Privacy Policy
Effective Date: January 19, 2026
Last Updated: January 19, 2026
1. Introduction
Techsona.dev ("we," "us," "our," or "Techsona") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website https://techsona.dev or use our services.
We comply with the Personal Data Protection Act 2010 (PDPA) of Malaysia and international best practices for data privacy and security.
2. Information We Collect
2.1 Personal Information You Provide
When you contact us, request services, or apply for grants, we may collect:
- Contact Details: Name, email address, phone number, company name
- Business Information: Company registration details (SSM), business nature, annual turnover
- Grant Application Data: Financial statements, bank details, supporting documents for MSME Digital Grant applications
- Communication Records: Messages sent via WhatsApp, email, or contact forms
2.2 Automatically Collected Information
When you visit our website, we automatically collect:
- Technical Data: IP address, browser type and version, device type, operating system
- Usage Data: Pages visited, time spent on pages, click patterns, referral sources
- Performance Data: Load times, error logs (for website optimization)
2.3 Cookies and Tracking Technologies
We use cookies and similar technologies (local storage, session storage) to improve your browsing experience. You can control cookie preferences through your browser settings.
3. How We Use Your Information
We process your personal data for the following purposes:
- Service Delivery: To provide web development, AI solutions, and grant application services
- Grant Processing: To prepare and submit MSME Digital Grant applications to MDEC/BSN on your behalf
- Communication: To respond to inquiries, send service updates, and provide customer support
- Legal Compliance: To comply with LHDN e-invoicing requirements and other Malaysian regulations
- Website Optimization: To analyze usage patterns and improve website performance
- Marketing (with consent): To send newsletters, promotions, and relevant business updates
4. Legal Basis for Processing (PDPA Compliance)
We process your personal data based on:
- Consent: You have explicitly agreed to processing (e.g., grant applications, newsletter sign-ups)
- Contract Performance: Processing is necessary to fulfill our service agreements with you
- Legal Obligation: We must process data to comply with Malaysian laws (e.g., LHDN e-invoicing, PDPA)
- Legitimate Interests: Processing is necessary for our business operations (e.g., fraud prevention, service improvement)
5. Data Sharing and Disclosure
We do not sell your personal data. We may share your information with:
5.1 Service Providers
- Hosting Providers: Cloudflare, Vercel (for website infrastructure)
- Communication Tools: WhatsApp, email service providers
- Analytics: Google Analytics (anonymized data)
5.2 Government Agencies
For grant applications, we share necessary information with:
- MDEC (Malaysia Digital Economy Corporation)
- BSN (Bank Simpanan Nasional)
- LHDN (Lembaga Hasil Dalam Negeri) for e-invoicing compliance
5.3 Legal Requirements
We may disclose your data if required by Malaysian law, court order, or government investigation.
6. Data Retention
We retain your personal data only as long as necessary:
- Active Clients: For the duration of our business relationship + 7 years (tax/audit requirements)
- Grant Applications: 7 years from project completion (MDEC/BSN compliance)
- Marketing Contacts: Until you unsubscribe or request deletion
- Website Analytics: Anonymized data retained for 26 months (Google Analytics default)
7. Data Security
We implement industry-standard security measures:
- Encryption: SSL/TLS encryption for data transmission
- Access Controls: Limited access to personal data (need-to-know basis)
- Secure Infrastructure: Cloudflare DDoS protection, secure hosting environments
- Regular Audits: Periodic security assessments and updates
- Data Backups: Encrypted backups stored in secure locations
However, no method of internet transmission is 100% secure. We cannot guarantee absolute security.
8. Your Rights Under PDPA
You have the following rights regarding your personal data:
- Right to Access: Request a copy of your personal data we hold
- Right to Correction: Request correction of inaccurate or incomplete data
- Right to Withdraw Consent: Withdraw consent for marketing communications at any time
- Right to Data Portability: Request transfer of your data to another service provider
- Right to Limit Processing: Request restriction of processing in certain circumstances
- Right to Object: Object to processing based on legitimate interests
To exercise these rights, contact us at [email protected]. We will respond within 21 days as required by PDPA.
9. Third-Party Links
Our website may contain links to third-party websites (e.g., WhatsApp, GitHub, social media). We are not responsible for the privacy practices of these external sites. Please review their privacy policies separately.
10. Children's Privacy
Our services are not directed to individuals under 18 years old. We do not knowingly collect personal data from children. If you believe we have collected data from a child, please contact us immediately.
11. International Data Transfers
Your data may be transferred to and stored on servers located outside Malaysia (e.g., Cloudflare global network, Vercel infrastructure). We ensure such transfers comply with PDPA requirements and use appropriate safeguards (e.g., encryption, contractual protections).
12. Updates to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last Updated" date. Significant changes will be notified via email or prominent website notice.
13. Contact Us
If you have questions, concerns, or complaints about this Privacy Policy or our data practices, please contact us:
If you are not satisfied with our response, you may lodge a complaint with the Personal Data Protection Commissioner of Malaysia at www.pdp.gov.my.
Note: This Privacy Policy is designed to comply with the Personal Data Protection Act 2010 (PDPA) of Malaysia. By using our website or services, you acknowledge that you have read and understood this Privacy Policy.