You are using an outdated browser and your browsing experience will not be optimal. Please update to the latest version of Microsoft Edge, Google Chrome or Mozilla Firefox. Install Microsoft Edge

April 10, 2026

Thailand Issues Guidelines on Digital Platform Fee Transparency and Fairness

Thailand has introduced new regulatory guidance requiring digital platform operators to adopt structured, transparent, and fair fee practices. On March 16, 2026, the Electronic Transactions Development Agency (ETDA) published Announcement No. DPS 2/2569, titled “Guidelines for Transparency and Fairness in Digital Platform Service Fee Determination,” issued under the Royal Decree on Digital Platform Service Business Operations B.E. 2565 (2022). The guidelines establish a framework governing how digital platform operators should set, disclose, and adjust fees charged to users and related service providers such as logistics and payment providers.

Although framed as best-practice guidance rather than legally binding rules with explicit penalties, the guidelines carry regulatory weight under the royal decree and represent a significant step toward structured governance of digital platform fee practices in Thailand.

The guidelines establish various transparency principles and divide fees into two distinct categories—compulsory and additional—with specific governance principles for each.

Transparency Principles

The guidelines recommend that digital platform operators adopt several transparency measures to ensure that users can fully understand the costs of using a platform.

  • Fee catalog. All fees should be consolidated into a single, accessible location, which should include the fee name, definition, scope of covered services, calculation methodology, rate, billing period, and calculation examples.
  • Minimum service disclosure. Operators should disclose the minimum service that users can expect, such as baseline visibility, product listing capabilities, access to transaction data, and back-end dashboard access.
  • Price structure disclosure. Operators should disclose the categories of costs underlying their fees, such as system maintenance, cybersecurity, and operational costs. While exact cost figures need not be made public, operators should be able to provide numerical data to regulators upon request.
  • Clear fee formulas. Fee calculations should be simple and easy to understand—for example, percentage of net sales, cost per order, or cost per product listing. Operators should avoid multilayered or stacked fee formulas that may mislead users.
  • Advance notice. Operators should notify users at least 15 days in advance of any fee change, disclosing the reason, scope, potential impact on users, and channels for inquiries and feedback.

Compulsory Fees

Compulsory fees cover services essential to basic platform operations, such as transaction processing, payment systems, identity verification, back-end systems, security, and basic customer service. Key recommendations include the following:

  • “1 activity = 1 fee” principle. Each fee should correspond to a clearly defined service scope, with no double-charging.
  • Cost-based logic. Fees should be justifiable by reference to cost categories, though detailed cost figures need not be publicly disclosed.
  • Minimum service guarantee. Users who pay compulsory fees are entitled to stable systems, baseline visibility, basic customer support, and access to essential data.
  • No conditional linkage. Basic rights should not be degraded if a user declines to purchase advertising or add-on services. For example, product visibility should not be reduced for users who do not purchase advertising.

Additional Fees

Additional fees include value-added services such as advertising, sales promotions, and subscription packages that enhance business performance beyond the baseline. Governance recommendations for additional fees include the following:

  • No impact on core benefits. Declining add-on services should not reduce baseline visibility or degrade basic system performance.
  • Value-based pricing. Fees should reflect measurable outcomes, such as impressions or search ranking improvement.
  • Optional, not mandatory. The purchase of add-on services should be voluntary, with no coercive bundling or pressure to purchase.
  • Unbundling principle. Basic and add-on services should not be mixed in ways that force users to purchase unnecessary bundles.

Common Principles for All Fee Types

Regardless of category, the guidelines recommend several overarching principles applicable to all fees:

  • Minimum service standards. Each fee type should be linked to clearly defined minimum service levels, including baseline data access, standard visibility, and appropriate service periods.
  • 15-day public consultation. Before any fee adjustment, operators should open a minimum 15-day consultation period, which should be accompanied by a summary of key issues, impacts, and the operator’s response to any feedback.
  • Fee challenge mechanism. Operators should maintain a formal process allowing users to dispute fees, with clear timelines, response procedures, and reasoning.
  • Fair exit. Cancellation procedures, especially for monthly or annual subscriptions, should be clear, reasonable, and free of excessive penalties.

Implications for Digital Platform Operators

Under the new guidelines, digital platform operators—particularly e-commerce marketplaces, food delivery apps, and similar intermediary platforms—may need to make significant operational and legal adjustments, and should review their current fee structures, disclosure practices, and terms of service for alignment with these guidelines. Key priorities include the following:

  • Preparing a consolidated fee catalog
  • Developing advance-notice and consultation procedures for fee changes
  • Implementing fee-dispute mechanisms
  • Ensuring internal cost-allocation records can be produced for regulators on request

In addition, the “1 activity = 1 fee” principle and unbundling requirements may force operators to unbundle existing combined fee packages and justify pricing with cost-based or value-based rationale. The prohibition on conditional linkage, such as suppressing product visibility for users who do not buy ads, directly limits a common monetization strategy and may affect revenue models.

