Privacy Policy
Last Updated: March 15, 2025
At rebootapppanel, we take your privacy seriously. This document explains how we collect, use, store, and protect information from individuals who access our educational platform.
We operate under Thailand's Personal Data Protection Act B.E. 2562 (PDPA) and follow international standards where they exceed local requirements. By using our services, you agree to the practices described here.
Information We Collect
Information You Provide Directly
When you interact with our platform, we collect information you share with us voluntarily. This happens when you sign up for courses, contact our support team, or participate in community discussions.
- Account Information: Full name, email address, phone number, and chosen password
- Profile Data: Educational background, career interests, and learning preferences
- Payment Details: Billing address and transaction information (payment card data is processed through secure third-party providers)
- Communication Records: Messages sent through our contact forms or support channels
- Course Activity: Assignment submissions, quiz responses, and participation in discussions
Information Collected Automatically
Our systems gather certain data automatically when you use our website. This helps us understand how people interact with our content and where we can make improvements.
- Device Information: Browser type, operating system, screen resolution, and device identifiers
- Usage Data: Pages visited, time spent on each section, links clicked, and navigation patterns
- Location Data: General geographic location based on IP address (not precise GPS coordinates)
- Technical Data: IP address, browser language preferences, and referring website addresses
How We Use Your Information
We use collected information for specific purposes related to delivering and improving our educational services. Here's what that means in practice:
Purpose | Legal Basis |
---|---|
Providing access to purchased courses and materials | Contract fulfillment |
Processing payments and maintaining transaction records | Contract fulfillment |
Sending course updates and educational content | Legitimate interest |
Responding to support requests and inquiries | Contract fulfillment |
Improving website functionality and user experience | Legitimate interest |
Complying with legal obligations and tax requirements | Legal obligation |
Preventing fraud and maintaining platform security | Legitimate interest |
We analyze how students progress through courses to identify areas where content might be unclear or where additional support might help. This analysis uses aggregated data rather than individual tracking for most purposes.
Data Sharing and Third Parties
We don't sell your personal information. However, running an educational platform requires working with certain service providers who process data on our behalf.
Service Providers We Work With
- Payment Processors: Secure payment handling through certified financial service providers
- Email Services: Course notifications and administrative communications
- Cloud Hosting: Secure storage of course materials and user data
- Analytics Tools: Understanding website usage patterns and improving user experience
- Customer Support: Tools that help us respond to inquiries efficiently
All third-party providers are carefully selected and contractually required to protect your information according to standards that meet or exceed our own policies.
International Data Transfers: Some of our service providers operate servers outside Thailand. When data is transferred internationally, we ensure adequate protection through standard contractual clauses and verified security measures.
Legal Disclosure Requirements
We may disclose personal information when required by Thai law, court orders, or government requests. This includes cooperation with law enforcement when legally obligated and responding to legitimate legal processes.
Your Rights and Choices
Under Thailand's PDPA, you have specific rights regarding your personal data. We've built systems to make exercising these rights straightforward.
Access and Portability
You can request a copy of all personal information we hold about you. We'll provide this in a commonly used electronic format within 30 days. This includes account details, course progress, and communication history.
Correction and Updates
You can update most information directly through your account settings. For data you can't modify yourself, contact us at [email protected] and we'll make corrections within 15 business days after verifying your identity.
Data Deletion
You can request deletion of your account and associated personal data. Some information must be retained for legal compliance (such as financial records for tax purposes), but we'll delete everything else within 45 days of verification.
Important Note: After account deletion, you'll lose access to purchased courses and any certificates earned. We recommend downloading materials you want to keep before requesting deletion.
Marketing Communications
You control whether you receive promotional emails about new courses or special offers. Unsubscribe links appear in every marketing message. You'll still receive essential communications about courses you've enrolled in and important account updates.
How to Exercise Your Rights
Send requests to [email protected] with the subject line "Privacy Rights Request." We'll respond within 7 business days to confirm receipt and may ask for identity verification before processing sensitive requests.
Data Security Measures
Protecting your information involves multiple layers of technical and organizational safeguards. While no system is completely immune to security risks, we've implemented industry-standard protections.
- Encryption: All data transmitted between your device and our servers uses TLS encryption. Sensitive stored data is encrypted at rest.
- Access Controls: Staff access to personal data is limited based on job requirements and monitored through audit logs.
- Regular Testing: Security assessments and vulnerability scans occur quarterly, with immediate action on identified issues.
- Secure Development: Our engineering team follows secure coding practices and conducts code reviews before deployment.
- Incident Response: We maintain a documented plan for responding to potential data breaches, including notification procedures.
If a security incident affects your personal data, we'll notify you within 72 hours of discovery and explain what happened and what steps we're taking.
Data Retention Periods
We keep different types of information for varying lengths of time based on legal requirements and legitimate business needs.
- Active Account Data: Retained while your account remains active and for 24 months after last login
- Course Progress Records: Kept for 5 years after course completion to support certificate verification
- Financial Records: Maintained for 7 years as required by Thai tax regulations
- Support Communications: Archived for 3 years to maintain service quality and resolve disputes
- Marketing Data: Removed within 90 days after unsubscribe request
- Website Analytics: Aggregated and anonymized after 26 months
When retention periods expire, we securely delete or anonymize data so it can no longer identify individuals.
Cookies and Tracking Technologies
Our website uses cookies and similar technologies to function properly and improve your experience. You control how these are used through browser settings.
Types of Cookies We Use
- Essential Cookies: Required for basic site functionality like maintaining your login session and remembering items in your course cart. These cannot be disabled without breaking core features.
- Functional Cookies: Remember your preferences such as language selection and video playback settings. The site works without these but your experience may be less personalized.
- Analytics Cookies: Help us understand which pages are popular, how long people spend on different sections, and where users encounter difficulties. We use this to prioritize improvements.
- Performance Cookies: Monitor site speed and identify technical issues affecting user experience.
Most browsers allow you to refuse cookies or alert you when cookies are being sent. However, some features may not work properly if you disable essential cookies.
Children's Privacy
Our platform is designed for adults seeking business finance education. We don't knowingly collect information from individuals under 18 years old without verified parental consent.
If you believe someone under 18 has provided personal information without proper authorization, contact us immediately at [email protected]. We'll investigate and delete such information within 5 business days.
For students aged 16-17 in Thailand, we require documented parental consent before creating an account. This consent must be verified through our age verification process.
Changes to This Policy
We review and update this privacy policy periodically to reflect changes in our practices, technology, legal requirements, or business operations. Significant changes will be communicated through email and a prominent notice on our website.
The "Last Updated" date at the top indicates when the most recent changes took effect. Continued use of our services after policy updates constitutes acceptance of the revised terms.
For substantial changes affecting how we use personal data, we may request explicit consent before applying new practices to existing user information.
Complaints and Regulatory Contact
If you believe we've mishandled your personal data or violated your privacy rights, please contact us first so we can address your concerns directly. Most issues can be resolved through discussion.
If you're unsatisfied with our response, you have the right to file a complaint with Thailand's Personal Data Protection Committee (PDPC). They investigate privacy violations and can order corrective actions.
PDPC Contact Information:
Office of the Personal Data Protection Committee
Ministry of Digital Economy and Society
Bangkok, Thailand
Questions About This Policy?
We're here to answer privacy questions and help you
exercise your rights.
Email:
[email protected]
Phone:
+66 2 945 5660
Mail:
124/2 Soi Sripinit, Thahan Road, Mueang District
Udon Thani 41000, Thailand