Privacy Policy

Last Updated: January 15, 2025

At FocusNeofyHub, we understand that trusting someone with your financial data isn't something you do lightly. This policy explains how we collect, use, and protect your information when you use our investment analysis platform.

We operate in compliance with Thailand's Personal Data Protection Act (PDPA) B.E. 2562 (2019) and international data protection standards. Our physical location at Condo Muang Thong Thani P2, Pak Kret District, Nonthaburi 11120, Thailand serves as our registered business address.

Information We Collect

We collect different types of information depending on how you interact with our platform. Some data you provide directly, while other information is gathered automatically through your use of our services.

Account Registration Data

When you create an account, we need basic identification details to set up your profile and ensure platform security. This includes your full name, email address, phone number, and a secure password you create. If you're accessing premium features, we also collect billing information and company details if applicable.

Investment Analysis Information

To provide personalized investment insights, we gather data about your investment preferences, risk tolerance levels, portfolio composition, and historical transaction patterns. This information helps our algorithms generate relevant analysis and recommendations tailored to your financial goals.

Technical and Usage Data

Our systems automatically log technical information when you access our platform. This includes IP addresses, browser type and version, device identifiers, operating system details, page views, feature usage patterns, and timestamps of your activities. We use this data to improve platform performance and user experience.

How We Use Your Information

Your data serves specific purposes that directly benefit your experience on our platform. We're pretty transparent about what happens with the information you share.

  • Delivering core investment analysis services and generating personalized market insights based on your preferences
  • Processing your webinar registrations and sending educational content you've subscribed to receive
  • Maintaining platform security by monitoring for suspicious activities and preventing unauthorized access
  • Improving our algorithms and analytics tools based on aggregated usage patterns
  • Communicating important updates about your account, platform changes, or service announcements
  • Providing customer support when you reach out through our help channels
  • Complying with legal obligations under Thai financial regulations and international standards
  • Conducting internal research to develop new features that enhance user experience

We never sell your personal information to third parties. Your financial data remains confidential and is used exclusively for the purposes you've authorized.

Data Sharing and Third Parties

While we keep most of your information in-house, certain situations require us to share limited data with trusted partners. Here's when and why that happens.

Partner Type Data Shared Purpose
Payment Processors Billing details, transaction amounts Processing subscription payments and handling refunds
Cloud Infrastructure Platform usage data, account information Hosting services and data storage operations
Email Service Providers Email addresses, communication preferences Delivering newsletters, notifications, and support messages
Analytics Tools Anonymized usage statistics Understanding platform performance and user behavior trends
Security Services IP addresses, access logs Protecting against cyber threats and fraudulent activities

All third-party partners sign confidentiality agreements and must comply with data protection standards equivalent to what we maintain internally. They can only access information necessary for their specific services and are prohibited from using your data for their own purposes.

Your Privacy Rights

Under Thailand's PDPA and international privacy frameworks, you have substantial control over your personal information. These aren't just theoretical rights – we've built actual processes to honor them.

Access Your Data

Request a complete copy of all personal information we hold about you. We'll provide this in a readable format within 30 days of your request.

Correct Inaccuracies

Update or fix any incorrect information in your profile. Most details can be edited directly through your account settings dashboard.

Delete Your Information

Request permanent deletion of your account and associated data. Some information may be retained for legal compliance, but we'll remove everything else.

Restrict Processing

Limit how we use certain types of your data while keeping your account active. This is useful if you're disputing data accuracy or need temporary restrictions.

Data Portability

Receive your data in a structured, machine-readable format that you can transfer to another service provider if you choose to leave our platform.

Object to Processing

Refuse specific uses of your information, particularly for marketing purposes or analytics that aren't essential to core service delivery.

How to Exercise Your Rights

Send your request to [email protected] with "Privacy Rights Request" in the subject line. Include your full name, account email, and specific action you want us to take. We'll verify your identity and respond within 30 days. For urgent matters, call us at +66 32 361 293 during business hours.

Data Security Measures

Financial data requires serious protection. We've implemented multiple security layers to guard against unauthorized access, data breaches, and cyber threats.

