เว็บไซต์นี้ไม่มีคุกกี้ติดตามและไม่มีเครื่องมือวิเคราะห์ แต่ให้บริการผ่าน Firebase Hosting และโหลดแบบอักษรจาก Google Fonts ซึ่งจะเห็นที่อยู่ IP ของคุณเหมือนการเปิดเว็บทั่วไป
“รถเข็นใกล้ฉัน” (Rotkhen – Street carts near me), Android package th.rotkhen.app · Effective 29 September 2026 (29 ก.ย. 2569). If the Thai and English versions differ, the Thai version prevails.
In short
Customers use the app without an account. Your location stays on your phone and is never uploaded.
Vendors sign in with Google. Shop details (name, category, phone, menu) and the shop’s location while the shop is open are public. Location is removed when the shop closes.
No ads, no analytics SDK, no selling or renting of data.
The data controller is the developer of “รถเข็นใกล้ฉัน” in Thailand. Developer name on Google Play: PONG Developer · email kampanatth0222@gmail.com. See section 13 to contact us.
2. Customers (not signed in)
No sign-up or login; we do not know who you are.
Device location (if you allow it) is used on the device only: to show you on the map, compute distances, sort nearby shops and check whether a shop you follow is near. It is never sent to our servers. The map works without it.
Local settings (shops you asked to be alerted about and when each last alerted you, when you last reported each shop (to prevent repeat reports), shops you hid, app language, night mode, the cached map-tile server address) are stored in the app’s local storage (SharedPreferences) on your phone only. Clear app data or uninstall to remove them.
Alerts are generated on your phone, not pushed from a server. Currently they work while the app is open or recently backgrounded.
Call / Navigate opens your phone dialer with the shop’s number, or Google Maps with the shop’s coordinates. Those apps’ own policies then apply.
3. Vendors (signed in to run a shop)
Data
Stored in
Purpose
Visible to
Google account name, email, profile photo URL, user ID (uid)
Firebase Authentication
Sign-in; only the owner can edit their shop; shown in your own account menu
You only (not shown to customers)
Shop name, category, shop phone, menu and prices (up to 20 items)
Cloud Firestore vendors/{uid}
Show your shop and let customers call
Public
Shop photo (optional) that you take or pick yourself, e.g. your cart: the app crops it to a circle, resizes it to at most 640×640 px and removes EXIF data (such as where it was taken and the phone model) before upload; everything outside the circle is discarded
Cloud Firestore vendorPhotos/{uid}
Shown on your map pin, in shop lists and on your shop page so customers recognise your cart
Public · change or remove it any time under Edit shop
Open/closed flag, shop location (lat/lng), speed, heading, a random install ID, timestamps
Cloud Firestore vendors/{uid}
Show that the shop is open and where it is; the random install ID tells which phone is sending location when one account is used on several phones
Public (location only while open)
Live location: lat, lng, speed, accuracy, heading, time
Firebase Realtime Database live/{uid}/{device}
Smoothly move the shop’s pin on customers’ maps
Public while open
Banned accounts for breaking the terms of use (only accounts that were banned): user ID (uid), Google email, time and reason
Cloud Firestore banned
To stop that account from running a shop again and to spot repeat violations (Terms of use section 4)
Our team only
Location is shared as the shop’s position only between tapping “Open shop” (เปิดร้าน) and “Close shop” (ปิดร้าน). A persistent notification with a “Close shop” button is shown the whole time.
Each new position overwrites the previous one. We do not keep a route history.
On closing, the live location is deleted and the location, speed and heading in the shop record are cleared. If you close while offline, the app sends the close command when the connection returns.
If the phone disconnects, its live location is removed automatically. If the phone dies or stops sending without closing the shop, the last position stays in the shop record; customers’ apps treat shops not updated for 60 minutes as closed and show no pin for them, and when the vendor’s app runs again and finds it was silent for more than 30 minutes, it closes the shop and clears the location automatically. Signing out on the phone that is sending location closes the shop and removes the location first (without internet, the app will not sign out until it can close the shop).
On the vendor’s phone the app keeps the random install ID, user ID, open state and last-sent time locally, to resume after a restart and to auto-close a shop that went silent. This is not sent anywhere beyond what is listed in the table above.
Background location (“Allow all the time”) is requested from vendors only, after an in-app explanation, so the shop keeps updating while the screen is off, the app is swiped away or the phone restarts while the shop is open. Vendors can refuse and still open a shop. Background location is not used while the shop is closed.
