Definitions
The following definitions clarify terms used in this policy to make the statements that follow precise and actionable.
BrightNowSoul operates training and advisory programs focused on conscious evolution for business owners. This privacy policy explains the categories of personal data we collect, the reasons we process that data, third parties we may share data with, and the rights available to individuals. We take a professional, risk-aware approach to handling personal information and apply organizational and technical controls aligned with international privacy best practices. The policy is intended for participants, prospective clients, suppliers, and website visitors and reflects our obligations under applicable laws and our operational needs.
We collect personal data necessary to deliver our courses and services, to manage registrations and payments, to respond to enquiries, and to improve program delivery. We limit collection to what is relevant and provide clear notices at the point of collection.
The following definitions clarify terms used in this policy to make the statements that follow precise and actionable.
We collect personal data necessary to deliver our courses and services, to manage registrations and payments, to respond to enquiries, and to improve program delivery. We limit collection to what is relevant and provide clear notices at the point of collection.
We collect personal data that you provide directly when you register, purchase, inquire, or communicate with us.
In addition to data you provide, we automatically collect technical and usage information when you interact with our website and digital services.
We work with carefully selected third-party service providers to deliver platform functionality, payment processing, communications and analytics. Contracts require appropriate data protection obligations.
We process personal data for clearly defined operational and legal purposes relevant to delivering services to business owners and managing our relationship with participants.
Where applicable law requires, we rely on appropriate legal bases for processing personal data, such as consent, contract performance, legal obligations and legitimate interests.
Cookies and similar technologies help BrightNowSoul maintain secure access, remember preferences and measure how services are used. You can manage cookie preferences at any time.
We use session cookies, persistent cookies, first-party cookies and, in some cases, third-party cookies provided by analytics and advertising partners.
Cookie categories include strictly necessary cookies for site operation, functional cookies for preferences, analytics cookies for usage measurement, and marketing cookies for promotional content.
You can manage or disable cookies via your browser settings and by using any available cookie preference center on our site. Disabling cookies may affect functionality and user experience.
View our Cookie Policy
We disclose personal data only as needed to fulfill the purposes above, and subject to contractual safeguards where required.
BrightNowSoul is based in Thailand and may transfer personal data to service providers or affiliates located in other countries to deliver the services. Transfers are made only where appropriate safeguards are in place or as permitted by law.
We use contractual protections such as data processing agreements and, where applicable, standard contractual clauses, encryption and access restrictions to protect data transferred across borders.
We retain personal data only as long as necessary for the purposes set out in this policy, and to satisfy legal, regulatory or accounting requirements.
Account and registration data is retained for the duration of the relationship and thereafter for a period consistent with contractual and legal obligations; transactional records may be retained for tax and business recordkeeping (for example, up to seven years where required by local law).
Communications and support correspondence are retained for as long as necessary to resolve issues, manage service delivery, and comply with legal obligations.
Technical logs and diagnostic data are retained for a limited period to support security monitoring and incident response, typically a rolling period aligned with operational needs.
When personal data is no longer required, we will securely delete or anonymize it. Copies may persist in backups for a limited time as part of standard disaster recovery processes.
We apply organizational, administrative and technical safeguards proportionate to the sensitivity of the data, including encryption, access controls and continuous monitoring. Security measures are reviewed periodically and updated to address evolving risks.
Subject to applicable law, individuals may exercise certain rights in relation to their personal data. Requests will be handled in a timely, secure and proportionate manner.
GDPR Residents' Rights — applicability and support
If you are located in the EU/EEA, certain protections under the General Data Protection Regulation (GDPR) may apply. We will honor GDPR rights for affected individuals and respond to requests consistent with statutory timelines.
If you are a resident of the European Economic Area (EEA) and wish to submit a privacy complaint related to BrightNowSoul.best, please contact our Data Protection Officer at the address or email provided below. We will contribute complaints promptly, document findings and communicate outcomes in line with applicable law. For detailed information on data transfers, processing activities and legal bases, consult the Privacy Policy sections below or request a copy via the contact channel.
BrightNowSoul recognizes rights available under applicable data protection laws, including the right to access, rectify or request deletion of personal data, the right to obtain portability where applicable, and the right to object to or restrict processing. To initiate a request, provide a clear description of the information or action you seek and any identity verification documents required to protect your privacy. We aim to respond to verifiable requests in accordance with statutory timelines.
We will acknowledge receipt of verifiable privacy rights requests within 14 calendar days. Where additional verification or complexity requires more time, we will notify you with an expected completion timeframe not to exceed 60 calendar days unless local law permits longer processing.
BrightNowSoul may send newsletters, course updates, event invitations and product information to individuals who opt in. Marketing content is based on preferences you set when subscribing and on the services you use. Communications will comply with applicable telecommunications and electronic marketing laws in Thailand and other jurisdictions where we operate.
You may opt out of marketing communications at any time by using the unsubscribe link included in every email or by updating your communication preferences in your account. If you opt out, you may still receive transactional messages related to your courses or account activity.
BrightNowSoul does not knowingly market services to or knowingly collect personal data from children under 16. If we become aware that data has been collected from a person under applicable age without appropriate consent, we will take steps to delete such data promptly. Parents or guardians who believe their child’s information has been provided should contact us using the details below.
Our website and course materials may include links to third-party websites, payment processors and content providers. Those sites have separate privacy practices and privacy policies that BrightNowSoul does not control. We advise you to review third-party policies before providing personal information.
We disclose personal data only as needed to fulfill the purposes above, and subject to contractual safeguards where required.
View our Cookie Policy
We may update this privacy information to reflect regulatory or operational changes. Material changes will be posted on BrightNowSoul.best with an updated effective date. Non-material clarifications may be made without prior notice; significant revisions will be communicated to registered users via email where required.