Skip to main content

Privacy Policy

Your privacy matters to us. Here's how we protect and handle your personal information at clarivonestapho.

Last Updated: March 15, 2025

Introduction and Scope

clarivonestapho ("we," "our," or "us") operates a beauty platform specializing in pedicure and manicure services in Malaysia. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website clarivonestapho.sbs or use our services.

This policy applies to all users of our platform, including visitors, registered members, and service providers. By accessing or using our services, you agree to the collection and use of information in accordance with this policy and applicable Malaysian privacy laws, including the Personal Data Protection Act 2010 (PDPA).

Information We Collect

Personal Information You Provide

  • Contact details: name, email address, phone number
  • Address information for service appointments
  • Payment information and billing details
  • Service preferences and appointment history
  • Communication records and feedback
  • Profile information and account settings

Automatically Collected Information

We automatically collect certain information when you interact with our platform, including IP addresses, browser type, device information, pages visited, time spent on pages, and referral sources. We use cookies and similar tracking technologies to enhance your browsing experience and analyze website usage patterns.

How We Use Your Information

Purpose Information Used
Service provision and appointment management Contact details, preferences, appointment history
Payment processing and billing Payment information, billing address
Customer support and communication Contact information, communication records
Platform improvement and analytics Usage data, feedback, website interaction
Marketing and promotional communications Contact details, service preferences

Legal Basis for Processing (PDPA Compliance)

Under Malaysia's Personal Data Protection Act 2010, we process your personal data based on consent, contractual necessity, legal obligations, and legitimate business interests. You have the right to withdraw consent at any time, though this may affect our ability to provide certain services.

Information Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your information only in specific circumstances outlined below, always ensuring appropriate safeguards are in place.

Service Providers and Partners

We work with trusted third-party service providers for payment processing, appointment scheduling systems, email communications, and website hosting. These partners are contractually bound to protect your information and use it only for specified purposes.

Legal Requirements

We may disclose your information when required by Malaysian law, court orders, or regulatory authorities. This includes compliance with tax obligations, anti-money laundering requirements, and other legal mandates applicable to businesses operating in Malaysia.

Your Privacy Rights

Access Right

Request a copy of all personal information we hold about you, including details about how it's being used and who it's shared with.

Correction Right

Request correction of inaccurate or incomplete personal information in our records.

Withdrawal of Consent

Withdraw your consent for specific data processing activities, such as marketing communications.

Data Portability

Request your personal data in a structured, commonly used format for transfer to another service provider.

How to Exercise Your Rights

To exercise any of these rights, contact us using the information provided at the end of this policy. We'll respond to your request within 21 days as required by Malaysian law. You may be required to verify your identity before we process your request to ensure the security of your personal information.

Data Security and Protection

We implement comprehensive security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. Our security practices include encrypted data transmission, secure server infrastructure, regular security assessments, and employee training on data protection protocols.

Technical Safeguards

  • SSL/TLS encryption for data transmission
  • Secure payment processing through PCI-compliant systems
  • Regular software updates and security patches
  • Access controls and authentication mechanisms
  • Regular backup and disaster recovery procedures

Data Retention and Deletion

We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy, comply with legal obligations, resolve disputes, and enforce our agreements. Different types of information have different retention periods based on legal requirements and business needs.

Data Type Retention Period
Account information Active account + 2 years after closure
Transaction records 7 years (tax and accounting requirements)
Marketing communications Until consent is withdrawn
Website analytics 26 months maximum

Cookies and Tracking Technologies

Our website uses cookies and similar technologies to enhance your browsing experience, remember your preferences, and analyze website traffic. You can control cookie settings through your browser, though disabling certain cookies may affect website functionality.

Types of Cookies We Use

  • Essential cookies: Required for basic website functionality
  • Performance cookies: Help us understand website usage patterns
  • Functionality cookies: Remember your preferences and settings
  • Marketing cookies: Used for targeted advertising (with consent)

International Data Transfers

We primarily store and process your data within Malaysia. However, some of our service providers may be located in other countries. When international transfers occur, we ensure appropriate safeguards are in place, including standard contractual clauses and adequacy decisions where applicable.

Any international transfers comply with Malaysian data protection requirements and include appropriate technical and organizational measures to protect your personal information during transit and storage.

Children's Privacy

Our services are intended for individuals aged 16 and above. We do not knowingly collect personal information from children under 16 without parental consent. If we become aware that we have collected personal information from a child under 16 without verification of parental consent, we will delete that information promptly.

Parents or guardians who believe their child has provided personal information to us should contact us immediately using the contact details provided below.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or service offerings. We will notify you of any significant changes by posting the updated policy on our website and updating the "Last Updated" date.

For material changes that significantly affect your rights or how we process your personal information, we will provide additional notice through email or prominent website notification at least 30 days before the changes take effect.

Data Protection Officer

We have appointed a Data Protection Officer to oversee our data protection practices and serve as your primary contact for privacy-related matters. Our DPO monitors compliance with Malaysian privacy laws and handles privacy impact assessments for new processing activities.

Contact Us About Privacy

If you have questions about this Privacy Policy, wish to exercise your privacy rights, or need to report a privacy concern, please contact us:

Email: info@clarivonestapho.sbs
Phone: +6072235452
Address: Teruntum Complex, 25200 Kuantan, Pahang, Malaysia

We aim to respond to all privacy inquiries within 21 days as required by Malaysian law.