1. Giới thiệu
Aoi Sora (sau đây gọi là "Ứng dụng") là nền tảng quản lý công việc vận hành bán lẻ được phát triển bởi
Công ty TNHH Aura Orientalis ("Chúng tôi", "Nhà phát triển").
Ứng dụng có các phiên bản:
- Ứng dụng Web (Aoi Sora Workspace) — truy cập qua trình duyệt web, phát triển bởi Aura Orientalis
- Ứng dụng di động Android — phát hành trên Google Play, phát triển bởi Aura Orientalis
- Ứng dụng di động iOS ("AOI SORA") — phát hành trên App Store, phát triển và vận hành bởi Aura Orientalis
Tất cả các phiên bản kết nối đến cùng một máy chủ backend và xử lý cùng một dữ liệu nghiệp vụ.
Chính sách này áp dụng cho tất cả các phiên bản. Khác biệt đặc thù theo nền tảng
được ghi chi tiết ở Mục 8.
Bằng việc sử dụng Ứng dụng, bạn đồng ý với các điều khoản trong Chính sách bảo mật này.
2. Dữ liệu chúng tôi thu thập
2.1. Thông tin tài khoản (bắt buộc)
- Tên đăng nhập (username hoặc email do tổ chức cấp)
- Mật khẩu (chỉ truyền qua kết nối mã hóa HTTPS, không lưu plaintext trên thiết bị)
- Thông tin hồ sơ nhân viên: ID nhân viên, họ tên, email, vai trò (role), cấp bậc (grade), phòng ban, cửa hàng được phân công
2.2. Dữ liệu công việc (bắt buộc để Ứng dụng hoạt động)
- Nội dung công việc (task), câu trả lời (answers) bạn nhập
- Bình luận (comments) bạn tạo
- Thời gian hoàn thành công việc
- ID cửa hàng / khu vực liên quan đến công việc
2.3. Ảnh (do bạn chủ động tải lên)
- Nguồn: Ảnh chỉ được tải lên khi bạn chủ động chọn —
Android: chỉ qua máy ảnh thiết bị (không truy cập thư viện ảnh từ v1.5.8) ·
iOS: qua máy ảnh hoặc thư viện ảnh của thiết bị ·
Web: qua bộ chọn file của trình duyệt
- Mục đích: Bằng chứng hoàn thành công việc (task proof)
- Upload: Qua kết nối HTTPS đến máy chủ của chúng tôi
- Metadata EXIF: Phiên bản Android tự động loại bỏ thông tin vị trí GPS
khỏi metadata trước khi upload (từ v1.7.2). Phiên bản Web không nhúng metadata GPS từ trình duyệt.
Phiên bản iOS hiện chưa triển khai tính năng strip EXIF — đây là điểm đang được rà soát để đồng bộ với phiên bản Android.
2.4. Token thiết bị cho thông báo đẩy (chỉ Android, tùy chọn)
- Khi tính năng thông báo được bật trên ứng dụng Android, Ứng dụng thu thập Firebase Cloud Messaging (FCM) token để gửi thông báo công việc mới
- Kèm theo: ngôn ngữ hiển thị (vi/en/ja), nền tảng (android)
- Bạn có thể từ chối quyền thông báo trong cài đặt hệ điều hành Android
- Phiên bản iOS hiện không triển khai thông báo đẩy — không thu thập FCM/APNS token trên iOS
2.5. Dữ liệu KHÔNG thu thập
Ứng dụng KHÔNG thu thập:
- ❌ Vị trí GPS/Location
- ❌ Danh bạ, Lịch, Tin nhắn SMS
- ❌ Thông tin sức khỏe, tài chính
- ❌ Ghi âm, microphone
- ❌ Dữ liệu phân tích hành vi người dùng (không có analytics hành vi trong ứng dụng)
- ❌ Báo cáo lỗi tự động (không có Crashlytics)
- ❌ Mã quảng cáo định danh (IDFA, GAID)
3. Cách chúng tôi sử dụng dữ liệu
Dữ liệu thu thập chỉ được sử dụng cho:
- Xác thực đăng nhập — kiểm tra tài khoản hợp lệ
- Quản lý công việc — hiển thị, tạo, cập nhật, báo cáo công việc theo vai trò
- Lưu trữ bằng chứng — ảnh task proof phục vụ kiểm duyệt nội bộ
- Gửi thông báo đẩy — thông báo khi có công việc mới (chỉ di động, nếu bật)
- Cập nhật ứng dụng — kiểm tra phiên bản mới qua Google Play Services (Android) hoặc App Store (iOS)
Chúng tôi KHÔNG bán, cho thuê, hoặc chia sẻ dữ liệu cá nhân của bạn cho mục đích marketing/quảng cáo.
