Privacy Policy

Privacy and Cookie Policy

We are committed to protecting your personal data with the highest standards

Most recent updated version: November 2025

Our Privacy and Cookie Policy and our internal data protection policies are fully compliant with both the EU General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

INTRODUCTION

Introduction

Tiemtaphoa.org ("we", "us", "our(s)") has created and published this Privacy and Cookie Policy ("Policy"). The purpose of this Policy is to inform visitors on our website and Users ("you", "your(s)") of our services about what data and personal information we collect when you visit our website and use our services.

Tiemtaphoa.org is a business operating in Vietnam.

Tiemtaphoa.org's Privacy and Cookie Policy and our internal data protection policies are fully compliant with both the EU General Data Protection Regulation ("GDPR") and the California Consumer Privacy Act ("CCPA"). If you have any questions about the manner in which we collect, process and protect your data and personal information, please contact us at info@tiemtaphoa.org.

We may modify this Privacy and Cookie Policy from time to time, for example in response to changes in the applicable privacy laws and regulations. Any amendments to this Policy are published on this page.

Your continued use of our services means that you have read and agreed to the most recent version of our Policy. If you do not agree with this Policy, we recommend you to leave our website.

ARTICLE 1

Personal Data We Collect

We only collect your data after you have given us your express consent. Before you leave any information with us, we give you the option to agree and continue. If you do not want to share your personal information with us, we recommend you to leave our website and do not complete a registration.

User Registration Data

  • Username
  • Password (hashed in bCrypt)
  • Email address (optional)
  • IP addresses from each request (only used for statistical purposes for our DDoS protection such as ratelimits per IP, and this will not be linked to your user data)

Service Whitelisting Application Data

We may collect the following personal data from users who apply for service whitelisting:

  • First name
  • Last name
  • Email address
  • Service and intent

This data is only used to process your request for service whitelisting and will not be shared with any third parties.

ARTICLE 2

Third Party Sub-Processors

Tiemtaphoa.org makes use of the services of third party companies that are processing your data. We are committed to only engage with those companies that fully comply with the GDPR and CCPA, maintain the highest standards of data protection and never sell data to other parties.

Cloudflare

Analytics, CDN and DDoS protection

Will monitor certain visitor behavior on our website

United States

Privacy Policy

Stripe

Payment processing

Processes your payments and the requests only contain your user ID

Cryptomus

Cryptocurrency payment processing

Handles cryptocurrency payment processing services

Zoho

Email communications

Used for email communications

Jira Service Desk

Internal project management and email ticket handling

Stores tickets which are deleted after 6 months. Stores ticket images which are removed after 7 days

We advise you to read their Privacy Policy available on their respective websites.

ARTICLE 3

Use of Your Information

All data we collect and process will be used to provide our Services to you. In addition, we may use this information for maintaining and improving our website, mobile applications and all other services we offer.

Customer Support

Provide you with information about our Services that you explicitly requested from us, answering your questions or responding to other communications you send to us

Fraud Detection

Track and analyze data for investigating and preventing fraudulent behavior, or other unauthorized or illegal transactions and/or activities

Legal Requests

This information can be requested by law enforcement as long as it is within reasonable demand, and our investigations deem the provided report to be matching up with our internal records

We do not send sell/send your information for marketing.

ARTICLE 4

Withdrawal of Your Consent

We only collect and process data that is based on your consent, and personal data which is accurate and relevant for the purposes mentioned in this Policy. In addition, we collect personal information for the legitimate purposes set out in this Privacy Policy. Finally, we collect and process data to comply with specific legal and regulatory duties.

Right to Withdraw Consent

Each User has at all times the right to withdraw its consent

Right to Request Data Deletion

Each individual may request the permanent removal of its personal data and information. Upon your request through your settings page, Tiemtaphoa.org will remove all personal data that we collected from you

Right to Correct and Update

Each individual has the right to correct or update its personal information

Deletions may take up to 14 days to process.

ARTICLE 5

Your Privacy Rights

This provision is applicable provided that the data is processed by automated means and that the processing is based on the User's consent, on a contract which the User is part of or on pre-contractual obligations.

