1. Scope
This policy applies to personal data processed by Fyntra Digitalwhen you access or use our Services, contact us, or interact with our marketing and events. It does not cover third-party websites, apps, or services linked to from our Services.
2. Data we collect
- Account & identity data: name, username, email, phone number, billing/shipping info, company details, role.
- Usage & device data: pages viewed, clicks, feature usage, device identifiers, IP address, app version, browser type, operating system, language, time zone, and approximate location (derived from IP or device settings).
- Transactional data: purchases, subscription details, payment status (we rely on payment processors for card data and do not store full card numbers).
- Support & communications: messages, emails, recordings (where permitted), feedback, and survey responses.
- Content you provide: files, text, images, or other materials you upload to the Services.
- Sensitive data: We do not intentionally collect sensitive personal data (e.g., health, biometric, or religious information) unless required and expressly provided with your consent or as permitted by law.
3. Sources of data
- Directly from you when you create an account or communicate with us.
- Automatically when you use the Services (via cookies, SDKs, and similar technologies).
- From third parties, such as analytics providers, advertising partners, public databases, and resellers/partners.
4. How we use data
- Provide, operate, and improve the Services.
- Create and manage accounts, billing, and customer support.
- Personalize features and content, including recommendations.
- Monitor usage, troubleshoot, and protect against fraud, abuse, and security incidents.
- Comply with legal obligations and enforce agreements.
- Communicate with you about updates, security alerts, and marketing (you can opt out of marketing at any time).
- Conduct research, statistics, and product development using aggregated or de-identified data where possible.
5. Legal bases (GDPR/UK GDPR)
Where the GDPR or UK GDPR applies, we rely on the following legal bases:
- Performance of a contract to provide the Services you request.
- Legitimate interests such as improving and securing the Services.
- Consent for certain analytics/marketing or where required.
- Legal obligations to comply with applicable laws.
- Vital interests in rare cases to protect life or safety.
7. Analytics & advertising
We may work with analytics and advertising partners to understand product usage and to show relevant ads on our site and elsewhere. These partners may set cookies or collect identifiers to measure campaigns and prevent fraud. You can opt out of interest-based advertising via your device settings or industry tools such as the NAI/DAA opt-out pages where available.
9. International transfers
We may transfer, store, and process your personal data outside your country of residence. Where required, we implement appropriate safeguards, such as standard contractual clauses or other lawful transfer mechanisms.
10. Data retention
We retain personal data only for as long as necessary to fulfill the purposes described in this policy, comply with legal obligations, resolve disputes, and enforce our agreements. Retention periods vary based on data type and context.
11. Security
We use administrative, technical, and physical safeguards designed to protect personal data. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.
12. Children’s privacy
Our Services are not directed to children under 13 (or the equivalent age of consent in your jurisdiction). We do not knowingly collect personal data from children. If you believe a child has provided us personal data, please contact us and we will take appropriate steps to delete such data.
13. Your rights
Depending on your location and applicable law, you may have rights regarding your personal data, such as:
- Access, rectification, and deletion.
- Portability and restriction of processing.
- Objection to processing based on legitimate interests.
- Withdraw consent where processing is based on consent.
- Opt out of marketing communications at any time (e.g., via email unsubscribe links).
- For California residents (CCPA/CPRA): rights to know, delete, correct, and opt out of certain sharing; non-discrimination for exercising rights.
- For Malaysia residents (PDPA): rights to access and correct personal data and to withdraw consent, subject to legal limitations.
- For EEA/UK residents (GDPR/UK GDPR): right to lodge a complaint with your local supervisory authority.
To exercise these rights, see Contact us below.
14. Do Not Track
Some browsers transmit “Do Not Track” (DNT) signals. Because there is no common industry standard for responding to DNT, we currently do not respond to such signals. We will update this policy if that changes.
15. Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version and revise the “Last updated” date above. Material changes may be communicated by additional notice.
16. Contact us
Fyntra Digital Sdn. Bhd.
Attn: Data Protection Officer
[Your Registered Address Here]
Email: [email protected]
Website: https://fyntra.digital