General Information

This Privacy Policy describes how goblogit collects, uses, discloses and protects personal data in connection with legal services offered to entrepreneurs and small businesses. goblogit operates from 40, Thanon Ratchadamnoen Klang, Phra Nakhon Sub District, Bangkok District, Bangkok 10200, Thailand and is registered under Business ID 7116391073691. The policy applies to visitors and clients who use goblogit's website at goblogit.digital and to persons who engage goblogit for advisory or contractual legal services. The policy explains the types of data processed, purposes of processing, legal bases where applicable, data sharing practices, retention periods and the rights available to data subjects.

2026-04-15 goblogit [email protected]

Definitions

The following definitions clarify key terms used in this policy. Understanding these terms helps explain what data we handle and how we refer to individuals and services throughout this document.

Personal data means any information relating to an identified or identifiable natural person, such as name, contact details, identification numbers, business registration details, or other information that can be linked to an individual.
Processing means any operation or set of operations performed on personal data, including collection, recording, storage, use, disclosure, transmission, erasure and destruction.
User means any visitor to goblogit.digital or any client, prospective client or other individual who provides information to goblogit in the course of seeking or receiving legal services.
Service refers to legal advisory, contract review, company formation support, compliance reviews and related professional services provided to entrepreneurs and small businesses by goblogit.
Cookies are small text files placed on a user's device by a website to store preferences, enable site functionality, and collect non-identifying usage data. Some cookies are necessary for site operation, while others improve performance or provide analytics.

Data Collection

We collect certain categories of personal data to deliver services, comply with legal obligations, manage client relationships and maintain the security of our systems. Data is collected directly from users, from automated sources when they use the website, and from third parties where necessary.

Data Provided by Users

When you contact goblogit, register for services, or provide documents for legal work, we collect information you supply to us. This information is necessary to assess your needs and to provide the requested legal services.

  • Identity details: full name, date of birth where required for verification, and national identification or passport number when necessary for legal processes.
  • Contact information: email address, telephone number +66924403059 and postal address for communication and service delivery.
  • Business information: company name, registration numbers, business address, role within the company and relevant corporate documents.
  • Transactional and contractual data: copies of contracts, correspondence, billing information and records of services provided.
  • Supporting documents: corporate records, partner registers, proof of identity or authority, and documents necessary to perform legal work.
  • Communications and preferences: messages sent to goblogit, notes from consultations and stated preferences for contact and service delivery.

Automatically Collected Data

When you visit goblogit.digital or use our online services we automatically collect certain technical and usage information to operate the site, improve functionality and analyze trends.

  • Technical data such as IP address, browser type and version, operating system and device identifiers.
  • Usage data including pages visited, time spent on pages, click paths and interaction events.
  • Connection and network information such as referrer URL, access times and the URL of the page visited before arriving at our site.
  • Location data inferred from IP address or device settings, limited to country or city-level accuracy.
  • Cookie identifiers and similar tracking technologies used to remember preferences and enable analytics.
  • Error and diagnostic data generated by the website or our servers to help detect and resolve technical issues.

Third-Party Sources

We may receive personal data about you from third parties when necessary to provide services or comply with legal obligations.

  • Payment processors and banks for billing and payment reconciliation.
  • Professional advisors, consultants and external counsel engaged to assist with a client's matter.
  • Public registries and government bodies when validating business registration, licenses or other official records.

Purposes of Processing

We process personal data for specific, limited purposes that are necessary to provide and improve our services, to meet legal requirements and to manage our relationship with users and clients.

  • To provide and manage legal services requested by clients including contract drafting, review and company formation support.
  • To communicate with clients and respond to inquiries, requests and complaints.
  • To perform identity verification and due diligence required by law or professional standards.
  • To process payments, issue invoices and handle billing matters.
  • To detect, prevent and contribute security incidents, fraud or other illegal activities.
  • To analyze website usage and improve the content, layout and functionality of goblogit.digital.
  • To fulfil legal or regulatory obligations, including retention for tax, audit or dispute resolution purposes.
  • To conduct limited marketing communications where consent has been obtained or where permitted under applicable law; recipients may opt out at any time.

Legal Bases for Processing

Where applicable under data protection laws, processing is based on one or more of the following legal grounds depending on the nature of the processing activity.

  • Performance of a contract: processing necessary to provide legal services requested by a client.
  • Legal obligation: processing required to comply with statutory or regulatory duties.
  • Legitimate interests: processing necessary for fraud prevention, network and information security, and business administration, balanced against individual rights.
  • Consent: where we rely on consent for specific uses such as marketing communications or certain cookies, clients may withdraw consent at any time.

Data Protection Rights (GDPR and Similar)

If you are located in a jurisdiction with data protection laws similar to the GDPR, you may have specific rights concerning your personal data. The list below outlines commonly recognized rights and how to exercise them with goblogit.

  • Right to access: you can request confirmation of whether we process your personal data and request a copy of the data we hold.
  • Right to rectification: you may request correction of inaccurate or incomplete personal data.
  • Right to erasure: in certain circumstances you may request deletion of personal data, subject to legal and contractual retention requirements.
  • Right to restriction of processing: you may request that processing of your data be limited while a dispute or verification is pending.
  • Right to data portability: where applicable, you may request a structured, commonly used and machine-readable copy of your personal data.
  • Right to object: you may object to processing based on legitimate interests or to direct marketing; we will consider such objections in line with applicable law.

