Bench active · EN ↔ TH · TEL +66 02-859-2145 · NDA from first email · 1-hour quote SLA
EN TH
Request a Proposal
Confidentiality & data security
NDA from first email · No public AI on client data
Home/Company/Confidentiality & Data Security
Because most of what we handle is not public yet

Your disclosure is confidential. We treat it that way.

Draft filings, unpublished financials, board and employee data, pre-announcement ESG results — the material we handle is sensitive by definition. So confidentiality isn’t a policy page we bolt on; it’s how the firm is built: NDA from the first email, one in-house bench, and client material that never touches public AI.

★ At a glance
Five commitments
  • 01
    NDA from your first email
  • 02
    No public generative-AI on client material
  • 03
    100% in-house — no freelance chains
  • 04
    ISO 27001-aligned handling
  • 05
    PDPA & GDPR compliant
Our commitments · ความปลอดภัยของข้อมูล

How your material is protected.

Five things we do by default — several of which are quietly not true at firms that outsource disclosure or translation.

01

NDA from the first email

Confidentiality applies before anything is signed. We’ll sign yours or provide ours at the outset — the default for pre-publication filings, not an extra.

02

No public generative-AI

Your unpublished disclosure is never pasted into consumer AI tools where it could be retained or used for training. Handled inside our environment, under control.

03

100% in-house bench

No freelance chains, no offshore marketplaces — the invisible risk in outsourced translation and disclosure. One named, accountable team, end to end.

04

ISO 27001 -aligned

Access control, secure transfer, least-privilege, secure disposal — plus an ISO 17100-certified translation workflow. Security questionnaires and DPAs accommodated.

05

PDPA & GDPR

Personal data inside your ESG and corporate filings is handled to Thailand’s PDPA and GDPR principles: lawful basis, minimisation, secure retention and disposal.

The AI question, directly

Where AI fits — and where it doesn’t.

We use technology to work faster, never at the cost of your confidentiality.

★ Our standing rule

Client material is never put into public AI tools.

Unpublished disclosure, financials and draft filings are handled by our in-house bench under NDA, inside our own controlled environment — not pasted into consumer generative-AI services where inputs can be retained or used to train models. Where technology assists the work (terminology management, quality checks), it operates under controls that keep your data private and accountable. If your procurement needs this in writing, we confirm it in the engagement terms.

Questions · คำถามที่พบบ่อย

Confidentiality, answered.

01Do you use ChatGPT or other public AI tools on our documents?+

No. We do not put client material into public generative-AI tools. Your unpublished disclosure, financials and draft filings are handled by our in-house bench under NDA and are never pasted into consumer AI services where they could be retained or used for training. Where we use technology, it is under controls that keep your data private and inside our environment.

02Who actually sees our material?+

Only the named, in-house Othello bench assigned to your engagement, working under NDA from the first email. We do not fan your documents out to freelance chains or offshore marketplaces — a common and largely invisible risk when disclosure or translation is outsourced. One accountable team handles the work end to end.

03How do you handle personal data under Thai PDPA?+

We handle personal data in line with Thailand’s Personal Data Protection Act (PDPA) and, for cross-border work, GDPR principles — lawful basis, data minimisation, purpose limitation, and secure retention/disposal. Personal data in the material we process (employee, board or stakeholder information inside ESG and corporate filings) is treated as confidential and access-controlled.

04Is an NDA required, or is confidentiality automatic?+

Confidentiality applies from your very first email — before any NDA is signed. We are happy to sign your NDA, or provide ours, at the outset of any conversation. Because so much of what we handle is pre-publication disclosure and legal filings, NDA-from-first-contact is our default, not an add-on.

05What security standards do you align to?+

Our handling is aligned to ISO 27001 information-security principles (access control, secure transfer, least-privilege, secure disposal) and our translation workflow is ISO 17100-certified. We confirm the specific controls in place for your engagement in writing, and can accommodate a client security questionnaire or DPA where your procurement requires one.

Engage Othello

Start the conversation under NDA.

Send the brief — confidentiality applies from the first email, and we’ll sign your NDA or provide ours before anything else.

ISO 17100-aligned · ISO 27001-aligned handling · PDPA & GDPR · 100% in-house Bangkok bench
FTSE 2026 PlaybooksFree ESG disclosure guides
Chat on LINEแอดไลน์ · ตอบใน 1 ชม.
Add Othello ESG on LINE (QR code)
แอดไลน์ · Add us on LINE
Scan to chat with Othello ESG on LINE — a reply within one business hour, under NDA from the first message.
Open LINE →
Recognised & delivered Credited in DLA Piper × UK PACT × DCCE’s carbon-pricing report · SET JUMP+ Advisory Pool listed advisor · FTSE Russell 4.0/5.0 delivered · ISO 17100 certified
Get a 1-hour quote →

Research & Reports

Free Tools

Free tools & research State of ESG Disclosure· ESG Rating Check· FTSE 2026 Playbooks· Regulation Radar· Greenwashing Checker