Privacy Policy
EPOS GLOBAL SOLUTIONS SDN. BHD.
1. Introduction
This Privacy Policy sets out our practices and policies regarding your Personal Data (defined below), including its collection, storage, use, and disclosure (“Privacy Policy”). This Policy also serves as notice pursuant to the Personal Data Protection Act 2010 (PDPA) and its regulations.
2. Scope
This Privacy Policy applies to all units, departments, and operations of EPOS Global Solutions Sdn. Bhd. (Registration No. 202401006826 (1552676-X), 32A-2, Jalan Kuchai Maju 8, Off Jalan Kuchai Lama, 58200 Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, Malaysia) and the websites operated by EPOS Pte. Ltd. (UEN 201529028W, 2 Leng Kee Road #02-07 Thye Hong Centre, Singapore 159086), including but not limited to the following domains and sub-domains: https://www.epos.com.sg/ (“Website”), unless a different privacy policy is displayed.
3. Consent and Age
By accessing our Website, communicating with us, opting-in when presented with choices, or voluntarily providing your personal data, you confirm that you are at least 18 years old and expressly consent to our collection, storage, use, and disclosure of your Personal Data as described in this Policy.
4. Children under 18
Where processing involves individuals under 18, we require verifiable consent from a parent or legal guardian. By submitting such data, you confirm that appropriate consent has been obtained.
5. Third-party websites
Our Website may contain links to other websites. EPOS is not responsible for the content or privacy practices of such sites. Third-party sites may open in a separate browser window or within a frame indicating that the content is not part of our Website. We encourage you to read their privacy statements when leaving our Website.
6. Personal Data collected
We may collect various information relating directly or indirectly to you, including:
- Name, NRIC/Passport number, occupation, contact details, gender, birth date, addresses (including email and IP address), billing/credit card info, bank account numbers, purchase history.
- Device/system information, including identifiers, system logs, technical data.
- Personal data of your customers uploaded or collected via our Website (names, contacts, birthdays, emails, transactions, loyalty programs).
7. Sources of Personal Data
Personal Data may be collected from:
- You: when requesting services, registering, providing feedback, visiting our Website, or communicating with us.
- Your employees or representatives: e.g., contacting support on your behalf.
- Third parties: business partners, financial institutions, regulatory bodies, verification providers.
- Publicly available sources.
- With your consent or legally purchased sources.
- Merchants using EPOS systems: e.g., during purchases, sign-ups, or promotions.
8. Purpose of collection
Personal Data is collected for:
- Providing services.
- Understanding preferences, improving services, enhancing your experience.
- Handling complaints, inquiries, feedback, and requests.
- Conducting investigations or proceedings.
- Creating profiles, analytics, statistics, market research, surveys.
- Behavioral analysis, tracking spending patterns.
- Sending Updates (marketing) – with opt-out option.
- Risk management, audits, tax reporting, compliance.
- Integration with third-party services (plugins/APIs).
- Training, onboarding, or product updates.
- Record-keeping.
- Legal compliance.
- Other ancillary or related purposes.
9. Data minimization
We collect only Personal Data necessary for the above purposes. Failure to provide mandatory data may prevent us from providing services.
10. Disclosure of Personal Data
We may share your Personal Data with:
- Our officers, employees, and group companies.
- Data processors, professional advisors, and service providers.
- Authorized distributors, resellers, service centers.
- Agents, legal representatives, guarantors.
- Insurers.
- Government or regulatory authorities as required by law.
11. No sale of Personal Data
We do not sell or disclose your Personal Data without your consent, except as permitted by law.
12. Aggregated data
We may share anonymized, aggregated demographic data with partners or advertisers.
13. International transfer
Your Personal Data may be stored or transferred outside Malaysia. We ensure reasonable measures to maintain confidentiality and security.
14. Safeguards for overseas transfer
We transfer Personal Data only to jurisdictions compliant with PDPA or equivalent laws, with appropriate safeguards.
15. Security measures
Data entered on our Website is encrypted via SSL.
16. Mobile/WhatsApp marketing
We may use your mobile number (including WhatsApp) to send marketing materials if you have provided consent. We will not share your number without consent.
17. Your rights
You have the right to:
- Access and correct your Personal Data.
- Withdraw consent to processing.
- Restrict processing.
- Erase Personal Data.
- Opt-out of marketing communications.
18. Contact
19. Fees and refusal
Requests for access/correction may incur fees and be processed within 21 days. We may refuse requests for legitimate reasons and will inform you.
20. Data management principles
We ensure Personal Data is: lawfully processed, collected for legitimate purposes, adequate, accurate, retained only as needed, and secure.
21.Technical/organizational measures
- Secure encryption for online transactions.
- Encrypted storage via third-party cloud services.
- Strict handling for physical forms.
22. Data disposal
Personal Data no longer required will be destroyed/deleted per a 24-month inactive data schedule.
23. Data breaches
We will notify authorities and affected individuals per PDPA guidelines and maintain breach records for at least 2 years.
24. Consent assumption
By providing Personal Data of others, you confirm consent from those individuals.
25. Policy amendments
We may amend this Policy and will post the latest version on our Website.
26. English vs Bahasa Malaysia
This Policy is issued in both English and Bahasa Malaysia. In case of discrepancies, the English version prevails.
