Privacy Policy

Last Updated: January 15, 2026

Introduction

Prismara is committed to protecting your personal information and respecting your privacy rights. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you interact with our AI integration services, visit our website, or engage with our team.

We operate in compliance with Malaysia's Personal Data Protection Act 2010 (PDPA) and maintain data protection standards appropriate to the services we provide. If you have questions about this policy or our data handling practices, please contact us at [email protected].

Information We Collect

Personal Information You Provide

When you engage with our services, we may collect information that you voluntarily provide, including:

  • Name and contact details (email address, phone number, business address)
  • Company information and role within your organization
  • Information shared during Discovery Workshops or consultation sessions
  • Project requirements and business process details relevant to AI implementation
  • Communications with our team through email, phone, or other channels

Information Collected Automatically

When you visit our website, we may automatically collect certain technical information:

  • IP address and general location data
  • Browser type and version
  • Device information
  • Pages visited and time spent on our website
  • Referral sources and navigation patterns

This information helps us understand how visitors use our website and improve our services. For detailed information about cookies, please see our Cookie Policy.

How We Use Your Information

We use collected information for the following purposes:

  • Service Delivery: To provide AI integration services, conduct workshops, implement solutions, and deliver support as agreed
  • Communication: To respond to inquiries, schedule consultations, provide project updates, and share relevant information
  • Improvement: To understand user needs, improve our services, and develop new offerings that serve Malaysian businesses better
  • Legal Compliance: To meet regulatory requirements and protect our legal rights
  • Analytics: To analyze website usage and optimize user experience (with your consent where required)

We process your personal data based on legitimate legal grounds including consent, contractual necessity, legal obligations, and legitimate business interests. Marketing communications require explicit consent, which you may withdraw at any time.

Information Sharing and Disclosure

We do not sell your personal information. We may share information with:

  • Service Providers: Third-party vendors who assist with hosting, analytics, or communication services. These providers are contractually obligated to protect your data and use it only for specified purposes.
  • Professional Advisors: Legal, accounting, or consulting professionals when necessary for business operations, bound by professional confidentiality obligations.
  • Legal Requirements: When disclosure is required by law, court order, or to protect rights, safety, or security.

Project-specific data shared during AI implementations remains under your control. We implement appropriate safeguards and maintain confidentiality agreements where applicable.

Data Security

We implement appropriate technical and organizational measures to protect your personal information:

  • Encryption of data in transit and at rest where appropriate
  • Access controls limiting data access to authorized personnel
  • Regular security assessments and updates
  • Secure hosting infrastructure with reputable providers
  • Staff training on data protection obligations

While we take reasonable precautions, no method of transmission or storage is completely secure. We cannot guarantee absolute security but commit to notifying affected individuals promptly if a data breach occurs.

Data Retention

We retain personal information only as long as necessary for the purposes outlined in this policy:

  • Contact information for active client relationships and reasonable period afterward
  • Project documentation according to contractual agreements and professional standards
  • Financial records as required by Malaysian tax and business regulations
  • Website analytics data typically retained for 12-24 months

When information is no longer needed, we securely delete or anonymize it. Retention periods consider legal obligations, business needs, and your rights.

Your Privacy Rights

Under Malaysian law and our commitment to data protection, you have the following rights:

  • Access: Request information about personal data we hold about you
  • Correction: Request correction of inaccurate or incomplete information
  • Erasure: Request deletion of your personal data in certain circumstances
  • Objection: Object to processing based on legitimate interests
  • Withdrawal: Withdraw consent for processing where consent was the legal basis
  • Data Portability: Request transfer of certain data to another provider
  • Complaint: Lodge a complaint with the Personal Data Protection Commissioner if you believe your rights have been violated

To exercise these rights, contact us at [email protected]. We will respond within the timeframes required by Malaysian law. Some rights may be subject to limitations based on legal obligations or legitimate business needs.

Cookies and Tracking Technologies

Our website uses cookies and similar technologies to improve user experience and analyze site usage. Categories include:

  • Essential Cookies: Necessary for website functionality (cannot be disabled)
  • Analytics Cookies: Help understand site usage (requires consent)
  • Preference Cookies: Remember your settings (requires consent)

You can manage cookie preferences through our cookie consent tool or browser settings. For comprehensive information, see our Cookie Policy.

Third-Party Links

Our website may contain links to external sites not operated by us. We are not responsible for the privacy practices of third-party websites. We encourage you to review privacy policies of any external sites you visit.

Children's Privacy

Our services are intended for businesses and professional users. We do not knowingly collect information from individuals under 18 years of age. If we become aware of such collection, we will delete the information promptly.

International Data Transfers

We primarily process data within Malaysia. If data transfer outside Malaysia becomes necessary for service delivery, we implement appropriate safeguards including contractual protections and ensuring adequate data protection standards in recipient jurisdictions.

Updates to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of material changes by updating the "Last Updated" date and, where appropriate, providing direct notice through email or website announcement.

Continued use of our services after policy updates constitutes acceptance of the revised policy. We encourage periodic review of this page to stay informed about our data protection practices.

Contact Information

For questions, concerns, or requests regarding this Privacy Policy or our data handling practices, please contact:

Data Protection Contact

Email: [email protected]

Phone: +60 3-7492 6158

Address: A-15-08, Tropicana Gardens Office Tower, No. 2 Persiaran Surian, 47810 Petaling Jaya, Selangor, Malaysia

We aim to respond to privacy-related inquiries within 30 days. For complaints or unresolved concerns, you may contact the Personal Data Protection Commissioner of Malaysia.

Governing Law

This Privacy Policy is governed by Malaysian law, specifically the Personal Data Protection Act 2010 and related regulations. Any disputes will be subject to the jurisdiction of Malaysian courts.