4. What is public
Shop name, category, shop phone number, menu, prices, shop photo and the shop’s location while open can be read by anyone without logging in — that is the core purpose of the app. Only enter a phone number you are happy for customers to call, use a photo of your own cart or shop, and avoid other people’s faces or licence plates. Your Google name, email and photo are not public.
Reporting inappropriate content: every shop page has a “Report this shop” button (e.g. an inappropriate photo or name, a fake shop). Reports are stored in Cloud Firestore reports with only the shop ID, the reason, any text you type and the time — nothing about the reporter. Only our team can read them, and we remove photos or shops that break the rules.
5. Android permissions
INTERNET — load maps and shops, send shop location.
ACCESS_BACKGROUND_LOCATION — vendors only, keep updating with the screen off while open (requested after an in-app explanation).
FOREGROUND_SERVICE, FOREGROUND_SERVICE_LOCATION — the visible location service while the shop is open.
WAKE_LOCK — lets Android’s background-work system (WorkManager) finish with the screen off, e.g. delivering a pending “close shop” command once the connection returns.
POST_NOTIFICATIONS — “shop is near” alerts and vendor shop-status notifications.
No camera or photo-library permission: when a vendor adds a shop photo, the app opens the system camera or photo picker and receives only the one photo you take or choose — it cannot browse your library.
RECEIVE_BOOT_COMPLETED — resume sending if the shop was still open when the phone restarted or the app updated (does nothing if the shop is closed).
Android auto-backup is disabled (allowBackup=false), so on-device data is not copied elsewhere.
6. Legal bases
Consent — device location and notifications; withdraw anytime in phone settings or by closing the shop.
Performance of the service you request — vendor account and shop data.
Legitimate interests — security, e.g. database rules that only let owners edit their own shop.
We do not use data for advertising or profiling, and we do not sell, rent or share it for marketing.
7. Service providers
Google Firebase (Authentication, Cloud Firestore, Realtime Database) stores vendor accounts, shop data and live location. Servers may be outside Thailand (e.g. the Realtime Database is in Singapore).
Google Sign-In for vendor login.
Google Fonts — the app downloads fonts from Google, which sees your IP address as with any web request.
OpenFreeMap (tiles.openfreemap.org) — map images; receives requests for the map area you are viewing and your IP address, like any web request. Your GPS position is not sent.
Google Maps — only when you tap Navigate.
No advertising SDK, no analytics SDK and no server push notifications in this version. We disclose data only when required by law.
This website uses no tracking cookies or analytics; it is served by Firebase Hosting and loads fonts from Google Fonts, which see your IP address as with any web request.
8. Retention
Shop location: only while open; removed on closing, signing out, deleting the account, or on disconnect (live location). No route history (for a phone that dies mid-route, see section 3).
Shop details, menu and shop photo: until you edit or delete them (deleting your account in the app deletes the shop and photo too).
Content reports: until our team has reviewed them.
Banned-account list: until our team lifts the ban, and it is kept even after the account is deleted in the app (to stop people from signing up again to repeat violations).
Vendor account (Firebase Authentication): until you delete it in the app or ask us to.
On-device data: until you clear app data or uninstall.
Deleted data is removed from the app’s databases immediately; Google’s system logs may persist temporarily under the provider’s retention schedule.
9. Security
All data is encrypted in transit (HTTPS/TLS via Firebase). Database rules allow only the owner to edit or delete a shop and require a closed shop to have no coordinates. No system is 100% secure; we will notify breaches as required by the PDPA.
10. Your rights (Thailand PDPA)
You may request access to and a copy of your data, data portability, correction, deletion, restriction, objection, and withdraw consent at any time. In the app you can edit your shop, close the shop to stop and remove location, sign out and delete your shop and account. Other requests: contact us (section 13); we reply within 30 days and may ask you to confirm you own the account. You may also complain to Thailand’s Personal Data Protection Committee (PDPC).
11. Children
The app is not directed at children and we do not knowingly collect children’s data. Customers’ personal data is not uploaded at all. Vendors should be 20 or older or have a parent’s or guardian’s consent. Parents can contact us to have a child’s shop deleted.
12. Changes
We will update this page and the effective date when the policy changes, and notify you in the app or ask for new consent for significant changes.