You are using an outdated browser and your browsing experience will not be optimal. Please update to the latest version of Microsoft Edge, Google Chrome or Mozilla Firefox. Install Microsoft Edge

March 2, 2021

Thailand’s New Electronic Meeting Laws and Security Measures

Informed Counsel

The COVID-19 pandemic has resulted in a significant increase in the popularity of electronic meetings among businesses across the world, as physical meetings became unfeasible due to government lockdowns and regulations limiting gatherings to limit the risk of further spreading the disease. In Thailand, this turn of events has resulted in the promulgation of a new electronic meeting law to modernize rules that facilitate the convening of corporate entities’ statutory meetings as required under Thai law.

Electronic meetings in Thailand have been permitted to some degree since June 27, 2014, when the Announcement of the National Council for Peace and Order No. 74/2557 on Teleconferences through Electronic Means B.E. 2557 (2014) first allowed the practice, subject to various restrictions. However, many companies considered two strict requirements under this announcement to be impractical: at least one-third of the quorum for the electronic meeting had to physically attend the meeting at the designated meeting venue, which implies that no more than two-thirds of the quorum could choose to attend the meeting via electronic means; and all participants of the electronic meeting (whether attending electronically or in person) had to be physically present in Thailand at the time of the meeting, which effectively prohibited overseas participation.

New Rules for Electronic Meetings

The new electronic meeting law, the Royal Decree on Teleconferences through Electronic Means B.E. 2563 (2020), came into effect on April 19, 2020, replacing the 2014 order and relaxing its most onerous limitations in order to facilitate meetings of directors and shareholders via electronic means during the COVID-19 pandemic.

The key relaxations codified by the royal decree include allowing all attendees to attend meetings via electronic means, such as by phone or videoconferencing, from anywhere in the world. Furthermore, there is no longer a physical attendance requirement, and notices (and enclosures) calling a meeting can be distributed to participants via electronic mail, replacing the standard postal requirement of the 2014 announcement.

The new royal decree also needed to introduce certain statutory protocols in order to safeguard the integrity of the new meeting procedures. First, the meeting organizer must keep records of the meeting notice that is sent out electronically, and must verify the identities of the participants before the meeting starts. There must also be an audio or audiovisual record of the entire meeting (except for secret meetings), and the electronic traffic data of all attendees (i.e., the log file of usernames and login/logout dates and times) must be kept as evidence. Minutes of the meetings must also be documented, whether in an electronic or physical format.

Similar to the previous law, the new royal decree applies to board meetings and shareholders meetings of both private and public companies in Thailand, as well as to meetings of partnerships, trade associations, and chambers of commerce. Companies may choose to hold electronic meetings regardless of whether their articles of association have any provision specially permitting this. In addition, the standard rules and conditions for physical meetings still apply to electronic meetings, for instance, appointment of a proxy is allowed at a shareholders meeting but not at board meetings.

Security Measures for E-Meetings

To supplement the new royal decree, the Ministry of Digital Economy and Society (MDES) issued a new set of mandatory security standards for electronic meetings in its Notification Re: Standards for Maintaining Security of Meetings via Electronic Means B.E. 2563 (2020). The notification, which came into effect on May 26, 2020, outlines various mandatory security measures and procedures for electronic meetings. It also regulates the role and functions of the “conference control system” and the “system controller.” While the new royal decree already addressed security measures to some degree through its statutory protocols, the MDES notification added the following key requirements:

