Privacy Policy
Last Updated: March 15, 2025
At Energize Intelligence, we take your privacy seriously. This policy explains how we collect, use, and protect your personal information when you interact with our financial forecasting and budgeting platform.
We operate in compliance with Thailand's Personal Data Protection Act (PDPA) B.E. 2562 and international privacy standards. If something isn't clear here, just reach out and we'll explain it in plain terms.
Information We Collect
Running a financial platform means we need certain information to provide our services effectively. Here's what we gather and why it matters.
Account Information
When you sign up, we collect basic details like your name, email address, phone number, and business information. This helps us create your account and communicate with you about our services. We also store your password securely using industry-standard encryption.
Financial Data
Our platform works with your financial information to provide forecasting and budgeting tools. This includes transaction data, budget parameters, financial goals, and historical financial records you choose to input. We never access your bank accounts directly unless you explicitly grant permission through secure third-party integrations.
Usage Information
We track how you use our platform to improve the experience. This includes pages you visit, features you use, time spent on different sections, and error reports. We also collect technical information like your IP address, browser type, device information, and operating system.
Communication Data
When you contact our support team or participate in surveys, we keep records of those interactions. This helps us provide better support and understand what you need from our platform.
How We Use Your Information
We're not in the business of selling your data. Everything we collect serves a specific purpose related to providing and improving our services.
- Delivering our financial forecasting and budgeting tools to you
- Processing your transactions and maintaining your account
- Sending important updates about your account or our services
- Providing customer support when you need help
- Improving our platform based on how people actually use it
- Detecting and preventing fraud or security issues
- Complying with legal obligations and regulatory requirements
- Developing new features that address real user needs
Marketing Communications: We'll occasionally send you information about new features or educational content related to financial management. You can opt out of these messages anytime through your account settings or by clicking the unsubscribe link in any email.
Legal Basis for Processing
Under Thailand's PDPA, we need legitimate reasons to process your personal data. Here's our legal foundation:
- Contractual Necessity: Processing your data is essential to provide the services you signed up for
- Consent: You've given explicit permission for specific processing activities
- Legal Obligations: We must process certain data to comply with financial regulations and tax laws
- Legitimate Interests: We process data to improve our services, prevent fraud, and maintain platform security
Data Sharing and Third Parties
We don't sell your personal information to anyone. Period. But we do work with certain trusted partners to deliver our services effectively.
Service Providers
We use third-party companies for cloud hosting, payment processing, email delivery, analytics tools, and customer support software. These providers only access the information necessary to perform their specific functions and are contractually obligated to protect your data.
Financial Institutions
If you connect your bank accounts to our platform, we use secure third-party services to access that information. These connections are encrypted and you can revoke access anytime through your account settings.
Legal Requirements
We may disclose your information if required by Thai law, court orders, or government regulations. We'll notify you about such requests unless legally prohibited from doing so.
Business Transfers
If Energize Intelligence merges with another company or undergoes acquisition, your information may be transferred as part of that transaction. We'll notify you before your data becomes subject to a different privacy policy.
Data Retention
We don't keep your information forever. Here's how long we typically retain different types of data:
Data Type | Retention Period |
---|---|
Account Information | Duration of account plus 7 years for financial records |
Financial Data | 7 years after account closure (Thai tax law requirement) |
Usage Logs | 24 months from collection date |
Support Communications | 3 years after last interaction |
Marketing Data | Until you opt out or 2 years of inactivity |
After these periods, we securely delete or anonymize your information. Some data may be retained longer if required by law or for legitimate business purposes like fraud prevention.
Your Privacy Rights
Under Thailand's PDPA, you have several rights regarding your personal data. We've made it straightforward to exercise these rights.
Access Your Data
You can request a copy of all personal information we hold about you. We'll provide this in a readable format within 30 days. Log into your account or email [email protected] to request your data.
