Privacy Policy
Your privacy is important to us. Learn how we collect, use, and protect your data.
Effective Date: [Date - e.g., October 26, 2023]
Last Updated: [Date - e.g., October 26, 2023]
1. Introduction
Kopi Glow ("We," "Us," "Our"), a student-led social business project operating under Albukhary International University ("AIU"), is committed to protecting the privacy and security of your personal information. This Privacy Policy outlines how we collect, use, disclose, and safeguard your information when you visit our website [Your Website URL - e.g., www.kopiglow.aiu] (the "Website"), including any other media form, media channel, mobile website, or mobile application related or connected thereto.
Please read this privacy policy carefully. By using the Website, you agree to the terms of this Privacy Policy. If you do not agree with the terms of this privacy policy, please do not access the site.
We reserve the right to make changes to this Privacy Policy at any time and for any reason. We will alert you about any changes by updating the "Last Updated" date of this Privacy Policy. Any changes or modifications will be effective immediately upon posting the updated Privacy Policy on the Website, and you waive the right to receive specific notice of each such change or modification.
2. Information We Collect
We may collect information about you in a variety of ways. The information we may collect on the Website includes:
a) Personal Data
Personally identifiable information, such as your name, shipping address, email address, and telephone number, and demographic information, such as your age, gender, hometown, and interests, that you voluntarily give to us when you register with the Website or when you choose to participate in various activities related to the Website, such as online chat and message boards [Remove message board mention if not applicable] and placing an order.
b) Derivative Data
Information our servers automatically collect when you access the Website, such as your IP address, your browser type, your operating system, your access times, and the pages you have viewed directly before and after accessing the Website. [Specify if you use Analytics tools like Google Analytics].
c) Financial Data
Currently, Kopi Glow processes payments via [Specify your payment methods - e.g., Cash on Delivery, Direct Bank Transfer]. We collect information necessary to facilitate these payments but **do not store full credit card numbers or sensitive payment details on our servers.** [If using a third-party payment gateway like Stripe or PayPal, state that clearly and mention that users should review the gateway's privacy policy. Example: "Financial data related to your payment method (e.g., credit card number, card brand, expiration date) may be collected by our third-party payment processor, [Payment Processor Name], when you place an order. We do not store this financial information on our systems. All payment data is encrypted and processed securely by [Payment Processor Name]. We encourage you to review their privacy policy."].
d) Order Information
Information related to the Products you purchase, such as order ID, items purchased, purchase price, shipping details, and order history.
3. How We Use Your Information
Having accurate information about you permits us to provide you with a smooth, efficient, and customized experience. Specifically, we may use information collected about you via the Website to:
- Create and manage your account.
- Process your orders and payments, and deliver the Products you purchased.
- Email you regarding your account or order confirmation and shipping updates.
- Respond to your customer service requests and inquiries.
- Send you newsletters or promotional materials [Only if you have an opt-in mechanism and state it clearly - e.g., "if you have opted-in to receive them"].
- Monitor and analyze usage and trends to improve your experience with the Website and our Product offerings.
- Prevent fraudulent transactions, monitor against theft, and protect against criminal activity.
- Comply with legal and regulatory requirements and AIU policies.
- [Add any other specific uses relevant to your project].
4. Disclosure of Your Information
We value your privacy and generally do not share your Personal Data with third parties except in the circumstances described below or with your consent:
- **Service Providers:** We may share your information with third-party vendors, service consultants, and other service providers who perform services for us or on our behalf, requiring access to such information to do that work (e.g., payment processing [if applicable], delivery services, hosting services, email delivery). These providers will only have access to the information necessary to perform their functions and are obligated to maintain the confidentiality and security of your data.
- **Legal Requirements:** We may disclose your information if required to do so by law or in the good faith belief that such action is necessary to (i) comply with a legal obligation or government request, (ii) protect and defend the rights or property of Kopi Glow or AIU, (iii) prevent or investigate possible wrongdoing in connection with the Website, (iv) act in urgent circumstances to protect the personal safety of users of the Website or the public, or (v) protect against legal liability.
- **University Oversight:** As a student project under AIU, relevant data may be accessible to authorized university personnel for oversight, assessment, or project management purposes in accordance with university policies.
- **Business Transfers [Unlikely, but include for completeness]:** If Kopi Glow undergoes a transition, such as being handed over to new student teams or potentially merging with another entity (subject to AIU approval), your Personal Data may be among the assets transferred.
We **do not sell** your Personal Data to third parties.
5. Security of Your Information
We use administrative, technical, and physical security measures designed to help protect your personal information. While we have taken reasonable steps to secure the personal information you provide to us, please be aware that despite our efforts, no security measures are perfect or impenetrable, and no method of data transmission can be guaranteed against any interception or other type of misuse. Any information disclosed online is vulnerable to interception and misuse by unauthorized parties. Therefore, we cannot guarantee complete security if you provide personal information.
For user accounts, it is crucial that you maintain the security of your password.
6. Data Retention
We will retain your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy, including for the purposes of satisfying any legal, accounting, or reporting requirements, or as required by AIU policies. When determining the appropriate retention period, we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we process it, and applicable legal requirements.
When your Personal Data is no longer needed, we will securely delete or anonymize it.
7. Your Data Protection Rights (Based on Malaysian PDPA - Verify with Legal Counsel)
Under the Malaysian Personal Data Protection Act 2010 (PDPA), you have certain rights regarding your personal data. Subject to certain exceptions provided by law, you may have the right to:
- **Access Your Data:** Request access to the personal data we hold about you.
- **Correct Your Data:** Request correction of inaccurate or incomplete personal data.
- **Withdraw Consent:** Withdraw your consent to the processing of your personal data (where processing is based on consent).
- **Limit Processing:** Request to limit the processing of your personal data.
- **Object to Processing:** Object to the processing of your personal data in certain circumstances.
To exercise these rights, please contact us using the contact information provided below. We may need to request specific information from you to help us confirm your identity.
8. Cookies and Tracking Technologies [Include/Modify if you use them]
We may use cookies, web beacons, tracking pixels, and other tracking technologies on the Website to help customize the Website and improve your experience. When you access the Website, your personal information is not collected through the use of tracking technology. Most browsers are set to accept cookies by default. You can usually choose to set your browser to remove cookies and to reject cookies. If you choose to remove cookies or reject cookies, this could affect certain features or services of our Website.
[If using Google Analytics or similar: Add a sentence like "We use Google Analytics to understand how users interact with our site. You can learn about Google's practices by going to www.google.com/policies/privacy/partners/, and opt-out by downloading the Google Analytics opt-out browser add-on, available at https://tools.google.com/dlpage/gaoptout."]
9. Children's Privacy
Our Website and Products are not intended for children under the age of 13 [or 18, depending on your target and local laws]. We do not knowingly collect personal information from children under 13 [or 18]. If we become aware that we have collected personal information from a child under the relevant age without verification of parental consent, we will take steps to remove that information.
10. Contact Us
If you have questions or comments about this Privacy Policy, or if you wish to exercise your data protection rights, please contact us at:
Kopi Glow Project
c/o [Your Specific Department or Faculty, if applicable]
Albukhary International University
[Full AIU Address]
Alor Setar, Kedah, Malaysia
Email: [Your Project Email Address]