5.1

Right to Withdraw Consent

Users have the right to withdraw consent where they have previously given their consent to the processing of their personal data

5.2

Right to Object

Users may object to the processing of their personal information. Users have the right to object to the processing of their data if the processing is carried out on a legal basis other than consent

5.3

Right to Access

Users have the right to learn if data is being processed by us, obtain disclosure regarding certain aspects of the processing and obtain a copy of the data undergoing processing

5.4

Right to Rectification

Users have the right to verify the accuracy of their personal data and ask for it to be updated or corrected

5.5

Right to Restrict Processing

Users have the right, under certain circumstances, to restrict the processing of their data, in which case, we will not process their Data for any purpose other than storing it

5.6

Right to Erasure

Users have the right, under certain circumstances, to obtain the erasure of their Data from us

5.7

Right to Data Portability

Users have the right to receive their Data in a structured, commonly used and machine-readable format and, if technically feasible, to have it transmitted to another controller without any obstacle

5.8

Right to Lodge a Complaint

Users have the right to bring a claim before their competent data protection authority

ARTICLE 6

Cookies

In order to improve your experience on our website, we place cookies on our website. A cookie is a piece of data that is transferred from a web server to your computer or web browser each time you visit this website. Cookies will expire, but these can also be deleted by the user in your browser settings.

We shall always inform you when we use cookies to collect your personal information and we request your consent before placing such cookies. Also, you can choose to disable cookies in your internet browser settings.

Our cookies do not contain any personal information and is only used to maintain your session and keep you logged in.

ARTICLE 7

Data Security and Data Breach

Tiemtaphoa.org is committed to taking all necessary measures and actions to protect your data. Our data protection practices are based on the best industry standards such as hashing your passwords with bCrypt, and only ask for information that is deemed important to us.

Nevertheless, the transmission of information via the internet can never be 100% secure, and for that reason, we cannot fully guarantee the security of the data you will send to us.

When we give you login information and credentials, you shall always remain fully responsible for keeping such information confidential and for personal use.

When a data breach occurs, we undertake to act quickly in order to avoid data loss and we will notify without delay each User whose personal data could be at risk.

Breach Notification

Data breaches will be mentioned through our news channels; either through Twitter or on our on-site dashboard

Notification Timeframe

In case of any breach, every user will be notified within 72 hours of the breach through any available channel that the user has provided

We waive any liability for privacy policies of third parties, including but not limited to social media links that appear on our website. We do not have any control over the way they collect, process and protect your personal information.

ARTICLE 8

Company's Internal Privacy Policies

Tiemtaphoa.org is committed to implementing the highest standards of data protection within our organization. This means we maintain clear roles, duties, and responsibilities regarding the way we comply with the GDPR, including instructions and training programs for employees on data protection laws, regulations and policies.

Data Storage

Your personal data we collect shall be stored and processed for as long as the legitimate purpose requires it. Users may find specific information regarding the legitimate interests pursued by us within the relevant sections of this document or by contacting us

Security Measures

We will take appropriate security measures to prevent unauthorized access, disclosure or modification of your personal data

Data Processing

The processing of your data is carried out using computers and IT-enabled tools, following organizational procedures and modes strictly related to the purposes indicated

ARTICLE 9

Minors

We never process personal information from minors. Users declare themselves to be adult according to their applicable legislation.

Minors may use our services only with the assistance of a parent or legal guardian.

ARTICLE 10

Third Party Vendors

We use the following third party vendors to provide our services:

Stripe

Used for secure credit card payment processing

Cloudflare

Provides DDoS protection and content delivery network (CDN) services. Stores ticket images which are removed after 7 days

Cryptomus

Handles cryptocurrency payment processing services

Zoho

Used for email communications

Jira Service Desk

Used for internal project management and e-mail ticket handling. Stores tickets which are deleted after 6 months

ARTICLE 10

Amendments

We reserve the right to make changes to this Privacy Policy at any time by giving notice to the Users on this page. And as far as technically and legally possible by sending a notice to Users via their contact information available to us.

We strongly recommend checking this page regularly, referring to the date of the last modification listed at the top of this page.

Should the changes affect processing activities performed on the basis of the User's consent, we shall collect new consent from the User, where required.

CHANGELOG

Changelog

November 2025

Latest version of privacy policy updated

September 2025

Added information about new third party vendors

April 2025

Added information about new cookie usage and third party vendors

August 2024

Initial version of the privacy policy published

Contact Us

If you have any questions about this Privacy Policy, please contact us:

info@tiemtaphoa.org

We will respond within 48 hours