  • Method of identity check. The meeting organizer may adopt any secured method of identity verification, such as username and password or one-time password.
  • Two-way communication. The meeting must have sufficient bandwidth to provide a clear and continuous communication channel—whether via interactive audio or video communication—to allow participants to interact and express opinions to one another without interruption throughout the meeting.
  • Conference control system. The chair of the meeting (or the system controller) must have technological access to control or restrict, whether permanently or temporarily, the participation of attendees during the meeting in case of necessity or emergency.
  • Access to documents and data. Attendees must be able to access documents and data presented during the meeting.
  • Voting mechanism. The meeting must grant access to the technological tools to facilitate voting by the attendees, whether in the form of a general vote or a secret vote;
  • Storage of records. The meeting must keep records and data in connection with the meeting, including method of identity check, method and results of votes, audio or audiovisual recording (except for secret meetings), attendees’ electronic traffic data, and occurrence of disruptions during the meeting (if any).
  • Troubleshooting. Attendees must be able to report disruptions and errors that occur during the meeting, and the organizer must arrange for proper solutions and preventive measures.
  • IT security standards. The meeting must meet minimum IT security in terms of confidentiality, integrity, accessibility, privacy and protection of personal data, and other IT security measures.

It has become a general and convenient practice for electronic meetings to be conducted via free or paid conference applications or platforms, such as MS Teams, Zoom, Google Meet, and so on. The Electronic Transaction Development Agency (ETDA) is empowered to verify and certify whether the conference control systems have the technical capabilities or functions to comply with the security measures set out by the MDES notification on e-meeting security. To date, several conference control systems have voluntarily completed the ETDA’s self-assessment, but only a few have opted to apply with ETDA for its official certification. Both groups are published on the ETDA website at https://www.etda.or.th.

Meeting organizers from all Thai companies should familiarize themselves with these new laws and rules on electronic meetings and carefully choose a conference control system that both complies with the regulations and is compatible with their needs. Regardless of the platform chosen, the royal decree and the associated MDES notification have taken a much-needed, modernizing step that significantly eases the process of corporate operations in Thailand. These developments are an encouraging indication of Thailand’s intent to facilitate international business in the country, and a welcome innovation for shareholders and board members.

