CTT

Professional manufacturer / supplier for processing customized parts.

About CTT

Inquiry
PRIVACY POLICY AND COOKIE POLICY2025-12-23T07:29:05+00:00

PRIVACY POLICY AND COOKIE POLICY

PRIVACY POLICY

This privacy policy (“policy”) will help you understand how us uses and protects the data you provide to us when you visit our website.

We reserve the right to change this policy at any given time, of which you will be promptly updated. If you want to make sure that you are up to date with the latest changes, we advise you to frequently visit this page.

What User Data We Collect

When you visit the website, we may collect the following data:

  • Your IP address.
  • Your contact information and email address.
  • Other information such as interests and preferences.
  • Data profile regarding your online behavior on our website.

Why We Collect Your Data

We are collecting your data for several reasons:

  • To better understand your needs.
  • To improve our services and products.
  • To send you promotional emails containing the information we think you will find interesting.
  • To contact you to fill out surveys and participate in other types of market research.
  • To customize our website according to your online behavior and personal preferences.

Safeguarding and Securing the Data

Maxtela is committed to securing your data and keeping it confidential. Maxtela has done all in its power to prevent data theft, unauthorized access, and disclosure by implementing the latest technologies and software, which help us safeguard all the information we collect online.

OUR COOKIE POLICY

Once you agree to allow our website to use cookies, you also agree to use the data it collects regarding your online behavior (analyze web traffic, web pages you spend the most time on, and websites you visit).
The data we collect by using cookies is used to customize our website to your needs. After we use the data for statistical analysis, the data is completely removed from our systems.
Please note that cookies don’t allow us to gain control of your computer in any way. They are strictly used to monitor which pages you find useful and which you do not so that we can provide a better experience for you.
If you want to disable cookies, you can do it by accessing the settings of your internet browser. (Provide links for cookie settings for major internet browsers).

Links to Other Websites

Our website contains links that lead to other websites. If you click on these links [name] is not held responsible for your data and privacy protection. Visiting those websites is not governed by this privacy policy agreement. Make sure to read the privacy policy documentation of the website you go to from our website.

Restricting the Collection of your Personal Data

At some point, you might wish to restrict the use and collection of your personal data. You can achieve this by doing the following:

  • When you are filling the forms on the website, make sure to check if there is a box which you can leave unchecked, if you don’t want to disclose your personal information.
  • If you have already agreed to share your information with us, feel free to contact us via email and we will be more than happy to change this for you.

marA will not lease, sell or distribute your personal information to any third parties, unless we have your permission. We might do so if the law forces us. Your personal information will be used when we need to send you promotional materials if you agree to this privacy policy.

Privacy Policy

CTT-Metal Co., Ltd. (hereinafter referred to as “the Company”) has established this Privacy Policy in accordance with the Personal Data Protection Act and the ISO 27001 Information Security Management System. To protect personal privacy and data security, the Company outlines the principles for the collection, utilization, and protection of personal data as follows:
I. Purpose and Scope of Collection
Personal data is collected only to the extent necessary for providing products and services, customer contact, human resource management, or as required by law. Categories of data include, but are not limited to: name, contact information, account number, transaction records, and browsing data.
II. Use and Retention
The collected data is used strictly for business purposes. The retention period will be handled in accordance with legal or contractual requirements, after which the data will be securely deleted or de-identified.
III. Data Protection
The Company implements ISO 27001 information security controls, such as access control, encryption, firewalls, and audit mechanisms. Employees and partners are required to sign non-disclosure agreements to prevent unauthorized access and data leakage.
IV. Data Disclosure
The Company will not disclose personal data to third parties unless required by law or necessary for contractual obligations. If an external vendor is entrusted with data processing, the Company will sign confidentiality and information security contracts and supervise their execution.
V. Data Subject Rights
You have the right to legally request to review, correct, delete, or cease the use of your personal data. Applications should be directed to the Company’s Information Security Committee via email at crystal@ctt-metal.com.
VI. Policy Revision
This Policy will be reviewed and revised regularly based on changes in business operations and legal requirements. The latest version will be published on the Company’s official website.

CTT-Metal Co., Ltd. Management Unit | September 01, 2025

 Information and Communication Security Policy

CTT-Metal Co., Ltd. (hereinafter referred to as “the Company”)

  • Policy Objective

To ensure the confidentiality, integrity, and availability of the Company’s information and communication systems, and to protect the information security of the Company, its customers, and partners, CTT-Metal Co., Ltd. establishes this Policy in accordance with ISO/IEC 27001. This aims to prevent unauthorized access, alteration, destruction, or disclosure of information assets.

  • Scope of Application

This Policy applies to all employees, outsourced personnel, and cooperative vendors. It covers all information assets, including servers, network equipment, computers, mobile devices, cloud platforms, and email systems.
III. Security Management Principles

  • Access Control: Users may only access the data and systems required for their job duties.
  • Data Protection: Data is classified based on importance and managed through encryption or restricted access methods.
  • System Protection: Firewalls, anti-virus software, and vulnerability scanning mechanisms are implemented, with patches and updates applied regularly.
  • Backup and Recovery: Critical data is backed up regularly, stored off-site, and subjected to recovery testing.
  • Training and Education: Employees must participate in information security awareness and prevention training at least once per year.
  • Security Incident Response
  • In the event of discovering abnormal behavior, malicious attacks, or data leakage, the Information Security Management Personnel must be notified immediately. The incident will be handled in accordance with the Company’s “Security Incident Reporting and Response Procedure,” and relevant authorities and customers will be notified if necessary.
  • Legal Compliance
  • The Company complies with the Cyber Security Management Act, the Personal Data Protection Act, and other relevant laws and regulations, maintaining compliance as required by customers and government agencies.
  • Continuous Improvement
  • The Company conducts annual security audits and risk assessments. Management measures are revised based on the results to ensure the continuous enhancement of information security management effectiveness.
    VII. Contact Information
    For questions regarding this Policy, please contact:
    CTT-Metal Co., Ltd. Information Security Management Committee (ISMC)
  • 📧 Email: crystal@ctt-metal.com
  • 📞 Phone: +886-4-25631488
  • Latest Update Date: September 01, 2025
Go to Top