Privacy Policy
Last updated: April 10, 2026
1. Introduction
This Privacy Policy explains how LLC Gekko Tehnology Thailand ("Company," "we," "us," or "our") collects, uses, stores, shares, and protects personal data in connection with the Pilotbot Service.
2. Data Controller
LLC Gekko Tehnology Thailand is the controller of personal data processed in connection with the Service, except where another role is clearly stated.
3. Categories of Personal Data We Collect
- Identity data: name
- Contact data: email address, phone number
- Account data: login details, account preferences
- Technical data: IP address, device identifiers, browser data, operating system, session data
- Cookie and usage data
- Exchange-related data: exchange UID, exchange account metadata, bot settings
- Credential data: encrypted API keys
- Support data: support chat messages, tickets, attachments, issue descriptions
- Activity and log data: trading-related logs, automation logs, platform events, access logs
- Billing data: payment metadata, subscription data, transaction status from payment providers
- Marketing data: communication preferences, attribution data, analytics data
4. How We Collect Data
We may collect data:
- directly from users,
- automatically through use of the Service,
- from third-party exchanges connected by users,
- from payment processors,
- from analytics or infrastructure providers,
- from social login or authentication services where applicable.
5. Why We Process Personal Data
Purposes may include:
- account creation and authentication,
- service delivery,
- automation and platform functionality,
- exchange integration,
- support and troubleshooting,
- fraud prevention and abuse detection,
- security monitoring,
- subscription management and billing,
- analytics and performance improvement,
- legal compliance,
- marketing communications where permitted.
6. Legal Bases for Processing
Where applicable under relevant law, we may process personal data on the basis of:
- performance of a contract,
- compliance with legal obligations,
- legitimate interests,
- user consent,
- establishment, exercise, or defense of legal claims.
7. API Keys and Sensitive Operational Data
API keys are stored in encrypted form. We aim to restrict internal access to API keys. Support personnel do not have direct access to API keys, but authorized personnel may access logs and support communications as necessary to provide support, maintain the Service, investigate incidents, and protect platform integrity.
8. How We Share Data
We may share personal data with:
- hosting and infrastructure providers,
- payment processors,
- analytics providers,
- authentication providers,
- email and communications providers,
- AI and automation service providers,
- customer support tools,
- professional advisers,
- legal authorities where required by law,
- potential acquirers or successors in a business transaction.
9. International Data Transfers
Because the Service may operate globally and use international service providers, personal data may be transferred to and processed in countries other than the user's country of residence. Where required, we will implement appropriate safeguards for international data transfers.
10. Data Retention
We retain data for as long as necessary for each purpose:
- Account data: for the duration of the account and a reasonable period after closure.
- Billing data: as required by applicable financial and tax regulations.
- Support records: for the period necessary to resolve issues and for quality assurance.
- Logs: for security monitoring, fraud prevention, and audit purposes.
- Analytics data: in aggregated or anonymized form for performance improvement.
- Deleted account records: may be retained for compliance, fraud prevention, dispute resolution, or legal obligations where necessary.
11. Security Measures
We implement reasonable administrative, technical, and organizational safeguards intended to protect personal data. However, no system is completely secure, and we cannot guarantee absolute security.
12. User Rights
Depending on applicable law, users may have rights to access, correct, delete, restrict processing, object to processing, withdraw consent, data portability, opt out of marketing communications, and lodge complaints with a competent authority. To exercise your rights, contact us at [email protected].
13. Cookies and Tracking Technologies
The Service uses cookies and similar technologies for essential functionality, analytics, preferences, and, where applicable, marketing. Refer to our Cookie Policy for more detail.
14. Marketing Communications
Users may receive service-related communications. Promotional communications may be sent where lawful. Users may opt out through unsubscribe tools or by contacting us.
15. Children's Privacy
The Service is not intended for individuals under 18 years of age. We do not knowingly collect personal data from children under 18.
16. Account Deletion and Data Requests
Users may delete their account where that functionality is available or contact us to request deletion. Some information may be retained as required for legal, compliance, security, dispute, or fraud-prevention purposes.
17. Social Media and Public Channels
If users interact with our social media pages or public channels, we may receive engagement-related information in accordance with the policies of those third-party platforms.
18. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Material changes may be notified through the Service or by other reasonable means.
19. Contact Us
LLC Gekko Tehnology Thailand
Email: [email protected]
Related policies: Terms of Service · Cookie Policy · Refund Policy · Acceptable Use Policy