RELATED INSIGHTS​ 

December 30, 2025
On December 17, 2025, Laos’ Ministry of Industry and Commerce (MOIC) issued a notice introducing a new digital system that allows e-commerce businesses to obtain required certificates and licenses through an online, application-based platform. Notice No. 3988, which will take effect on February 1, 2026, introduces the E-Trust platform, a downloadable application that allows e-commerce businesses to remotely obtain acknowledgement certificates and business operating licenses. New Digital Registration Options Under the previous framework established by the Decree on E-commerce (2021), businesses were required to complete registration exclusively through paper-based submissions. The new system now offers businesses two registration options: Traditional paper-based process at the Division of E-commerce Management within the MOIC; or Electronic registration and renewal through the E-Trust platform. This change is expected to streamline procedures, reduce administrative burdens, and enhance accessibility for businesses operating outside Vientiane. The E-Trust platform facilitates compliance for both individuals and legal entities required to submit applications and renewals for required certificates and licenses. The development is particularly beneficial for businesses located in remote provinces, as it eliminates the need for physical travel and significantly accelerates processing times. Compliance Requirements and Penalties Businesses must obtain or renew the required certificates and licenses to avoid sanctions under the Decision on Fines and Other Measures for Violation of the Decree and Regulations on E-commerce (No. 2828/MOIC, dated November 11, 2025). Penalties for noncompliance may include monetary fines and other enforcement measures.
December 19, 2025
Prior to the dissolution of the House of Representatives, Thailand’s cabinet approved a draft amendment to the Administrative Procedure Act, following review by the Council of State. If enacted, this reform will fundamentally change how state agencies process business applications and appeals by imposing enforceable timelines and legal consequences for inaction. The draft directly targets a longstanding commercial frustration: applications and appeals that vanish into administrative silence, stalling investment and foreclosing judicial review across sectors ranging from real estate and manufacturing to healthcare and finance. The “Silence Means Yes” Rule for Applications At the core of the reform is a new automatic “approval by implication” for applications subject to statutory processing deadlines. If an official fails to notify an applicant of a decision within the legally prescribed period, the application will be deemed approved as a matter of law. This presumption shifts the costs of delay from businesses to the bureaucracy and gives applicants a definitive legal position once time expires. The mechanism applies to routine licensing and registration matters governed by explicit consideration periods in existing statutes or ministerial regulations. Officials may extend the decision period by up to thirty days, but only if they notify the applicant before the original deadline and substantiate that the delay arises from genuinely exceptional circumstances beyond their control. Certain sensitive applications are expressly excluded from automatic approval, including those that may significantly affect national security or defense, public safety and health, the environment or natural resources, or national cultural heritage. Once the deadline passes without a decision, businesses can proceed with deployment of capital and operations—construction, hiring, procurement, and market entry—without waiting for formal permission that may never arrive. For time-sensitive projects, this materially reduces regulatory timing risk. The “Deemed Rejection” Rule for Appeals The draft introduces a parallel “deemed rejection”
December 15, 2025
Thailand is taking steps to energize its startup scene by drafting the Startup Promotion Law. This draft law aims to remove obstacles, open new funding opportunities, and provide coordinated government support. The goal is to make it easier for Thailand-based startups to grow and compete on a global stage. Why Is This Law Needed? For many years, Thai startups have operated under traditional company law frameworks that were not designed with high-growth businesses or with fundraising opportunities in mind. Restrictions on issuing bonds, offering shares to outside investors, and repurchasing shares for employee incentive programs made it challenging for emerging companies to access capital and accelerate their growth. The draft Startup Promotion Act seeks to remove these obstacles and foster a more competitive, entrepreneur-friendly environment in Thailand. Who’s in Charge? Two main organizations will oversee the startup ecosystem: Startup Promotion Committee: This group, to be appointed by the National Science, Research, and Innovation Policy Council, will set national strategies, policies, and budget; design promotional campaign and incentives; and propose further legislative amendments to promote startups. National Innovation Agency (NIA): Under the draft act, the NIA will be the main contact for startups and will serve as the secretariat office of the Startup Promotion Committee, coordinating data, advising startups, maintaining the public registry, and providing funding and investment (grants, repayable grants, loans, and equity) under committee criteria and, where applicable, cabinet approval. What Startups Are Eligible for Benefits? To be officially recognized and access benefits, a company must: Be a private limited company less than 10 years old at the time of application. Existing companies that already exceed the 10-year threshold may still apply for startup statues within one year of the law’s enactment, as long as they otherwise still qualify for the new regime. Have average annual revenue not
December 4, 2025
Thailand has expanded the circumstances under which state agencies may bypass competitive bidding procedures to address urgent security challenges. On November 28, 2025, Thailand’s Ministry of Finance published the Ministerial Regulation Determining Cases of Procurement by Specific Method (No. 6) B.E. 2568 in the Royal Gazette, introducing a new pathway for procuring supplies and services needed to address cyber and military threats that may affect the stability of government agencies or the nation. For technology vendors, cybersecurity firms, and defense contractors, this regulatory change creates immediate opportunities to engage directly with government buyers facing urgent security challenges. New Fast-Track Category for Security Threats The regulation amends Thailand’s Public Procurement and Supplies Management Act B.E. 2560 (2017) to add a new category of procurement that qualifies for the “specific method”—a noncompetitive, direct selection process. Previously, agencies could use this expedited method only in limited circumstances, such as emergencies, cases with proprietary technology requirements, or national security operations. The new provision explicitly covers procurement of supplies related to preventing or resolving cyber or military threats that could impact the stability of a state agency or the country. This addition recognizes the urgent nature of modern security challenges, where competitive bidding timelines may leave agencies vulnerable during critical threat windows. State agencies dealing with active cyberattacks, preparing defensive measures against anticipated threats, or responding to military security concerns can now move directly to negotiate with qualified vendors rather than conducting lengthy public tender processes. Vendor Considerations Vendors offering cybersecurity solutions now have a regulatory avenue to work directly with government clients when stability concerns are present. These solutions include threat detection systems, anti-ransomware tools, incident response services, firewalls, and security consulting. Similarly, defense contractors providing military equipment or specialized security supplies can pursue direct engagement channels where traditional procurement methods would create