  • End-to-end encryption for all data transmission using industry-standard TLS protocols
  • Encrypted storage of sensitive information using AES-256 encryption algorithms
  • Multi-factor authentication options to strengthen account access security
  • Regular security audits conducted by independent cybersecurity firms
  • Firewall protection and intrusion detection systems monitoring network traffic
  • Employee access controls limiting data exposure to authorized personnel only
  • Automated backup systems ensuring data recovery capabilities if needed
  • Secure development practices following OWASP security guidelines

Despite our best efforts, no online system is completely immune to security risks. If we detect any breach affecting your data, we'll notify you within 72 hours and provide clear information about what happened and steps you should take.

Data Retention and Deletion

We don't keep your information forever. Different data types have different retention periods based on legal requirements and practical necessity.

Data Category Retention Period Reason for Retention
Account Information Duration of active account plus 90 days Service delivery and account recovery window
Transaction Records 7 years from transaction date Thai tax law and financial regulation compliance
Usage Analytics 2 years from collection Platform improvement and trend analysis
Communication Logs 3 years from last contact Customer support quality and dispute resolution
Marketing Preferences Until opt-out or account deletion Respecting communication choices

When retention periods expire, we permanently delete data using secure deletion methods that prevent recovery. For account closures, you can request immediate deletion of non-legally-required data.

Cookies and Tracking Technologies

Like most modern platforms, we use cookies and similar technologies to make our service work properly and improve your experience. You have control over many of these.

Essential Cookies

These are necessary for basic platform functionality. They handle your login sessions, security features, and core navigation. You can't disable these without breaking fundamental features, but they don't track you for marketing purposes.

Performance Cookies

These help us understand how people use different features so we can identify bugs and improve performance. All data is aggregated and anonymized – we see general trends, not individual behavior.

Preference Cookies

These remember your settings like language preferences, display options, and notification choices. They make your experience more personalized without requiring you to reconfigure things every visit.

You can manage cookie preferences through your browser settings or our cookie preference center accessible from your account dashboard. Disabling non-essential cookies may limit some platform features but won't prevent you from using core investment analysis tools.

International Data Transfers

Our primary servers are located in Thailand, but some of our service providers operate infrastructure in other countries. When data crosses borders, we ensure it remains protected.

We only transfer data to countries with adequate data protection standards or use contractual safeguards like Standard Contractual Clauses approved by relevant authorities. Our cloud providers maintain facilities in multiple regions, but all are bound by strict security requirements matching Thai PDPA standards.

If you're accessing our platform from outside Thailand, your data may be transferred to and processed in Thailand where our main operations are based. By using our services, you consent to this transfer under the protections described in this policy.

Children's Privacy

Our investment analysis platform is designed for adults who can make informed financial decisions. We don't knowingly collect information from individuals under 18 years old.

If we discover that someone under 18 has created an account, we'll immediately delete their information and terminate the account. Parents or guardians who believe their child has provided us with personal information should contact us at [email protected], and we'll address it promptly.

Changes to This Policy

Privacy regulations evolve, and our services change over time. When we update this policy, we'll notify you through email and display a prominent notice on our platform for at least 30 days.

Significant changes that affect how we handle your data will require your explicit consent before taking effect. Minor clarifications or updates that don't materially change our practices will be noted in the revision history at the bottom of this document.

We recommend reviewing this policy periodically, especially before sharing new types of information with us. The "Last Updated" date at the top shows when the most recent changes were made.

Regulatory Compliance

As a financial services platform operating in Thailand, we comply with multiple regulatory frameworks beyond just data protection laws.

  • Personal Data Protection Act (PDPA) B.E. 2562 (2019) governing how Thai businesses handle personal data
  • Electronic Transactions Act B.E. 2544 (2001) regulating digital commerce and communications
  • Securities and Exchange Commission regulations for investment-related services
  • Anti-Money Laundering requirements mandating customer identification procedures
  • Bank of Thailand guidelines for financial data handling where applicable

We maintain documentation of our compliance efforts and cooperate with regulatory audits when required. Our legal team monitors changes in applicable laws and updates our practices accordingly.

Questions About Your Privacy?

If anything in this policy is unclear or you have specific concerns about how we handle your data, we're here to help. Our privacy team responds to inquiries within two business days.

  • Email: [email protected]
  • Phone: +66 32 361 293 (Monday-Friday, 9:00-17:00 ICT)
  • Mail: FocusNeofyHub Privacy Office, Condo Muang Thong Thani P2, Pak Kret District, Nonthaburi 11120, Thailand