Privacy Policy

How we handle your information at SiteXNotely

Last Updated: January 2025

Look, privacy matters. And we're not just saying that because it's what everyone expects to hear. At SiteXNotely, we actually think about this stuff because we handle investment data — information that matters to your financial decisions.

This policy explains what we collect, why we need it, and what we do with it. No legal jargon marathons. Just straightforward answers about how your data moves through our systems.

Thailand Market Operations

We operate in Thailand and follow the Personal Data Protection Act (PDPA) that came into full effect in 2022. Our servers are located in secure facilities, and we work with Thailand-based payment processors and service providers who meet local compliance standards. If you're accessing our services from Thailand, your data is handled according to these regulations.

1 What Information We Collect

When you use SiteXNotely for investment analysis, we collect different types of data depending on how you interact with our platform. Some of it you give us directly, other bits come from how you use the service.

Account Information

  • Your name and email address when you sign up
  • Payment details processed through our Thailand-compliant payment partners
  • Profile preferences like notification settings and analysis categories you follow
  • Investment interests and portfolio preferences you choose to share

Usage Data

  • Which analysis reports you access and when
  • Search queries within our investment database
  • Time spent on different sections of the platform
  • Device information including browser type and operating system
  • IP addresses for security and regional service optimization

Financial Research Data

If you use our portfolio tracking features, we collect information about securities you're monitoring. This stays in your account and isn't shared with other users. We aggregate anonymized patterns from all users to improve our market analysis models, but individual positions remain private.

2 How We Use Your Information

The data we collect serves specific purposes. We're not in the business of collecting information just because we can — each piece has a job to do.

Data Type Primary Use Legal Basis
Account credentials Service access and authentication Contract performance
Payment information Subscription processing and billing Contract performance
Usage patterns Service improvement and personalization Legitimate interest
Investment preferences Customized analysis and recommendations Contract performance
Communication data Customer support and service updates Contract performance

We send analysis updates and market insights based on your selected preferences. You can adjust these anytime through your account settings or unsubscribe from specific types of communications while keeping your account active.

3 Data Storage and Security

Your data lives on secure servers maintained by our hosting provider in Thailand. We use industry-standard encryption for data transmission — that's the HTTPS you see in your browser. Stored data gets encrypted too, especially anything payment-related.

Our team can't see your password. It's hashed using modern algorithms before storage. Payment card numbers never touch our servers — they go directly to our PCI-compliant payment processor.

Security Measures in Place

  • SSL/TLS encryption for all data transfers between your device and our servers
  • Regular security audits conducted quarterly by third-party specialists
  • Two-factor authentication available for all accounts
  • Automated backup systems with 30-day retention for disaster recovery
  • Access controls limiting which team members can view different data types
  • Monitoring systems that alert us to suspicious access patterns

Nothing's completely bulletproof. If we detect a breach that affects your data, we'll notify you within 72 hours as required by Thailand's PDPA, along with details about what happened and what we're doing about it.

4 Who We Share Data With

We don't sell your information to advertisers or data brokers. But running a service means working with other companies who need access to certain data to do their jobs.

Service Providers

Payment processors handle subscription payments. Cloud hosting providers store our data. Email service providers send our communications. Analytics platforms help us understand how people use the service. Each of these partners has contractual obligations to protect your data and use it only for the specific services we've hired them for.

Market Data Providers

We partner with financial data companies to provide real-time market information and historical analysis. When you access this data through our platform, we might share limited usage information with these providers for licensing compliance. They don't receive personally identifiable details about individual users.

Legal Requirements

Sometimes we're legally required to share information — court orders, regulatory investigations, that sort of thing. When this happens, we verify the request's legitimacy and provide only what's specifically required. We notify affected users unless prohibited by law.

5 Your Privacy Rights

Under Thailand's PDPA and general data protection principles, you have specific rights regarding your personal information. These aren't just theoretical — we've built tools to help you exercise them.

Access Your Data

Request a complete copy of the personal information we hold about you. We'll provide this in a readable format within 30 days.

Correct Inaccuracies

If something's wrong in your profile or account data, you can update it directly through account settings or ask us to correct it.

Delete Your Account

Request complete deletion of your account and associated data. We'll remove everything except what we're legally required to retain for tax or compliance purposes.

Export Your Information

Download your data in a portable format if you want to move to another service or keep a personal backup.

Restrict Processing

Limit how we use certain types of your data while still maintaining your account access and core services.

Object to Use

Opt out of data processing for specific purposes like marketing communications or certain types of analysis.

To exercise any of these rights, contact us at [email protected] with your account email. We'll verify your identity and process most requests within 30 days. Some requests might take longer if they're complex or involve large amounts of data.

6 Data Retention Periods

We keep different types of data for different lengths of time based on why we collected it in the first place.

Active Account Data

While your subscription is active, we retain all your account information, preferences, and usage history. This lets us provide consistent service and improve your experience over time.

Canceled Accounts

After you cancel, we keep your data for 90 days in case you change your mind and want to reactivate. After that, we delete personal information but might retain anonymized usage patterns for service improvement.

Financial Records

Thailand tax law requires us to keep billing and payment records for seven years. These are stored separately from your active account data with restricted access.

Support Communications

We keep customer support emails and chat logs for two years to help with ongoing service issues and quality improvement. These are deleted automatically after that period.

7 Cookies and Tracking

Our site uses cookies — small text files stored in your browser that help us recognize you and remember your preferences. Some are essential for basic functionality. Others help us understand how people use the service.

Essential Cookies

These keep you logged in, remember your language preference, and maintain your session security. The site won't work properly without them.

Analytics Cookies

We use these to see which features get used most, where people spend time, and where they run into problems. This helps us prioritize improvements. You can opt out of these through your account settings.

Preference Cookies

These remember your dashboard layout, favorite analysis types, and other customization choices so you don't have to set them up every visit.

Most browsers let you control cookies through their settings. Blocking essential cookies will break site functionality, but you can safely block the analytics ones if you prefer.

8 International Data Transfers

Our primary infrastructure operates in Thailand, but some service providers we work with have servers in other countries. When data moves internationally, we ensure appropriate safeguards are in place.

For services outside Thailand, we use providers that maintain data protection standards comparable to Thailand's PDPA requirements. This usually means they're based in jurisdictions with adequate data protection laws or we've established specific contractual protections.

If you're accessing SiteXNotely from outside Thailand, your data will be processed on servers in Thailand according to local laws and this privacy policy.

9 Children's Privacy

SiteXNotely is designed for adults making investment decisions. We don't knowingly collect information from anyone under 18 years old. If you're a parent and discover your child has created an account, contact us and we'll delete it immediately.

Our content assumes a certain level of financial knowledge and deals with real money decisions. It's not appropriate for children, and we've designed our registration process to prevent underage signups.

10 Changes to This Policy

Privacy practices evolve as technology and regulations change. When we update this policy, we'll post the new version here with a revised date at the top.

For minor clarifications or administrative changes, we'll just update the document. If we make significant changes that affect how we handle your data — like collecting new types of information or sharing data in new ways — we'll email active users at least 30 days before the changes take effect.

Continuing to use the service after changes take effect means you accept the updated policy. If you disagree with changes, you can close your account before they become active.

Privacy Questions?

If something in this policy isn't clear or you have specific questions about how we handle your data, reach out. We'd rather answer questions than leave people uncertain about their privacy.

Phone: +66 2 673 6233
Address: DanceSociety, Nonthaburi 11000, Thailand

We typically respond to privacy inquiries within three business days. For formal data access or deletion requests under PDPA, we have 30 days to respond but usually handle them faster.