RELATED INSIGHTS​ 

January 10, 2025
On January 8, 2025, Thailand’s Office of the Personal Data Protection Committee published two notifications in the Government Gazette—one for data controllers and the other for data processors—concerning exemptions for data controllers and data processors from the requirement to create and maintain records of processing activities (ROPAs) under the Personal Data Protection Act B.E. 2562 (2019). The notification for data processors took effect on January 9, 2025, the day after its publication. The notification for data controllers will take effect on April 8, 2025. The content of these notifications is identical to that in the draft versions of the notifications previously released for public consultation in October 2024. For more information on the ROPA exemptions for data controllers and data processors, or on any aspect of personal data protection in Thailand, please contact Nopparat Lalitkomon at [email protected] or Wilin Somya at [email protected].
January 9, 2025
On January 1, 2025, Myanmar’s State Administration Council enacted Cybersecurity Law No. 1/2025, which aims to regulate various aspects of digital security and online activities. The law has not yet been implemented and will come into force on a date specified by the Myanmar president, who will also provide an official adoption and compliance timeline for individuals and organizations impacted by the new regulations. Below are some of the key provisions, implications, and penalties under the Cybersecurity Law. Extraterritorial penalties. The law contains an important provision that authorizes penalties against Myanmar citizens who are found guilty of violations, even if these occur outside the country’s borders. VPN definition and regulation. Virtual private networks (VPNs) are defined by this law as specific systems that function as backup networks by using technological means in order to ensure the safety of linking networks to each other. This definition sets the framework for subsequent regulations and penalties associated with VPN usage. The law does not restrict individuals or entities from using VPNs; it regulates VPN service providers. Penalties for unapproved VPN services. Establishing a VPN or providing VPN services without approval from the designated ministry (to be appointed later by the government) can result in significant penalties. For individuals, the punishment may be imprisonment for 1–6 months, a fine of MMK 1–10 million (approx. USD 476–4,760), or both, with the proceeds of the violation being confiscated. If the violator is a company or organization, the minimum fine will be MMK 10 million, and the proceeds will be confiscated. Government oversight. The ministry designated by the government is authorized to investigate and take control of cybersecurity services and digital platform services for national defense and security purposes, or upon request from a government department or organization in accordance with respective laws. Licensing requirements. The
January 6, 2025
On December 24, 2024, the government of Vietnam issued Decree No. 163/2024/ND-CP, providing guidelines for implementing the new Telecommunications Law that took effect on July 1, 2024 (“Decree 163”). This new decree replaces Decree No. 25/2011/ND-CP and its amendments (“Decree 25”) and took effect immediately upon issuance, with regulations on data center services, cloud computing services, and basic telecom services over the internet (“over-the-top” or OTT telecom services) having an official effective date of January 1, 2025. Decree 163 introduces substantial changes across the telecom sector, covering various aspects including service provision, licensing, standards and technical regulations, quality, passive infrastructure planning, dispute resolution, and more. Hence, it is necessary for enterprises to conduct a compliance review to identify gaps between the new decree and their business models, and take necessary steps to ensure lawful business operations in Vietnam. Below are some highlights of Decree 163. Expanded Scope of Services For basic telecom services, Decree 163 has introduced machine-to-machine (M2M) communication and classified it as a basic telecom service. This establishes a regulatory framework for IoT device communication, previously unregulated in Decree 25. For value-added telecom services, in light of the new Telecommunications Law, Decree 163 provides more detailed regulations for new telecom services such as data center services, cloud computing services, and OTT telecom services, which were not addressed in Decree 25. Regulation of Three New Telecom Services Expanding on the Telecommunications Law’s definitions of data center services, cloud computing services, and OTT telecom services, Decree 163 applies a light-touch management approach to regulate these three new services, as follows: Offshore providers: Cross-border service providers are exempt from signing commercial agreements with licensed local telecom companies. They only need to notify the Vietnam Telecommunications Authority (VNTA) using the prescribed procedures and forms before offering services. Onshore providers: The foreign
December 24, 2024
On November 30, 2024, the Data Law was officially promulgated after an accelerated preparation process that began in February 2024. The Data Law is set to take effect on July 1, 2025. Having extraterritorial effect, the Data Law will impact both local and foreign individuals and enterprises. As noted in our previous legal update, the Data Law governs digital data, the National Data Center, the National General Database, digital data products and services, digital data management, and the rights, obligations, and responsibilities of agencies, organizations, and individuals related to digital data activities. This legal update provides an overview of the Data Law, with a deep focus on the key provisions likely to impact businesses operating or offering services in Vietnam. New Data Definition and Classification The Data Law broadly defines “digital data” as data about objects, phenomena, and events, which can include one or a combination of audio, images, numbers, text, or symbols represented in digital format (hereinafter referred to as “data”). This definition is very broad and potentially covers any information recorded or represented in digital forms, including personal and nonpersonal data (such as business data, transactional data, trade secrets, etc.). Data is further categorized into different types that can be used by public bodies. However, the rights and obligations associated with each type of data are not clearly addressed. The data classification criteria include: The nature of data sharing (shared data, private data, open data); The importance of data (core data, important data, and other data); Any other criteria to meet the requirements of data administration, processing, and protection, as determined by the data owner. While the Data Law requires private organizations to categorize data based on its level of importance, it still grants these organizations the right to categorize data based on other criteria. Cross-Border Data