Correct Inaccurate Information
If any information we have is wrong or outdated, you can update it directly through your account settings. For information you can't change yourself, contact our support team.
Delete Your Data
You can request deletion of your account and associated data anytime. Keep in mind we may need to retain certain financial records for 7 years under Thai law, but we'll anonymize this data where possible.
Restrict Processing
You can ask us to limit how we use your data in certain situations, such as while we verify the accuracy of information you've disputed.
Data Portability
You have the right to receive your data in a common machine-readable format and transfer it to another service provider if you choose.
Withdraw Consent
For any processing based on your consent, you can withdraw that consent anytime. This won't affect the lawfulness of processing that occurred before you withdrew consent.
Object to Processing
You can object to processing based on legitimate interests. We'll stop unless we have compelling legitimate grounds that override your interests.
How to Exercise Your Rights: Email [email protected] with your request. We'll verify your identity and respond within 30 days. There's no charge for most requests, though we may charge a reasonable fee for repetitive or excessive requests.
Security Measures
Protecting your financial information is our top priority. We use multiple layers of security to keep your data safe.
Encryption
All data transmitted between your device and our servers uses TLS 1.3 encryption. Sensitive information stored in our databases is encrypted using AES-256 encryption. Your passwords are hashed using bcrypt with individual salts.
Access Controls
Only authorized employees can access user data, and only when necessary for their job functions. We use role-based access controls and require two-factor authentication for all internal systems.
Infrastructure Security
Our servers are hosted in secure data centers with 24/7 monitoring, regular security audits, and automatic security updates. We conduct penetration testing quarterly to identify and address potential vulnerabilities.
Monitoring and Response
We monitor our systems continuously for suspicious activity. If we detect a security incident that affects your data, we'll notify you within 72 hours and explain what happened and what we're doing about it.
Despite our security measures, no system is completely secure. If you notice any suspicious activity on your account, contact us immediately at [email protected].
International Data Transfers
Your data is primarily stored on servers located in Thailand. However, some of our service providers operate globally, which may involve transferring your data to other countries.
When we transfer data internationally, we ensure appropriate safeguards are in place through standard contractual clauses, adequacy decisions, or other legally approved mechanisms. Countries receiving data transfers include Singapore, Japan, and the European Union, all of which maintain strong data protection standards.
Cookies and Tracking
We use cookies and similar technologies to make our platform work properly and understand how you use it.
Essential Cookies
These are necessary for basic functions like keeping you logged in and remembering your preferences. You can't disable these without breaking the platform's functionality.
Analytics Cookies
We use these to understand how people use our platform so we can improve it. This includes tracking which features get used most, where people encounter problems, and how long tasks take.
Managing Cookies
You can control cookie preferences through your account settings. Most browsers also let you block or delete cookies, though this may affect your experience on our platform.
Children's Privacy
Our services are designed for adults and businesses. We don't knowingly collect information from anyone under 18 years old. If you're a parent and believe your child has provided us with personal information, contact us immediately and we'll delete it.
Changes to This Policy
We update this privacy policy occasionally to reflect changes in our practices or legal requirements. When we make significant changes, we'll notify you by email and display a prominent notice on our platform.
The "Last Updated" date at the top shows when we last modified this policy. We encourage you to review it periodically, especially before providing any new personal information.
Continuing to use our services after policy changes take effect means you accept those changes. If you don't agree with the updated policy, you can close your account.
Thai PDPA Compliance
As a company operating in Thailand, we comply fully with the Personal Data Protection Act B.E. 2562. This includes:
- Obtaining proper consent before collecting and processing personal data
- Providing clear information about data collection purposes
- Maintaining data security standards required by the PDPA
- Respecting data subject rights under Thai law
- Notifying the Personal Data Protection Committee of serious data breaches
- Maintaining proper documentation of our data processing activities
If you have concerns about how we handle your personal data under the PDPA, you can file a complaint with Thailand's Personal Data Protection Committee through their official channels.