Security & Compliance
Security and compliance We design to align with key standards — PDPA, Thai-government guidance, and international baselines.
PDPA Ready Systems designed to PDPA principles — data minimization, consent management, and breach response.
Thai Government Standards Aligned with ETDA, depa, and DGA guidance for public-sector systems — including e-Bidding and Data Dictionary practices.
International Baseline Built for UNICEF Thailand and similar partners with international-grade security and privacy baselines.
OWASP ASVS Alignment Web and API design reviewed against OWASP ASVS — systematically reducing OWASP Top 10 risk.
NIST Cybersecurity Framework Security organised around the NIST CSF pillars — Identify, Protect, Detect, Respond, Recover.
GDPR Alignment EU-facing engagements covered — data subject rights, DPAs, and transfer safeguards alongside PDPA.
ThaID / Digital ID Integration ThaID and Thai Digital ID integration — live in production with UNICEF MSO.
Accessibility (WCAG 2.1 AA) Web and apps designed to WCAG 2.1 AA — semantic HTML, focus-visible, reduced-motion, skip-link.