🇻🇳 Tiếng Việt
1. Tóm tắt
BizOn vận hành theo nguyên tắc local-first. Khi bạn chơi ở chế độ thông thường, tiến trình và lựa chọn được lưu trên thiết bị. Khi người dùng chủ động nhập mã lớp (chế độ lớp học), kết quả của từng vòng chơi được gửi tự động khi kết thúc vòng tới cơ sở dữ liệu của BizOn để giảng viên chấm điểm; không nhập mã lớp thì không có gì được gửi.
2. Dữ liệu lưu trên thiết bị
- Tiến trình mô phỏng, quyết định, kết quả vòng chơi, thành tựu và tên đội tự đặt có thể được lưu trong localStorage của trình duyệt.
- Tùy chọn giao diện, ngôn ngữ và trạng thái cài đặt PWA có thể được lưu cục bộ.
- Tệp CSV/JSON được xuất trực tiếp xuống thiết bị; BizOn không nhận bản sao chỉ vì bạn bấm xuất tệp.
3. Dữ liệu lớp học được gửi khi nào?
Yêu cầu gửi dữ liệu chỉ phát sinh khi người dùng đã nhập mã lớp (Bật Nghiệp: tự động cuối mỗi vòng) hoặc bấm nộp ở các màn hình Brand Passport, Bến Phù Sa, pilot. Dữ liệu có thể gồm mã lớp, tên đội, vai trò, email đã nhập (nếu có), điểm mô phỏng, chỉ số kết quả, seed kịch bản, decision trace, reflection, phiên bản ứng dụng và thời điểm gửi. Dữ liệu được lưu trên dịch vụ Supabase do BizOn quản trị, truyền qua HTTPS.
Giảng viên hoặc người điều phối chỉ truy cập dữ liệu thuộc lớp tương ứng qua cơ chế khóa/RPC. Người dùng ẩn danh khác không được cấp quyền đọc trực tiếp bảng dữ liệu lớp.
4. Điều BizOn không thực hiện
- Không có quảng cáo, không bán dữ liệu và không dùng dữ liệu để xây hồ sơ quảng cáo.
- Không yêu cầu quyền danh bạ, vị trí, máy ảnh hoặc micro cho Android shell hiện tại.
- Không cho AI thay đổi điểm số của deterministic simulation engine.
- Không tự động gửi reflection của Brand Passport Learning Pilot khi chưa hoàn tất governance và người dùng chưa opt-in.
5. Dịch vụ hạ tầng
Website/PWA được lưu trữ trên GitHub Pages; phông chữ và tài nguyên giao diện cốt lõi được tự lưu trữ trong dự án. Khi truy cập website, GitHub có thể xử lý dữ liệu kết nối như địa chỉ IP theo chính sách của họ. Các chức năng lớp học được bật có thể dùng Supabase để lưu dữ liệu đã mô tả ở trên.
Nhật ký lỗi kỹ thuật (chẩn đoán). Để sửa lỗi và cải thiện độ ổn định, khi xảy ra lỗi JavaScript, ứng dụng có thể tự động gửi một bản ghi chẩn đoán gọn tới BizOn (chỉ khi backend được bật): thông điệp lỗi, tệp/nguồn, dòng và cột, ngăn xếp lỗi (stack), phiên bản ứng dụng, chuỗi trình duyệt (user-agent), kích thước cửa sổ và mốc thời gian. Bản ghi này không kèm họ tên, email hay số điện thoại, chỉ được ghi (không đọc lại từ phía người dùng), và dùng riêng cho việc gỡ lỗi. Chơi ngoại tuyến hoặc khi backend tắt thì không gửi.
6. Android
Ứng dụng Android BizOn là Trusted Web Activity mở cùng PWA. Bản hiện tại chỉ khai báo quyền Internet để tải nội dung HTTPS. Ứng dụng không khai báo quyền vị trí, danh bạ, máy ảnh, micro, SMS hoặc tệp nhạy cảm.
7. Lưu giữ và xóa
Dữ liệu local-only do người dùng kiểm soát trên thiết bị. Với dữ liệu gửi lên máy chủ, thời hạn lưu dự kiến: kết quả lớp học 12 tháng (bài nộp vòng game, Brand Passport, Bến Phù Sa); khảo sát 24 tháng; tiến trình lưu tạm của đội 90 ngày kể từ lần cập nhật; nhật ký lỗi kỹ thuật 90 ngày. Quá hạn, dữ liệu được xóa.
Người dùng hoặc giảng viên có thể yêu cầu xóa dữ liệu đã gửi (theo mã lớp, theo email nếu có, hoặc theo bí danh đã nhập) qua email liên hệ ở Mục 10; các pilot có deletion receipt thì xóa bằng mã biên nhận. Nhật ký lỗi kỹ thuật không gắn định danh người dùng nên chỉ tự hết hạn theo thời gian. Các quy trình pilot chưa được xem là production cho đến khi data controller, thời hạn lưu và đầu mối xử lý yêu cầu được công bố.
8. Người học chưa thành niên
BizOn không có quảng cáo hoặc nội dung bạo lực. Việc sử dụng chức năng gửi dữ liệu trong lớp học đối với người học chưa thành niên phải do đơn vị phụ trách tổ chức phù hợp với quy định, sự giám sát và cơ chế đồng ý áp dụng.
9. Tính chất giáo dục
BizOn phục vụ giảng dạy, học tập và nghiên cứu. Các thị trường, sự kiện, chỉ số và khuyến nghị trong mô phỏng có thể là dữ liệu minh họa; không phải tư vấn đầu tư, pháp lý hoặc tài chính.
