Privacy Policy
Last Updated: January 15, 2025
Introduction
At Radiantlightwave, we understand that your privacy matters. This policy explains how we handle your personal information when you use our API and integration testing services. We've written this in plain language because privacy policies shouldn't require a law degree to understand.
Our approach is straightforward: we collect only what we need to provide excellent service, we protect it carefully, and we're transparent about how we use it. This policy complies with Thailand's Personal Data Protection Act (PDPA) and international privacy standards.
Information We Collect
Information You Provide Directly
When you work with us, you might share:
- Contact details like your name, email, and phone number when you reach out for services
- Company information including business name, address, and industry details
- Project specifications and technical requirements for your API testing needs
- Payment information processed securely through our approved payment processors
- Communication records from emails, calls, and meetings about your projects
Information We Collect Automatically
Our website and services automatically gather some technical information:
- Basic usage data like which pages you visit and how long you stay
- Technical information including IP address, browser type, and device characteristics
- Performance metrics from API testing activities (anonymized where possible)
- Error logs and system diagnostics to improve our services
What We Don't Collect
We don't use tracking cookies for advertising purposes, and we don't collect sensitive personal information unless it's directly relevant to providing our testing services. We also don't share your technical data with third-party marketers.
How We Use Your Information
Your information helps us deliver better API and integration testing services. Here's how we use it:
| Purpose | Information Used | Legal Basis |
|---|---|---|
| Providing testing services | Contact info, project specs, technical data | Contract performance |
| Customer support | Contact details, communication history | Contract performance |
| Service improvement | Usage patterns, performance metrics | Legitimate interest |
| Legal compliance | All relevant information | Legal obligation |
We don't use your personal information for automated decision-making that would significantly affect you. Any analysis we do is to improve our services, not to make judgments about individuals.
Information Sharing and Disclosure
When We Share Information
We keep your information private, but there are specific situations where we might need to share it:
- With trusted service providers who help us deliver our services (cloud hosting, payment processing)
- When required by Thai law or valid legal processes
- To protect our rights, property, or safety, or that of our clients
- With your explicit consent for specific purposes
Third-Party Service Providers
We work with carefully selected partners who meet our security standards:
- Cloud infrastructure providers for secure data storage
- Payment processors for handling billing (they never see your full payment details)
- Communication tools for customer support
- Analytics services for improving our website performance
What We Never Do
We never sell your personal information to marketers, data brokers, or advertisers. We don't share your project details with competitors, and we don't use your information for purposes unrelated to our testing services.
Data Security and Protection
Protecting your information is something we take seriously. Our security measures include:
Technical Safeguards
- Encryption of data both in transit and at rest using industry-standard protocols
- Regular security audits and penetration testing of our systems
- Multi-factor authentication for all team member accounts
- Secure API endpoints with proper authentication and authorization
- Regular software updates and security patches
Organizational Measures
- Staff training on data protection and privacy best practices
- Access controls ensuring team members only see information they need
- Incident response procedures for handling any potential security issues
- Regular backups stored securely and tested for integrity
While we implement strong security measures, no system is completely foolproof. We continuously monitor and improve our security practices to stay ahead of potential threats.
Your Privacy Rights
Under Thai law and our commitment to privacy, you have several important rights regarding your personal information:
Access and Portability
- Request a copy of the personal information we hold about you
- Get your data in a commonly used, machine-readable format
- Transfer your information to another service provider
Correction and Control
- Update or correct inaccurate personal information
- Restrict how we process your information in certain circumstances
- Object to processing based on legitimate interests
Deletion Rights
- Request deletion of your personal information when it's no longer needed
- Withdraw consent for processing where consent was the legal basis
- Request erasure if the information was unlawfully processed
Exercising Your Rights
To exercise any of these rights, simply contact us using the information below. We'll respond within 30 days and help you understand any limitations that might apply based on our legal obligations or legitimate business needs.
Data Retention and Deletion
We don't keep your information forever. Our retention practices are based on business necessity and legal requirements:
Active Client Data
- Contact and project information: Kept while you're an active client plus 3 years
- Communication records: Retained for 5 years for business continuity
- Technical testing data: Usually deleted after project completion unless needed for ongoing support
Financial and Legal Records
- Payment information: Kept for 7 years as required by Thai accounting law
- Contracts and agreements: Retained for the contract period plus 7 years
- Legal compliance records: Kept as long as legally required
When we delete information, we do it securely and completely. For cloud-stored data, we ensure deletion across all backup systems and verify the process was successful.
International Data Transfers
Our primary operations are based in Thailand, but we sometimes use international services for specific business needs:
When Transfers Occur
- Cloud storage services with data centers in Singapore and Japan
- Communication tools with servers in secure international locations
- Payment processing through globally recognized secure platforms
Protection Measures
When we transfer data internationally, we ensure protection through:
- Contracts requiring the same level of protection as Thai law provides
- Choosing providers with strong international privacy certifications
- Regular reviews of our international partners' security practices
- Limiting transfers to what's necessary for service delivery
Cookies and Tracking
Our website uses a minimal approach to cookies and tracking:
Essential Cookies
- Session cookies to keep you logged in during your visit
- Security cookies to protect against cross-site request forgery
- Preference cookies to remember your language and display settings
Analytics
We use basic analytics to understand how our website performs, but we:
- Anonymize IP addresses so individuals can't be identified
- Don't track users across other websites
- Focus on aggregate patterns rather than individual behavior
- Allow you to opt out of analytics tracking if you prefer
Changes to This Policy
Privacy practices evolve, and we may update this policy to reflect changes in our services or legal requirements. When we make significant changes:
- We'll notify active clients by email at least 30 days before changes take effect
- We'll post the updated policy on our website with a clear "last updated" date
- We'll explain what changed and how it might affect you
- We'll give you options if the changes affect how we handle your existing information
We encourage you to review this policy periodically. Continued use of our services after changes indicates acceptance of the updated policy.
Contact Us About Privacy
Questions about this policy or how we handle your information? We're here to help.
We'll respond to privacy inquiries within 5 business days. For urgent privacy matters, please call us directly.