4. Bên thứ ba
Dữ liệu của bạn được xử lý/truyền qua các bên thứ ba sau:
| Bên thứ ba | Phạm vi | Dữ liệu chia sẻ | Mục đích |
| Google Firebase (FCM) | Di động | FCM token, nội dung thông báo | Gửi thông báo đẩy |
| Google Play Services | Android | Phiên bản ứng dụng | Kiểm tra cập nhật |
| Máy chủ Aura Orientalis (AWS) | Web + Di động | Toàn bộ dữ liệu công việc, tài khoản, ảnh | Xử lý nghiệp vụ chính |
Chi tiết chính sách bên thứ ba:
Firebase Privacy ·
Google Privacy
Chúng tôi KHÔNG gửi dữ liệu đến dịch vụ quảng cáo, analytics hành vi của bên thứ ba, hoặc các đối tác thương mại nào khác.
5. Lưu trữ và bảo mật
- Truyền dữ liệu: Tất cả giao tiếp giữa Ứng dụng và máy chủ đều qua HTTPS (mã hóa TLS) trong môi trường production
- Lưu trên thiết bị:
- Di động Android: Access token + Refresh token lưu trong Android Keystore (mã hóa cấp hệ điều hành) qua
FlutterSecureStorage - Di động iOS: Token lưu trong iOS Keychain (OS-level encryption) qua
flutter_secure_storage - Web: Session token lưu trong
httpOnly cookie (không truy cập được từ JavaScript), tự động xóa khi logout
- Lưu trên máy chủ: Dữ liệu nghiệp vụ lưu tại máy chủ Amazon Web Services (AWS) — region Châu Á Thái Bình Dương
(Singapore,
ap-southeast-1), truy cập được kiểm soát bằng phân quyền theo vai trò. Việc truyền dữ liệu qua biên giới
này tuân thủ NĐ 13/2023/NĐ-CP (đánh giá tác động chuyển dữ liệu ra nước ngoài).
- Thời gian lưu: Dữ liệu được lưu giữ theo thời gian cần thiết phục vụ mục đích nghiệp vụ
(quản lý công việc, báo cáo, kiểm duyệt nội bộ) và tuân thủ nghĩa vụ pháp luật hiện hành. Khi dữ liệu không còn cần thiết
hoặc khi bạn yêu cầu xóa (và không có nghĩa vụ pháp lý yêu cầu giữ lại), chúng tôi sẽ xóa hoặc ẩn danh hóa dữ liệu.
6. Quyền của bạn
Bạn có các quyền sau đây đối với dữ liệu cá nhân của mình:
- Quyền truy cập — Xem dữ liệu cá nhân lưu trữ qua Ứng dụng (hồ sơ, lịch sử công việc)
- Quyền chỉnh sửa — Yêu cầu cập nhật thông tin không chính xác
- Quyền xóa — Yêu cầu xóa tài khoản và dữ liệu liên quan (liên hệ email dưới đây)
- Quyền rút lại đồng ý — Tắt quyền thông báo, camera trong cài đặt thiết bị / trình duyệt
- Quyền khiếu nại — Liên hệ chúng tôi hoặc cơ quan có thẩm quyền nếu cho rằng dữ liệu bị xử lý sai
Để thực hiện các quyền trên, vui lòng liên hệ:
Chúng tôi phản hồi yêu cầu trong vòng 30 ngày làm việc.
7. Quyền trẻ em
Ứng dụng dành cho đối tượng từ 18 tuổi trở lên (nhân viên AEON Việt Nam và các tổ chức đối tác).
