TGS Compass Logo
// COMPLIANCE & LGPD

Privacy Policy & Data Protection in Brazil

TGS Compass Auditores Independentes Sociedade Simples is strictly committed to client confidentiality, professional auditing secrecy, and full compliance with Brazil’s General Data Protection Law (LGPD — Law No. 13,709/2018). This policy transparently governs the collection, processing, and protection of corporate and personal information.

Formal guidelines regarding data governance, international confidentiality protocols, and data subject rights.

// SECTION 01

1. Data Controller Identification

The legal controller of personal and corporate data processed through this website and preliminary professional relations is:

Corporate Name: TGS Compass Auditores Independentes Sociedade Simples

Headquarters: Rua Campos Sales, 490, 14° andar, Santo André - SP, Brazil, Postal Code 09015-320

Data Protection Officer (DPO): privacidade@tgsbr.net

// SECTION 02

2. Collected Data & Legal Purpose

TGS Compass collects only the minimal data strictly necessary to facilitate institutional communication, proposals, and advisory engagements:

  • Contact and Meeting Forms: Name, corporate email, telephone, company name, and brief scope of inquiry under LGPD Art. 7, V (preliminary procedures at the data subject's request).
  • Technical Browsing Data: Anonymous IP logs and browser headers required strictly for server security, cyber protection, and bot interception.
  • Zero Data Monetization: TGS Compass never sells, rents, or distributes client data to marketing aggregators or commercial third parties.
// SECTION 03

3. Professional Auditing Secrecy

As a licensed independent auditing firm registered with the Federal Accounting Council (CFC) and the Brazilian Securities Commission (CVM), TGS Compass is legally subject to strict statutory confidentiality standards under NBC TA and NBC PA 01. Client documents, trade secrets, and financial ledgers are protected under bilateral Non-Disclosure Agreements (NDAs).

// SECTION 04

4. Third-Party Sharing Protocols

Data sharing is restricted to indispensable circumstances:

  • IT & Cloud Infrastructure: Encrypted enterprise cloud hosting complying with ISO/IEC 27001 security standards.
  • TGS Global Network: Transferred across borders solely upon explicit client request for international dual-audit engagements.
  • Statutory Authorities: Disclosed only upon formal legal compulsion by competent Brazilian judicial or regulatory authorities (CVM, Federal Revenue).
// SECTION 05

5. Your Legal Rights (LGPD Art. 18)

Data subjects may exercise their rights of access, rectification, portability, and erasure at any time by contacting our Data Protection Officer at:

privacidade@tgsbr.net

// ETHICAL GOVERNANCE

Questions regarding compliance or client data protection?

Our compliance and DPO team is at your disposal to answer inquiries.