10. Xóa tài khoản và dữ liệu
Tài khoản. Chỉ Trang Giảng viên của BizOn – Bật Nghiệp (nhà phát triển: Thuy Huong Digital Learning – Đỗ Thùy Hương & Phan Anh Tú) tạo tài khoản (email + mật khẩu, lưu trên Supabase Auth). Người chơi thông thường không có tài khoản.
Cách yêu cầu xóa tài khoản hoặc dữ liệu: gửi email từ địa chỉ đã đăng ký (hoặc nêu mã lớp / tên đội / email đã nhập khi chơi) tới thuyhuongctu@gmail.com với tiêu đề “Xóa tài khoản BizOn” hoặc “Xóa dữ liệu BizOn”. Chúng tôi xác nhận trong 7 ngày và xóa trong tối đa 30 ngày: tài khoản giảng viên (email, mật khẩu băm) và toàn bộ bài nộp, nhật ký thành viên gắn với mã lớp/đội/email nêu trong yêu cầu. Nhật ký lỗi kỹ thuật không gắn định danh nên tự hết hạn sau 90 ngày. Dữ liệu chỉ lưu trên thiết bị do bạn tự xóa (xóa dữ liệu trình duyệt/ứng dụng).
11. Liên hệ
Câu hỏi về quyền riêng tư: patu@ctu.edu.vn · thuyhuongctu@gmail.com.
Lưu ý: Brand Passport Learning Pilot vẫn ở trạng thái Draft và remote submission mặc định tắt cho đến khi xác định data controller và hoàn tất kiểm thử staging.
🇬🇧 English
1. Summary
BizOn is local-first. In normal play, progress and decisions remain on the device. When a user deliberately enters a class code (classroom mode), each round's results are sent automatically at the end of the round to a BizOn-managed database so the instructor can grade; without a class code nothing is sent.
2. Data stored on the device
- Simulation progress, decisions, round outcomes, achievements and a user-selected team name may be stored in browser localStorage.
- Theme, language and PWA installation preferences may be stored locally.
- CSV/JSON exports are downloaded directly to the device; exporting alone does not transmit a copy to BizOn.
3. When classroom data is submitted
A network submission occurs only after a class code has been entered (Bật Nghiệp: automatically at the end of each round) or when the user presses Submit on the Brand Passport, Bến Phù Sa or pilot screens. Possible fields include class code, team name, role, the email entered (if any), simulation score, outcome metrics, scenario seed, decision trace, reflection, application version and submission timestamp. Data is stored on a BizOn-managed Supabase service and transmitted over HTTPS.
Instructors or facilitators access only the relevant class through a key-protected RPC. Anonymous clients are not granted direct read access to classroom tables.
4. What BizOn does not do
- No advertising, no sale of user data and no advertising-profile creation.
- The current Android shell does not request contacts, location, camera or microphone permissions.
- AI does not change scores generated by the deterministic simulation engine.
- The Brand Passport Learning Pilot does not automatically upload reflections before governance approval and user opt-in.
5. Infrastructure providers
The website/PWA is hosted on GitHub Pages, and core fonts and interface assets are self-hosted in the project. GitHub may process connection data such as IP addresses under its own policies. Enabled classroom submission features may use Supabase to store the fields described above.
Technical error logs (diagnostics). To fix bugs and improve stability, when a JavaScript error occurs the app may automatically send a small diagnostic record to BizOn (only when the backend is enabled): the error message, file/source, line and column, stack trace, app version, browser user-agent string, window size and a timestamp. This record contains no legal name, email or phone number, is write-only (not read back to the user) and is used solely for debugging. Nothing is sent when playing offline or when the backend is disabled.
6. Android
The BizOn Android application is a Trusted Web Activity that opens the same PWA. The current build declares Internet access only. It does not declare location, contacts, camera, microphone, SMS or sensitive-file permissions.
7. Retention and deletion
Users control local-only data on their device. For data sent to the server, the planned retention is: classroom results 12 months (round submissions, Brand Passport, Bến Phù Sa); surveys 24 months; team save progress 90 days from last update; technical error logs 90 days. Data is deleted after these windows.
Users or instructors can request deletion of submitted data (by class code, by email where present, or by the alias entered) via the contact in Section 10; pilots that issue a deletion receipt support deletion by that receipt. Technical error logs carry no user identifier and therefore only expire by time. A pilot is not production-ready until the data controller, retention period and request contact are published.
8. Minors
BizOn contains no ads or violent content. Classroom data submission involving minors must be organized by the responsible institution under the applicable supervision and consent requirements.
9. Educational use
BizOn supports teaching, learning and research. Markets, events, metrics and recommendations may be illustrative simulation inputs and are not investment, legal or financial advice.
10. Account and data deletion
Accounts. Only the Instructor page of BizOn – Bật Nghiệp (developer: Thuy Huong Digital Learning – Đỗ Thùy Hương & Phan Anh Tú) creates accounts (email + password, stored in Supabase Auth). Regular players have no account.
How to request deletion of an account or data: email thuyhuongctu@gmail.com from the registered address (or state the class code / team name / email entered in the game) with the subject “Delete BizOn account” or “Delete BizOn data”. We acknowledge within 7 days and delete within 30 days: the instructor account (email, hashed password) and all submissions and member logs linked to the class code / team / email named in the request. Technical error logs carry no identifier and expire after 90 days. Data stored only on your device is deleted by you (clear browser/app data).
11. Contact
Privacy questions: patu@ctu.edu.vn · thuyhuongctu@gmail.com.
Current gate: Brand Passport Learning Pilot remains a Draft and remote submission stays disabled until a data controller is identified and staging validation is complete.
© 2026 Đỗ Thùy Hương & Phan Anh Tú · BizOn