Chúng tôi KHÔNG cố ý thu thập dữ liệu từ trẻ em dưới 13 tuổi. Nếu phát hiện, dữ liệu sẽ bị xóa ngay lập tức.
8. Chi tiết đặc thù theo nền tảng
8.1. Ứng dụng Web (Aoi Sora Workspace)
- Session: httpOnly cookie — không truy cập được từ JavaScript của trang khác
- Cookie sử dụng: chỉ cookies cần thiết cho hoạt động (authentication, preferences). Không có cookies analytics/quảng cáo
- Camera / GPS: Không yêu cầu quyền trình duyệt. Ảnh upload qua file picker tiêu chuẩn
- Domain:
aoisora.auraorientalis.vn (production) · demo.aoisora.vn (demo)
8.2. Ứng dụng Android (Google Play)
- Camera: Chụp ảnh task proof (user chủ động nhấn chụp). Không truy cập thư viện ảnh từ v1.5.8
- EXIF GPS: Tự động xóa trước upload qua
flutter_image_compress (từ v1.7.2) - FCM: Token nhận thông báo công việc mới (tùy chọn, revoke được trong cài đặt Android)
- Secure storage: Access/Refresh token trong Android Keystore qua FlutterSecureStorage
- App updates: Kiểm tra qua Google Play Services
- Min SDK: Android 7.0 (API 24) trở lên
8.3. Ứng dụng iOS "AOI SORA" (App Store)
- Nhà phát triển: Aura Orientalis phát triển và vận hành phiên bản iOS, sử dụng cùng API backend — dữ liệu nghiệp vụ đồng bộ với phiên bản Web và Android
- Camera: Chụp ảnh bằng chứng công việc (user chủ động)
- Thư viện ảnh: Cho phép chọn ảnh có sẵn để upload + lưu ảnh vào thư viện (khác Android — Android không truy cập thư viện từ v1.5.8)
- Microphone: Quyền được khai báo trong `Info.plist` để phục vụ chức năng quay video (nếu có sử dụng trong tương lai)
- EXIF GPS: Hiện chưa strip metadata trước upload — đang được rà soát để đồng bộ với phiên bản Android (v1.7.2 Android đã strip)
- Thông báo đẩy: Không triển khai (không dùng APNS, không thu thập device token)
- Secure storage: Access/Refresh token lưu trong iOS Keychain qua
flutter_secure_storage - App updates: Kiểm tra qua App Store
- Min iOS: iOS 13.0 trở lên
- SDK bên thứ ba: KHÔNG dùng Firebase Analytics, KHÔNG dùng Crashlytics, KHÔNG thu thập mã quảng cáo (IDFA)
9. Tuân thủ pháp lý
Chính sách này tuân theo:
- Nghị định số 13/2023/NĐ-CP của Chính phủ Việt Nam về bảo vệ dữ liệu cá nhân
- Google Play Developer Program Policies — Data Safety
- Apple App Store Review Guidelines — Privacy (áp dụng khi phát hành iOS)
- Luật An ninh mạng Việt Nam 2018 (Luật số 24/2018/QH14)
10. Thay đổi chính sách
Chúng tôi có thể cập nhật Chính sách này khi có thay đổi về tính năng hoặc yêu cầu pháp lý. Phiên bản mới sẽ được đăng tại
URL này với ngày hiệu lực cập nhật. Tiếp tục sử dụng Ứng dụng sau khi có thay đổi đồng nghĩa với việc bạn chấp nhận chính sách mới.
11. Liên hệ
CÔNG TY TNHH AURA ORIENTALIS (Aura Orientalis Co., Ltd.)
Ngày hiệu lực: 2026-04-23
1. Introduction
Aoi Sora (the "App") is a retail operations work management platform developed by
Aura Orientalis Co., Ltd. ("we", "us", "developer").
The App is available in the following versions:
- Web App (Aoi Sora Workspace) — accessed via web browser, developed by Aura Orientalis
- Android mobile app — published on Google Play, developed by Aura Orientalis
- iOS mobile app ("AOI SORA") — published on App Store, developed and maintained by Aura Orientalis
All versions connect to the same backend server and process the same business data.
