destruction, or anonymization;
– restrict processing;
– object to certain processing;
– receive or transfer data where portability applies;
– withdraw consent without affecting processing lawfully performed before withdrawal; and
– complain to Thailand’s Personal Data Protection Committee
Submit a request to [info@nisolution.co.th](mailto:info@nisolution.co.th) with the subject **“Data Subject Request — NIS iPad Onsite.”** We may request information necessary to verify identity and prevent unauthorized disclosure.
A request may be limited or refused where permitted by law, including where retention is necessary for legal, contractual, warranty, audit, or legal-claim purposes. We will provide the legally required explanation.
## 11. Children
The App is an enterprise tool for authorized personnel and is not directed to children. We do not intentionally collect children’s data through the App. Contact us if a child’s data may have been recorded without necessity or a lawful basis.
## 12. Changes to This Policy
We may update this Policy when features, technology, providers, or legal requirements change. We will update the “Last updated” date and provide notice of material changes through the App, website, email, or another appropriate channel before or when the change takes effect.
## 13. Contact Us
For questions, complaints, security incidents, withdrawal of consent, account-closure requests, or data-rights requests, contact:
Network Integration Solutions Co., Ltd.
1 Soi Chan 7, Chong Nonsi, Yan Nawa, Bangkok 10120, Thailand
Email: [info@nisolution.co.th](mailto:info@nisolution.co.th)
Telephone: +66 2 678 9995, +66 93 289 1664
Office hours: Monday–Friday, 9:00 a.m.–6:00 p.m. (Thailand time)
