PDPA Compliance

Human Digital Solutions Co., Ltd.   |   Strength OS Platform
Last Updated: February 23, 2026   |   Version: 1.0

Overview

Human Digital Solutions Co., Ltd. is committed to protecting the privacy of our users in compliance with Thailand's Personal Data Protection Act B.E. 2562 (2019) ("PDPA"). This page outlines our data protection practices and your rights as a data subject under Thai law.

Your Data Subject Rights

Under the PDPA, you have the following rights regarding your personal data. You can exercise these through your account settings or by contacting our Data Protection Officer.

Right to Access (Section 30)

You have the right to access and obtain a copy of your personal data that is under our responsibility, and to request disclosure of how we obtained your data without your consent.

Right to Data Portability (Section 31)

You have the right to receive your personal data in a format which is generally readable or usable by automatic tools or equipment, and can be used or disclosed by automated means.

Right to Object (Section 32)

You have the right to object to the collection, use, or disclosure of your personal data at any time, particularly for direct marketing or profiling purposes.

Right to Erasure (Section 33)

Also known as the "Right to be Forgotten," you can request us to erase, destroy, or anonymize your personal data when it is no longer necessary or when you withdraw your consent.

Right to Restriction of Processing (Section 34)

You have the right to request us to restrict the use of your personal data during the process of verification or while we are considering your objection request.

Right to Rectification (Section 35)

You have the right to request that we ensure your personal data is accurate, up-to-date, complete, and not misleading.

Right to Withdraw Consent (Section 19)

You can withdraw your consent at any time for any purpose for which you have previously granted it. The withdrawal will not affect processing that occurred before the withdrawal.

Our Data Protection Measures

To ensure the security and confidentiality of your data, we implement the following technical and organizational measures:

  • Encryption: All data is encrypted in transit via TLS 1.3 and at rest using AES-256 encryption.
  • Multi-Factor Authentication: We provide MFA options to prevent unauthorized access to your account.
  • Access Control: We use Role-Based Access Control (RBAC) and Row-Level Security (RLS) to ensure only authorized personnel and your designated coaches can access your data.
  • Data Minimization: We only collect the data necessary to provide our services and clearly mark optional fields.
  • Audit Trails: We maintain comprehensive logs of data access and modifications for security monitoring.

Sensitive Personal Data

We process sensitive personal data (such as health and biometric information) only with your explicit consent. You can opt-in or out of health tracking at any time without affecting your ability to use the core features of the Platform.

Children's Data

For users under 20 years of age, we require parental or guardian consent in accordance with Section 20 of the PDPA. Parents retain the full right to manage or request deletion of their minor's data.

Contact Information

Data Protection Officer (DPO): humanlifting.com
Company Representative: humanlifting.com

If you believe our processing of your personal data violates the PDPA, you have the right to lodge a complaint with the Personal Data Protection Committee (PDPC) of Thailand.


STRENGTH OS PDPA COMPLIANCE FRAMEWORK