This Policy applies to all versions. Platform-specific details
are documented in Section 8.
By using the App, you agree to the terms of this Privacy Policy.
2. Data we collect
2.1. Account information (required)
- Username (username or email issued by your organization)
- Password (transmitted only via HTTPS encrypted connection, never stored in plaintext on device)
- Employee profile: Staff ID, name, email, role, grade, department, assigned stores
2.2. Work data (required for App functionality)
- Task content and answers you submit
- Comments you create
- Task completion timestamps
- Store / area IDs associated with tasks
2.3. Photos (user-initiated)
- Source: Photos are uploaded only when you actively select them —
Android: camera only (no gallery access since v1.5.8) ·
iOS: camera or photo library ·
Web: browser file picker
- Purpose: Task completion evidence (task proof)
- Upload: Via HTTPS connection to our server
- EXIF metadata: The Android app automatically strips GPS location data
from metadata before upload (since v1.7.2). Web version does not embed GPS metadata from browser uploads.
The iOS version does not currently implement EXIF stripping — this is under review for parity with the Android version.
2.4. Device token for push notifications (Android only, optional)
- When notifications are enabled on the Android app, the App collects the Firebase Cloud Messaging (FCM) device token to deliver new task notifications
- Included: display language (vi/en/ja), platform (android)
- You can revoke notification permission in Android OS settings
- The iOS version does not implement push notifications — no FCM/APNS token is collected on iOS
2.5. Data we do NOT collect
The App does NOT collect:
- ❌ GPS/Location data
- ❌ Contacts, Calendar, SMS messages
- ❌ Health or financial information
- ❌ Audio recording, microphone access
- ❌ Behavioral user analytics (no in-app behavior analytics)
- ❌ Automatic crash reports (no Crashlytics)
- ❌ Advertising identifiers (IDFA, GAID)
3. How we use the data
Collected data is used solely for:
- Login authentication — validate your credentials
- Work management — display, create, update, and report tasks per your role
- Evidence storage — task proof photos for internal review
- Push notifications — notify you of new tasks (mobile only, if enabled)
- App updates — check for new versions via Google Play Services (Android) or App Store (iOS)
We do NOT sell, rent, or share your personal data for marketing/advertising purposes.
4. Third parties
Your data is processed/transmitted through the following third parties:
| Third party | Scope | Data shared | Purpose |
| Google Firebase (FCM) | Mobile | FCM token, notification payload | Push notification delivery |
| Google Play Services | Android | App version | App update checks |
| Aura Orientalis server (AWS) | Web + Mobile | All work data, account info, photos | Core App business logic |
Third-party policy details:
Firebase Privacy ·
Google Privacy
We do NOT transmit data to third-party advertising services, behavioral analytics providers, or any commercial partners.
5. Storage and security
- Data in transit: All communication between App and server uses HTTPS (TLS encryption) in production
- On-device storage:
- Android mobile: Access and Refresh tokens stored in Android Keystore (OS-level encryption) via
FlutterSecureStorage - iOS mobile: Tokens stored in iOS Keychain (OS-level encryption) via
flutter_secure_storage - Web: Session token stored in
httpOnly cookie (not accessible from JavaScript), auto-cleared on logout
- Server-side storage: Business data is stored on Amazon Web Services (AWS) — Asia Pacific region
(Singapore,
ap-southeast-1), with role-based access control. Cross-border data transfer complies with
Decree 13/2023/NĐ-CP (cross-border transfer impact assessment).
- Retention period: Data is retained for as long as necessary to fulfill business purposes
(work management, reporting, internal audit) and to comply with applicable legal obligations. When data is no longer needed
or when you request deletion (and no legal obligation requires retention), we will delete or anonymize the data.
6. Your rights
You have the following rights regarding your personal data:
- Right to access — View personal data stored via the App (profile, task history)
- Right to rectification — Request correction of inaccurate information
- Right to erasure — Request account and associated data deletion (contact email below)
- Right to withdraw consent — Disable notification or camera permissions in device / browser settings
- Right to lodge a complaint — Contact us or competent authority if you believe data is being misused
To exercise these rights, please contact:
We will respond within 30 business days.
