Privacy Policy
Your privacy matters to quasentilora
Last updated: March 15, 2025
At quasentilora, we understand that managing your financial records requires trust. This privacy policy explains how we collect, use, protect, and handle your personal information when you use our financial records platform. We're committed to maintaining the highest standards of data protection while helping you organize and manage your financial information effectively.
Information We Collect
Personal Information
When you create an account with quasentilora, we collect essential information to provide our services. This includes your name, email address, phone number, and billing address. For our financial records platform, we also collect information about your financial accounts, transaction data, and related documentation that you choose to upload or sync with our system.
Financial Data
Our platform processes various types of financial information to help you maintain accurate records. This may include bank statements, receipts, invoices, tax documents, and expense reports. We only access this information with your explicit permission and use it solely to provide the services you've requested.
Important: quasentilora never sells your financial data to third parties. Your financial information is used exclusively to provide our record-keeping services and remains under your control at all times.
Technical Information
To ensure our platform operates smoothly and securely, we collect technical data including your IP address, browser type, device information, and usage patterns. This information helps us identify potential security threats, improve our services, and provide technical support when needed.
How We Use Your Information
- Providing and maintaining our financial records management platform
- Processing your financial data to generate reports, insights, and organizational tools
- Communicating with you about your account, updates, and important service notifications
- Ensuring the security and integrity of your financial information
- Improving our services based on usage patterns and user feedback
- Complying with legal obligations and regulatory requirements in Malaysia
We process your information based on several legal grounds under Malaysia's Personal Data Protection Act 2010 (PDPA). These include your consent, our legitimate business interests, contractual necessity, and compliance with legal obligations. You have the right to withdraw consent at any time, though this may affect our ability to provide certain services.
Data Storage and Security
Your financial data is stored on secure servers located in Malaysia and other jurisdictions with adequate data protection standards. We implement multiple layers of security including encryption at rest and in transit, regular security audits, access controls, and employee training on data protection practices.
Security Measure | Description | Implementation |
---|---|---|
Encryption | AES-256 encryption for data at rest | All stored data encrypted |
SSL/TLS | Secure data transmission | All connections encrypted |
Access Controls | Role-based access limitations | Minimal access principle |
Regular Audits | Quarterly security assessments | Third-party verification |
Despite our robust security measures, no system is completely immune to threats. We continuously monitor for potential vulnerabilities and maintain an incident response plan. In the unlikely event of a data breach affecting your information, we'll notify you and relevant authorities within 72 hours as required by Malaysian law.
Your Rights and Control
Under Malaysia's Personal Data Protection Act 2010 and our commitment to privacy, you have several important rights regarding your personal information. We've designed our platform to make exercising these rights straightforward and accessible.
Right to Access
You can request a copy of all personal information we hold about you. We'll provide this in a structured, commonly used format within 21 days of your request.
Right to Correction
If any of your personal information is inaccurate or incomplete, you can request corrections. Most information can be updated directly through your account dashboard.
Right to Deletion
You can request deletion of your personal information, subject to legal and contractual obligations. We'll permanently remove your data within 30 days unless retention is required by law.
Right to Data Portability
You can export your financial data in standard formats to transfer to other service providers. Our export feature supports CSV, PDF, and XML formats.
Right to Object
You can object to certain processing of your personal information, particularly for marketing purposes or automated decision-making processes.
Right to Restrict Processing
In certain circumstances, you can request that we limit how we process your information while maintaining your account and data storage.
Data Retention and Deletion
We retain your personal and financial information for as long as necessary to provide our services and comply with legal obligations. Different types of data have different retention periods based on their purpose and regulatory requirements.
Retention Periods
- Account information: Retained while your account is active, plus 7 years after closure for tax and regulatory compliance
- Financial transaction data: Retained for 7 years from the date of the transaction as required by Malaysian financial regulations
- Communication records: Retained for 3 years for customer service and dispute resolution purposes
- Technical logs: Retained for 1 year for security monitoring and system optimization
- Marketing preferences: Retained until you withdraw consent or close your account
When retention periods expire, we securely delete or anonymize your information using industry-standard data destruction methods. For physical documents or storage media, we use certified destruction services that provide certificates of destruction.
Third-Party Sharing and Integrations
quasentilora integrates with various financial institutions and service providers to offer comprehensive record-keeping capabilities. We only share your information with trusted partners who meet our strict security and privacy standards, and only when necessary to provide our services.
Service Providers
We work with carefully selected service providers for cloud infrastructure, payment processing, customer support, and data analytics. These providers are contractually obligated to protect your information and can only use it for the specific services they provide to us.
Financial Institution Connections
With your explicit consent, we connect to your bank accounts and credit cards through secure, encrypted connections to automatically import transaction data. These connections use read-only access and are protected by bank-grade security measures. You can disconnect these integrations at any time through your account settings.
Legal Disclosure
We may disclose your information when required by law, court order, or regulatory investigation. In such cases, we'll notify you unless legally prohibited from doing so. We also reserve the right to disclose information when we believe it's necessary to protect our rights, your safety, or the safety of others.
International Data Transfers
While we primarily store data within Malaysia, some of our service providers and backup systems may be located in other countries. When we transfer your personal information internationally, we ensure adequate protection through approved mechanisms such as standard contractual clauses or adequacy decisions.
Countries we may transfer data to include Singapore, Australia, and members of the European Union, all of which have been recognized as providing adequate data protection standards. For transfers to other jurisdictions, we implement additional safeguards including encryption, access controls, and contractual protections.
Cookies and Tracking Technologies
Our platform uses cookies and similar technologies to enhance your experience, maintain your login session, and gather analytics about how our services are used. We use both essential cookies required for functionality and optional cookies for analytics and preferences.
Types of Cookies
- Essential cookies: Required for login, security, and basic platform functionality
- Preference cookies: Store your settings and customizations
- Analytics cookies: Help us understand usage patterns and improve our services
- Security cookies: Detect and prevent fraudulent activity
You can control cookie settings through your browser or our cookie preference center. Disabling certain cookies may affect the functionality of our platform, but essential features will continue to work.
Children's Privacy
quasentilora's financial records platform is designed for adults and businesses. We don't knowingly collect personal information from individuals under 18 years of age. If you're under 18, please don't use our services or provide any personal information. If we become aware that we've collected information from a minor, we'll delete it promptly.
Parents or guardians who believe their child has provided personal information to us should contact our privacy team immediately. We'll investigate and take appropriate action to remove the information and prevent future collection.
Updates to This Policy
We review and update this privacy policy regularly to reflect changes in our services, legal requirements, or privacy practices. When we make significant changes, we'll notify you through email or prominent notices in our platform at least 30 days before the changes take effect.
Minor updates, such as clarifications or administrative changes, may be made without advance notice, but we'll always update the "last modified" date at the top of this policy. We encourage you to review this policy periodically to stay informed about how we protect your privacy.
By continuing to use quasentilora after policy updates take effect, you acknowledge and accept the revised privacy policy. If you disagree with changes, you can close your account before they take effect.
Privacy Questions and Contact Information
Privacy Officer
quasentilora Financial Records Platform
Jalan Punat Tanah, 88450 Kota Kinabalu, Sabah, Malaysia
Email: privacy@quasentilora.org
Phone: +6088423276
Business Hours: Monday to Friday, 9:00 AM to 6:00 PM (Malaysia Time)
If you're not satisfied with our response to your privacy concerns, you have the right to file a complaint with the Personal Data Protection Department of Malaysia or seek resolution through other available legal channels.