Privacy Policy

For Partners and External Service Providers

CIPHER Co., Ltd.

CIPHER Co., Ltd. (the “Company”) is committed to protecting the privacy of all Partners and external service providers. This Privacy Policy explains how we collect, use, and protect your personal data throughout our business relationship.

1. Information We Collect

1.1 Contact Person Information

  • Full name
  • Job title
  • Email address
  • Telephone number
  • LINE ID or other contact information

1.2 Organization Information

  • Company/Organization name
  • Office address
  • Tax identification number
  • Company registration information

1.3 Business Relationship Information

  • Contracts and agreements
  • Quotations and financial documents
  • Performance evaluation records
  • Correspondence and meeting records

2. Purposes of Data Processing

We collect and use your personal data for the following purposes:

  • Managing business relationships (Vendor Management)
  • Fulfilling contractual obligations, including procurement and payment processing
  • Evaluating and selecting service providers (Supplier Evaluation)
  • Communicating and coordinating business activities
  • Maintaining system and information security
  • Complying with applicable laws and regulations

3. Disclosure of Personal Data

We may disclose your personal data to the following parties:

  • Relevant internal departments of the Company, including Procurement, Finance, and IT
  • Government authorities, where required by law
  • Auditors
  • Cloud service providers used by the Company, such as Google Workspace and ClickUp

We will not sell or disclose your personal data to third parties without your consent, except as required by law.

4. Data Protection

We implement appropriate security measures to protect your personal data, including:

  • Data encryption
  • Access controls based on a need-to-know basis
  • Regular data backups
  • Security assessments of service providers

5. Your Rights

You have the following rights regarding your personal data:

  • Right of Access: Request access to and obtain copies of your personal data.
  • Right to Rectification: Request corrections to inaccurate or outdated personal data.
  • Right to Erasure: Request the deletion of your personal data upon termination of the business relationship, provided that no legal obligations require its continued retention.
  • Right to Restriction of Processing: Request restrictions on the processing of your personal data.
  • Right to Object: Object to the collection, use, or disclosure of your personal data.
  • Right to Withdraw Consent: Withdraw your consent where consent has previously been provided.
  • Right to Lodge a Complaint: File a complaint with the Office of the Personal Data Protection Committee (PDPC).

6. Data Retention Period

We will retain your personal data for the following periods:

  • Throughout the duration of our business relationship.
  • For at least five (5) years following the termination or expiration of the contract, in accordance with applicable accounting and tax laws.
  • For a longer period where necessary due to legal disputes or specific legal requirements.

7. Amendments to This Privacy Policy

We may update this Privacy Policy from time to time. In the event of any material changes, we will notify you in advance via email or other established business communication channels.

8. Contact Information

If you have any questions regarding this Privacy Policy or wish to exercise your rights concerning your personal data, please contact:

Tasamaporn Suksawat/Administrative & HR
Email: Tasamaporn.s@cipher.co.th
Address: CIPHER Co., Ltd. 99/103 Nantawan-Suvarnabhumi Village, Racha Thewa, Bang Phli, Samut Prakan 10540, Thailand

Shopping Cart
Scroll to Top