7. Children's privacy
The App is intended for users aged 18 and over (AEON Vietnam staff and partner organizations).
We do NOT knowingly collect data from children under 13. If detected, such data will be deleted immediately.
8. Platform-specific details
8.1. Web App (Aoi Sora Workspace)
- Session: httpOnly cookie — not accessible from other sites' JavaScript
- Cookies used: only essential cookies for operation (authentication, preferences). No analytics/advertising cookies
- Camera / GPS: Does not request browser permissions. Photos are uploaded via standard file picker
- Domains:
aoisora.auraorientalis.vn (production) · demo.aoisora.vn (demo)
8.2. Android app (Google Play)
- Camera: Capture task proof photos (user-initiated). No gallery access since v1.5.8
- EXIF GPS: Automatically stripped before upload via
flutter_image_compress (since v1.7.2) - FCM: Token to receive new task notifications (optional, revocable in Android settings)
- Secure storage: Access/Refresh tokens in Android Keystore via FlutterSecureStorage
- App updates: Checked via Google Play Services
- Min SDK: Android 7.0 (API 24) or higher
8.3. iOS app "AOI SORA" (App Store)
- Developer: Aura Orientalis develops and maintains the iOS version — business data is synchronized across Web, Android, and iOS
- Camera: Capture task evidence photos (user-initiated)
- Photo Library: Allows selecting existing photos to upload and saving photos to the library (differs from Android — Android does not access the gallery since v1.5.8)
- Microphone: Permission declared in `Info.plist` for potential video recording functionality
- EXIF GPS: Currently not stripped before upload — under review for parity with Android (Android v1.7.2 strips EXIF)
- Push notifications: Not implemented (no APNS, no device token collection)
- Secure storage: Access/Refresh tokens stored in iOS Keychain via
flutter_secure_storage - App updates: Checked via App Store
- Min iOS: iOS 13.0 or higher
- Third-party SDKs: NO Firebase Analytics, NO Crashlytics, NO advertising identifiers (IDFA)
9. Legal compliance
This Policy complies with:
- Decree No. 13/2023/NĐ-CP of the Vietnamese Government on Personal Data Protection
- Google Play Developer Program Policies — Data Safety
- Apple App Store Review Guidelines — Privacy (applies when iOS app is released)
- Vietnam Cybersecurity Law 2018 (Law No. 24/2018/QH14)
10. Changes to this policy
We may update this Policy when app features change or legal requirements are updated. The new version will be posted at this URL
