Privacy Policy
Last updated: 19 May 2025
This Privacy Policy explains how cuebera.com (collectively, “Cuebera”, “we”, “us”, “our”) collects, uses, discloses and safeguards your personal information when you visit or make a purchase from cuebera.com or otherwise interact with any of our online or offline services (the “Services”). It is drafted to meet the requirements of the Malaysian Personal Data Protection Act 2010 (PDPA) and its subsidiary legislation.
By accessing or using the Services you acknowledge that you have read and understood this Privacy Policy. If you do not agree, please do not access or use the Services.
1. Updates To This Privacy Policy
We may revise this Privacy Policy to reflect changes in our practices, the law or operational needs. When we do, we will post the updated version on this page and change the date above. Where required by law, we will notify you and obtain your consent to material changes.
2. How PDPA Applies To Cuebera
Under the PDPA we are a “data user”. We comply with the Act’s seven Personal Data Protection Principles:
- Notice & Choice – you are reading our notice now and may choose whether to provide personal data.
- Purpose Limitation – we process data only for purposes described in section 4 below.
- Disclosure Limitation – we disclose data only to the parties set out in section 5.
- Security – we adopt the measures in section 7.
- Retention – we keep data only for the periods in section 8.
- Data Integrity – we take reasonable steps to keep data accurate and up‑to‑date.
- Access & Correction – you have the rights described in section 9.
3. The Personal Information We Collect
Category | Examples | Obligatory? | Consequence Of Non‑Provision |
---|---|---|---|
Contact Details | name, billing & shipping address, phone, email | Yes | We cannot deliver your order or contact you |
Order & Payment Details | purchased items, bank‑in slip / FPX or card confirmation, delivery status | Yes | Order cannot be processed |
Account Credentials | username, password, security questions | Voluntary | You may checkout as a guest, but will lose account benefits |
Customer Support Content | emails, chat transcripts, RMA forms, photos of faulty goods | Voluntary | We may be unable to resolve your query efficiently |
Usage Data | IP address, device & browser type, pages visited, cookies, interaction timestamps | Collected automatically | Some site functions may not work; analytics accuracy reduced |
We obtain the above either directly from you, automatically (via cookies and similar technologies) or from third‑party service providers such as WooCommerce (a WordPress plugin), payment gateways and logistics partners.
4. Why We Use Your Information
Purpose | Legal/PDPA Basis |
---|---|
Provide & Fulfil The Services – process orders, accept payment, arrange delivery, handle returns | Contract performance (PDPA s.6) |
Account Administration – create and maintain your Cuebera account | Contract performance; legitimate interests |
Customer Support & Communications – respond to enquiries, issue service notices | Legitimate interests to operate our business |
Marketing – send you product updates, promotions and newsletters | Your consent (you may opt out at any time) |
Security & Fraud Prevention – detect and prevent fraudulent or malicious activity | Legitimate interests; legal obligation |
Analytics & Site Improvement – understand how visitors use our site, troubleshoot, test features | Legitimate interests |
Legal & Compliance – comply with tax, accounting and other statutory duties | Legal obligation |
We never use your personal data to profile you in a way that produces legal or similarly significant effects.
5. How We Disclose Personal Information
We disclose your data only for the purposes above and only to:
- Service Providers – e.g. WooCommerce (store hosting), Stripe (payments), Lalamove / GD Express (couriers), cloud hosting and IT vendors, marketing‑email platforms. They may only process the data as instructed by us.
- Affiliates Within The cuebera.com Group for internal administration on a need‑to‑know basis.
- Professional Advisers, Regulators Or Law‑Enforcement Agencies where required by law or to protect our rights.
- Prospective Buyers Or Investors in the event of a merger, acquisition or asset sale, provided they agree to confidentiality.
We do not sell or rent your personal information to any third party.
6. Cookies And Similar Technologies
We use first‑party and third‑party cookies, pixels and local storage to:
- remember your basket and language preference;
- perform checkout and payment security functions;
A detailed list of cookies currently in use is available here. You may refuse cookies via your browser settings, but certain site features (e.g. cart, login) may stop working.
7. Data Security
We implement reasonable administrative, technical and physical safeguards, including:
- TLS 1.2/1.3 encryption for data in transit;
- role‑based staff access, password complexity rules and optional two‑factor authentication;
- continuous network‑level monitoring and malware scanning.
No method of transmission or storage is perfectly secure, but we continuously review and enhance our controls.
8. Data Retention Schedule
Data Type | Retention Period |
---|---|
Order & Tax Records | 7 years from the end of the financial year (statutory requirement) |
Customer Account (Active) | For the lifetime of the account |
Customer Account (Inactive) | Deleted 12 months after last login or order |
Abandoned Cart Data | 30 days |
Marketing Consents | Until you withdraw consent |
Customer‑Service Correspondence | 24 months from ticket closure |
Server & Security Logs | 12 months |
When the retention period expires, data is securely deleted or anonymised.
9. Your PDPA Rights
Subject to verification of your identity, you may:
- Access your personal data that we hold.
- Correct personal data that is inaccurate, incomplete, misleading or not up‑to‑date.
- Withdraw Consent or opt out of marketing communications at any time.
- Object / Restrict processing for direct marketing or if it causes unwarranted distress.
To make a request, please email us at support@cuebera.com. We may charge the statutory RM10 fee for a Data Access Request and will respond within 21 days (access) or 7 days (correction) as required by the PDPA.
If you believe we have failed to handle your personal data properly, you may lodge a complaint with the Personal Data Protection Commissioner of Malaysia.
10. Cross‑Border Transfers
Cuebera is hosted on WooCommerce (a WordPress plugin), whose primary servers are located in the United States, Canada and Ireland. By completing a purchase you acknowledge that your personal data will be transferred to and stored on servers outside Malaysia. Such transfers are permitted under the Personal Data Protection (Transfer of Personal Data To Places Outside Malaysia) Order 2013. WooCommerce (a WordPress plugin) contractually commits to protect your data to a standard comparable to the PDPA.
11. Children’s Data
Our Services are intended for persons aged 18 and above. We do not knowingly collect personal data from anyone under that age. If you are a parent or guardian and believe your child has provided us with personal data, please contact us so we can delete it.
12. Contact Us
Cuebera.com
Email (General Enquiries): support@cuebera.com
Tel: +60 18‑668 9731
© 2025 Cuebera. All rights reserved.