Privacy Policy
This Privacy Policy explains how Nukmans Technology ("we", "us", "our") collects, uses, and protects your personal information when you use MyHuni.My. We are committed to handling your data responsibly and transparently.
1. Information We Collect
The information we collect depends on your role on the platform.
Management
- Full name and email address
- Phone number
- Organisation / property name and role/designation
- Profile photo (optional)
- Device token (for push notifications)
Resident
- Full name and email address
- Phone number
- National IC or passport number (for identity verification)
- Unit number
- Vehicle plate number(s)
- Profile photo
- Device token (for push notifications)
Guard
- Full name and email address
- Phone number
- IC or passport number (for identity verification)
- Profile photo
- Device token (for push notifications)
We also collect the following automatically when you use the platform:
- Usage data — features accessed, actions taken, login times
- Device and browser information (type, operating system, screen size)
- IP address
- Visitor log data (visitor name, IC/passport, entry/exit times, QR pass details)
- Cookies and similar tracking technologies
2. How We Use Your Information
We use the information we collect to:
- Create and manage your account and verify your identity
- Provide visitor pass, gate access, and resident management services
- Enable guards to verify visitor identities at entry points
- Send push notifications for visitor arrivals, approvals, and important platform updates
- Generate visitor logs, access reports, and management dashboards
- Improve the platform, fix bugs, and develop new features
- Communicate with you about your account or the service
- Comply with applicable Malaysian laws and regulations
We do not use your personal data for advertising, and we do not sell your data to third parties.
3. Data Sharing
We may share your personal data with the following trusted service providers who help us operate the platform:
| Provider | Purpose |
|---|---|
| DigitalOcean | Cloud hosting and data storage |
| Push Notification Vendors | Delivering in-app and mobile push alerts |
| Analytics Providers | Understanding platform usage (anonymised or pseudonymised where possible) |
| Payment Processors | Processing billing and subscription payments (upcoming feature) |
All third-party providers are contractually required to protect your data and use it only for the specific purpose for which it was shared. We do not authorise them to use your data for their own marketing or any other purpose.
We may also disclose your data if required by Malaysian law, court order, or to protect the rights and safety of our users and the public.
4. Storage & Security
Your data is stored on secure servers hosted by DigitalOcean. We implement the following security measures to protect your information:
- All data is encrypted in transit using HTTPS/TLS
- Role-based access controls — staff only access data they need for their duties
- Regular security monitoring and vulnerability assessments
- Authentication requirements for all platform access
While we take these precautions seriously, no system is entirely immune to security risks. In the unlikely event of a data breach affecting your rights, we will notify you as required by applicable law.
5. Data Retention
We retain personal data only for as long as necessary:
- Visitor logs — kept for 12 months from the date of the visit, then permanently deleted
- Resident data — retained for the duration of your tenancy or residency, then deleted within 90 days of account closure
- Guard accounts — deleted within 30 days of the end of their assignment or employment
- Management accounts — retained for the duration of the active subscription, plus 90 days after termination
You may request earlier deletion by contacting us. We will honour deletion requests promptly, subject to any legal obligations requiring us to retain certain data.
6. Your Rights
Regardless of your user role, you have the following rights regarding your personal data:
- Right to access — request a copy of the personal data we hold about you
- Right to correction — request that inaccurate or incomplete data be corrected
- Right to deletion — request that your data be deleted (subject to legal obligations)
- Right to withdraw consent — where our processing is based on your consent, you may withdraw it at any time
- Right to object — object to certain types of processing of your data
To exercise any of these rights, contact us at nukmans.tech@gmail.com. We will respond within 21 days.
For further information about your rights under Malaysian law, see our PDPA Notice.
7. Cookies & Analytics
We use cookies and similar technologies to maintain your logged-in session and understand how the platform is used. Specifically:
- Session cookies — keep you logged in during your visit
- Analytics cookies — help us understand which features are most used and where we can improve (data is aggregated and does not identify you personally)
You can control cookie preferences through your browser settings. Disabling cookies may prevent some platform features from working correctly.
8. Children's Privacy
MyHuni.My is intended for users who are 18 years of age or older. We do not knowingly collect personal data from children under 18. If you believe a child has registered on the platform, please contact us immediately and we will remove the account.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we make significant changes, we will notify you by email or via an in-app notice before the changes take effect. The updated policy will always show the current effective date at the top of this page.
10. Contact
For any privacy-related questions, data requests, or concerns, please contact us:
Nukmans Technology
Email: nukmans.tech@gmail.com
You may also contact the Personal Data Protection Commissioner of Malaysia at www.pdp.gov.my if you have unresolved concerns.