with an updated effective date. Continued use of the App after changes constitutes acceptance of the updated policy.
11. Contact
AURA ORIENTALIS COMPANY LIMITED (CÔNG TY TNHH AURA ORIENTALIS)
Effective date: 2026-04-23
1. はじめに
Aoi Sora(以下「本アプリ」)は、Aura Orientalis 有限責任会社(以下「当社」「開発者」)
が開発する小売運営業務管理プラットフォームです。
本アプリは以下のバージョンを提供しています:
- Web アプリ(Aoi Sora Workspace)— ウェブブラウザからアクセス、Aura Orientalis が開発
- Android モバイルアプリ — Google Play にて配信、Aura Orientalis が開発
- iOS モバイルアプリ(「AOI SORA」)— App Store にて配信、Aura Orientalis が開発・運用
すべてのバージョンは同一のバックエンドサーバーに接続し、同一の業務データを処理しています。
本ポリシーはすべてのバージョンに適用されます。プラットフォーム固有の詳細は
第 8 条に記載しています。
本アプリをご利用いただくことで、本プライバシーポリシーの条項に同意したものとみなされます。
2. 収集するデータ
2.1. アカウント情報(必須)
- ユーザー名(所属組織から発行された username または email)
- パスワード(HTTPS 暗号化通信でのみ送信、端末上には平文で保存しません)
- 従業員プロフィール:従業員 ID、氏名、メールアドレス、権限(role)、等級(grade)、部署、担当店舗
2.2. 業務データ(本アプリの機能に必須)
- ユーザーが入力したタスク内容および回答(answers)
- ユーザーが作成したコメント
- タスク完了時刻
- タスクに関連する店舗/エリア ID
2.3. 写真(ユーザー主導のアップロード)
- 取得元:ユーザーが能動的に選択した写真のみアップロードします —
Android:端末カメラのみ(v1.5.8 以降、ギャラリーアクセスなし)・
iOS:端末カメラまたはフォトライブラリ ・
Web:ブラウザのファイル選択
- 目的:タスク完了の証拠(task proof)
- アップロード:HTTPS 接続で当社サーバーに送信
- EXIF メタデータ:Android 版は v1.7.2 以降、アップロード前にGPS 位置情報を自動的に除去します。
Web 版はブラウザから GPS メタデータを埋め込みません。
iOS 版は現時点で EXIF ストリップを実装していません — Android 版との整合性を確保するため、現在検討中です。
2.4. プッシュ通知用デバイストークン(Android のみ、任意)
- Android アプリで通知機能が有効な場合、新しいタスクの通知を配信するために Firebase Cloud Messaging (FCM) デバイストークンを収集します
- 併せて送信する情報:表示言語(vi/en/ja)、プラットフォーム(android)
- 通知権限は Android OS の設定で取り消すことができます
- iOS 版はプッシュ通知を実装していません — FCM/APNS トークンは収集されません
2.5. 収集しないデータ
本アプリは以下のデータを収集しません:
- ❌ GPS/位置情報
- ❌ 連絡先、カレンダー、SMS メッセージ
- ❌ 健康・金融情報
- ❌ 音声録音、マイクアクセス
- ❌ ユーザー行動分析データ(アプリ内に行動解析は組み込まれていません)
- ❌ 自動クラッシュレポート(Crashlytics 不使用)
- ❌ 広告識別子(IDFA、GAID)
3. データの利用目的
収集したデータは次の目的に限って利用します:
- ログイン認証 — 認証情報の検証
- 業務管理 — 権限に応じたタスクの表示、作成、更新、報告
- 証拠保管 — 社内レビュー用のタスク証拠写真
- プッシュ通知 — 新規タスクの通知(モバイルのみ、有効時)
- アプリ更新 — Google Play Services (Android) または App Store (iOS) を通じた新バージョン確認
マーケティング・広告目的で個人データを販売・貸与・共有することはありません。
4. 第三者
データは以下の第三者を通じて処理・送信されます:
| 第三者 | 対象範囲 | 共有データ | 目的 |
| Google Firebase (FCM) | モバイル | FCM トークン、通知ペイロード | プッシュ通知配信 |
| Google Play Services | Android | アプリバージョン | アプリ更新確認 |
| Aura Orientalis サーバー (AWS) | Web + モバイル | 全業務データ、アカウント情報、写真 | 本アプリの中核業務処理 |
第三者ポリシー詳細:
Firebase Privacy ·
Google Privacy
広告サービス、行動解析プロバイダー、その他の商業的パートナーにデータを送信することはありません。
5. 保管とセキュリティ
- 通信の暗号化:本番環境において、本アプリとサーバー間の全通信は HTTPS (TLS 暗号化) を使用
- 端末上のストレージ:
