What we collect, why, who can see it, and how long we keep it. Written to be read, not skimmed.
In effect from Sep 15, 2026. Using the app means you accept these terms.
Campus Lost & Found is an internal tool run by the school for its own community — students, teachers and staff. Sign-in is limited to school email addresses, so only people in the school community can post, chat or claim.
The school is the data controller: it decides what the app collects and is responsible for looking after it. The people who build and operate the app act on the school's behalf.
The app is designed to record and notify, not to police. It keeps a trail of who posted, claimed and resolved what, so the school can sort out any mix-up afterwards. The AI in the app only suggests — every decision is made by a person.
We keep the minimum needed to reunite items with their owners and to keep the feed trustworthy.
Your school email address, and the display name we build from it (first name plus last initial for students, full name for staff). Students may add a tutor group; we work out the graduation year from the email. Staff may add a dedicated classroom. You can edit these in your profile at any time.
Photos, the item's title, description and category, where it was found or last seen, whether a teacher is holding it, and the time you posted. Found-item photos are the heart of the app — post only the item, never people.
Messages you write on a post's thread, with your display name and the time. Staff also have a private coordination thread that only staff and admins can read.
Claiming, marking resolved, reopening, saying "I've seen this", updating a location, asking a teacher to hold an item, and raising a dispute. Each one is written to the post's timeline with your name, so the history of an item is always clear.
A row for each in-app notification you receive (a claim request, a likely match, a custody request) and whether you have read it. Nothing is sent to your email except the sign-in code.
A sign-in cookie that keeps you logged in, a cookie that remembers your language (English or Thai), and anonymous page-performance and visit counts from our hosting provider (Vercel Analytics and Speed Insights). We do not run advertising trackers.
The app uses Google's Gemini models for a few narrow jobs. Photos and text are sent to Google's API to be processed and come straight back; we do not use your data to train any model.
When you snap a photo, the AI suggests a title, category and description. You check and edit before posting. The suggestion itself is not stored — only what you choose to post.
The title, description and category of every post are turned into a numeric fingerprint (an embedding) and compared with other posts, so the app can say "this might be yours". A match is a suggestion, never a decision — you still walk over and check.
After you publish, the AI quietly checks the photo and text for things that don't belong (a person's face, something inappropriate, an off-topic post). This only produces a hint that staff can see. It never hides, blocks or deletes anything on its own — a person always decides.
If you tap Translate on a post or message, the text is sent for translation and shown to you as an overlay. The original is never changed and the translation is not saved.
The feed, each post (photos, details, location), the comments on it, and the display names of the people who wrote them. You do not need to be signed in to browse. Treat a post as public within the school.
Your notifications and your email address. Your email is never shown on a post or in chat — only your display name.
In addition to the above: posts that have been hidden, the AI moderation hints, the full timeline of a disputed post (who claimed, who disputed and why, who chatted), the staff coordination thread, and a read-only audit log of moderation actions. Admins can also grant or revoke admin rights and see the community controls.
If a moderator deletes a post or message, the content is gone from the app but a short record stays in the moderation log — what it was, who wrote it, who removed it and why. This is so the school can answer questions about a removal later.
A post is live for 35 days, then automatically archived (it drops out of the feed and search). Re-posting is how you revive an item. Archived posts and their photos are permanently deleted by the school in a semester clean-up. Deleting a post also deletes its photos, comments, matches and timeline.
Your profile stays while you are at the school. When you leave, the school can remove it; posts and comments you wrote then show as a former student or former staff member rather than your name.
The moderation log and the post timeline are kept for as long as the school needs them to resolve questions about an item. Notification rows are removed with the post they belong to.
The database and photos are stored with Supabase in Singapore. The app itself is hosted by Vercel. Sign-in codes are emailed through Supabase's email service. AI processing is done by Google's Gemini API. Each provider only receives what it needs for its job and processes it under its own terms.
Secrets and admin keys are held server-side and never reach your browser.
Under Thailand's Personal Data Protection Act (PDPA) and plain fairness, you can:
If you are under 18, you can use the app as part of school life. The school acts as your guardian's representative for this purpose, and your parent or guardian can exercise any of these rights for you.
If we change what the app collects or how it is used, this page is updated and the date at the top changes. Big changes will be announced in the app.
Questions about your data go to the school office or the staff member who runs Lost & Found. Questions about how the app works are answered on the How it works page.