Cookies

Cookies and similar technologies are used on goblogit.digital to support essential site functions, measure performance and provide features that improve user experience.

We use session cookies for basic site navigation, persistent cookies to remember user preferences, and third-party cookies for analytics and optional services integrated into the site.

Common cookie categories used include strictly necessary cookies, performance and analytics cookies, functional cookies and marketing cookies.

You can manage cookie preferences via your browser settings and through any cookie consent controls presented on the site. Disabling certain cookies may affect site functionality and your experience.

Cookie Policy

Data Sharing

We share personal data only as necessary to deliver services, to comply with legal obligations, or with your consent. Shared parties are selected to provide the required service and are contractually bound to protect personal data.

  • Service providers engaged to process data on our behalf, such as hosting providers, payment processors and document management services.
  • Professional advisors and external counsel when their involvement is necessary for client matters.
  • Government authorities, regulators or law enforcement where disclosure is required by law or court order.
  • Prospective buyers, advisers or counterparties in the event of a business transfer, merger or reorganization involving goblogit.
  • Affiliated entities and partners when necessary to deliver cross-border services or to provide coordinated client support.
  • Analytics and advertising partners to the extent consented to by the user or permitted under applicable law.

International Transfers

Personal data may be transferred to, stored or processed in jurisdictions outside Thailand for the purpose of providing services, operating our website or supporting infrastructure. When transfers occur we use appropriate safeguards in accordance with applicable law.

Examples of safeguards we may use include standard contractual clauses, assessing adequacy decisions where available, binding contractual commitments with service providers, encryption and other technical and organizational measures.

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes described in this policy, to satisfy legal or regulatory obligations, resolve disputes, and enforce our agreements.

Account and client records are retained for the duration of the client relationship and for a period thereafter consistent with legal, tax and professional recordkeeping obligations; retention periods are determined by the nature of the engagement and applicable rules.

Communications and case-related messages are retained for the period required to manage the matter and to meet legal or professional obligations, after which they are deleted or archived in accordance with retention rules.

System logs and technical records are retained for a limited period to support security monitoring, debugging and incident response, then removed or aggregated to prevent identification where practical.

Upon request and where applicable law permits, we will delete personal data subject to retention obligations or the need to preserve records for dispute resolution, audit or regulatory matters. Requests can be submitted using the contact details provided below.

Security Measures

We implement reasonable technical and organizational measures to protect personal data against unauthorized access, disclosure, alteration or destruction. Measures are periodically reviewed and updated in light of evolving security practices and legal obligations.

  • Encryption of data in transit using industry-standard protocols such as TLS.
  • Access controls and authentication procedures to limit access to personal data to authorized personnel only.
  • Regular security assessments, monitoring and incident response processes to identify and address vulnerabilities.

Your Rights

Depending on your jurisdiction and the applicable law, you may have certain rights in relation to your personal data. To exercise any right please contact us using the contact details below.

  • Access: obtain confirmation and a copy of personal data we process about you.
  • Rectification: request correction of inaccurate or incomplete data.
  • Erasure: request deletion of personal data where applicable and permitted by law.
  • Restriction and objection: request limitation of processing or object to certain processing activities.
  • Portability: request a machine-readable copy of personal data where technically feasible and legally required.
  • Right to withdraw consent for processing where processing is based on consent, subject to legal and contractual limits.
  • Right to opt out of direct marketing communications and to update communication preferences at any time.
  • Right to lodge a complaint with a relevant supervisory authority in Thailand if you consider that processing of your personal data violates applicable law.

How to exercise your data rights

Individuals may submit requests to access, correct, delete, or port their personal data. Requests should include sufficient details to identify the requester and the scope of the request. We may require verification to confirm identity and to prevent unauthorized disclosures.

[email protected]

We aim to respond to valid requests within a reasonable timeframe and in any case within the limits required by applicable law. Complex requests may require additional time and we will inform you if an extension is needed.

Marketing communications

We may use contact information to send information about services, updates, and industry-related materials relevant to business legal services. Marketing messages will be based on legitimate interests or consent where required by law. Frequency and content depend on the selected communication preferences.

To stop receiving marketing communications, use the unsubscribe link in any marketing email or contact our privacy team at [email protected]. Processing of unsubscribe requests will be completed within a reasonable period.

Children's privacy

Our services are intended for business users and individuals legally able to enter into contracts. We do not knowingly collect personal data from minors for use of professional services. If we learn we have collected data from an individual who is not legally eligible, we will take steps to delete it in accordance with applicable law.

Links to third-party sites

Our website may contain links to third-party websites or resources that are not operated by goblogit. We are not responsible for the privacy practices or content of those sites. Review the privacy policies of third parties before providing personal data to them.

Changes to this privacy notice

We may update this privacy notice to reflect changes in legal, regulatory, or operational requirements. Material changes will be published on our site with an updated effective date. Continued use of services after updates indicates acceptance of the revised terms.