- Android モバイル:アクセストークンおよびリフレッシュトークンは
FlutterSecureStorage 経由で Android Keystore(OS レベル暗号化)に保存 - iOS モバイル:トークンは
flutter_secure_storage 経由で iOS Keychain(OS レベル暗号化)に保存 - Web:セッショントークンは
httpOnly cookie(JavaScript からアクセス不可)に保存、ログアウト時に自動削除
- サーバー側ストレージ:業務データは Amazon Web Services (AWS) — アジア太平洋地域(シンガポール、
ap-southeast-1)
に保管され、ロールベースのアクセス制御を適用しています。越境データ移転はベトナム政令 13/2023/NĐ-CP(越境移転影響評価)に準拠します。
- 保存期間:業務目的(業務管理、報告、社内監査)および適用される法的義務を履行するために必要な期間、データを保管します。
データが不要となった場合、または削除要求があり法的保管義務が存在しない場合、データを削除または匿名化します。
6. 利用者の権利
個人データに関して、利用者は次の権利を有します:
- アクセス権 — 本アプリに保存されている個人データ(プロフィール、タスク履歴)の閲覧
- 訂正権 — 不正確な情報の訂正請求
- 消去権 — アカウントおよび関連データの削除請求(下記メールにご連絡ください)
- 同意撤回権 — 端末/ブラウザの設定で通知やカメラの権限を無効化
- 苦情申立権 — データの不適切な処理が疑われる場合、当社または所管当局へ連絡
これらの権利を行使する場合は、以下までご連絡ください:
30 営業日以内にご返答いたします。
7. 子どものプライバシー
本アプリは18 歳以上(AEON ベトナムのスタッフおよび提携組織)を対象としています。
13 歳未満の子どもからのデータを意図的に収集することはありません。判明した場合、当該データは直ちに削除します。
8. プラットフォーム固有の詳細
8.1. Web アプリ (Aoi Sora Workspace)
- セッション:httpOnly cookie — 他サイトの JavaScript からアクセス不可
- 使用 Cookie:運用上必須の Cookie(認証、ユーザー設定)のみ。解析/広告 Cookie は未使用
- カメラ/GPS:ブラウザ権限の要求なし。写真は標準のファイル選択でアップロード
- ドメイン:
aoisora.auraorientalis.vn(本番)・demo.aoisora.vn(デモ)
8.2. Android アプリ (Google Play)
- カメラ:タスク証拠写真の撮影(ユーザー主導)。v1.5.8 以降、ギャラリーへのアクセスなし
- EXIF GPS:v1.7.2 以降、
flutter_image_compress でアップロード前に自動除去 - FCM:新規タスク通知受信用トークン(任意、Android 設定で取り消し可能)
- セキュアストレージ:Android Keystore + FlutterSecureStorage にアクセス/リフレッシュトークンを保存
- アプリ更新:Google Play Services を通じて確認
- 最小 SDK:Android 7.0 (API 24) 以上
8.3. iOS アプリ「AOI SORA」(App Store)
- 開発者:Aura Orientalis が iOS 版の開発および運用を担当。同一のバックエンド API を使用し、業務データは Web / Android / iOS 間で同期されます
- カメラ:タスク証拠写真の撮影(ユーザー主導)
- フォトライブラリ:既存の写真を選択してアップロードしたり、写真をライブラリに保存したりする機能に使用(Android 版とは異なり、Android は v1.5.8 以降ギャラリーにアクセスしません)
- マイク:動画録画機能(将来使用時)に備え、`Info.plist` にて権限を宣言
- EXIF GPS:現時点ではアップロード前の除去は未実装 — Android 版(v1.7.2 で実装済)との整合性を確保するため検討中
- プッシュ通知:未実装(APNS 未使用、デバイストークンの収集なし)
- セキュアストレージ:アクセス/リフレッシュトークンは
flutter_secure_storage 経由で iOS Keychain に保存 - アプリ更新:App Store 経由で確認
- 最小 iOS:iOS 13.0 以上
- 第三者 SDK:Firebase Analytics 不使用、Crashlytics 不使用、広告識別子 (IDFA) 非収集
9. 法令遵守
本ポリシーは以下に準拠しています:
- ベトナム政府政令第 13/2023/NĐ-CP 号(個人データ保護)
- Google Play Developer Program Policies — Data Safety
- Apple App Store Review Guidelines — Privacy(iOS 版リリース時に適用)
- ベトナムサイバーセキュリティ法 2018(法律第 24/2018/QH14 号)
10. ポリシーの変更
本ポリシーはアプリ機能の変更または法的要件の更新に応じて改定することがあります。改定版は施行日を付記して本 URL にて公開します。
改定後も本アプリの利用を継続される場合、更新後のポリシーに同意したものとみなされます。
11. 連絡先
AURA ORIENTALIS COMPANY LIMITED(CÔNG TY TNHH AURA ORIENTALIS)
施行日:2026-04-23