Privacy Policy: Your Data, Our Clinic Standard

We treat your personal information like a clinical file: secure, confidential, and accessed only by those who need it to help you. This policy outlines how we protect your trust.

The Commitment We Make

At NutriEnergi, your privacy isn't a legal footnote—it's a foundational principle of our care. When you book a consultation or download a meal plan, you share sensitive details: health history, dietary preferences, sometimes even medical conditions. We view this data as a temporary tool to serve you, not an asset to hoard. Our policy is simple: collect only what is necessary to provide accurate nutritional guidance, store it with clinic-grade security, and delete it when our work is done. We do not sell your data. We do not trade your email for ad revenue. We operate under Malaysian law and align with international best practices for health data handling. Every team member—from our dietitians to our support staff—signs a confidentiality agreement that mirrors this commitment.

The only time we might share information is when you explicitly ask us to collaborate with your doctor or a specialist, or when legally compelled by Malaysian authorities. Even then, we limit the scope to the absolute minimum required. This is how we ensure that your journey with us remains a safe space for honest conversation about your health.

What We Actually Collect

  • Contact Details: Name, email, phone number—so we can confirm your booking and send reminders.
  • Health Profile: Age, weight, allergies, medical history—used solely for calculating macros and safe dietary recommendations.
  • Payment Records: Transaction IDs and billing info are processed via secure third-party gateways; we do not store card numbers.
  • Website Behavior: Basic analytics (pages visited, time spent) to improve our site, never to track you across the web.

How We Secure Your Trust

Concrete measures, not vague promises.

Encryption

All data in transit is protected by SSL/TLS encryption (the same standard used by banks). Data at rest is stored on encrypted servers with strict access controls.

Retention

Client files are kept for 7 years as required by professional standards, then securely purged. You may request early deletion at any time.

Third Parties

We use trusted payment gateways (e.g., Stripe) and booking software. They only receive the minimum data required to process transactions or schedule sessions.

Your Rights

You can request to view, correct, or delete your personal data. Email us at [email protected]; we respond within 3 business days.

A Real Scenario

If you book a consultation for Ramadan fasting guidance, you might share your medication schedule and daily routine. We use that solely to adjust your meal plan safely. That info stays in our encrypted client portal and is never added to any marketing database.

Questions You Should Ask

Clear answers to common privacy concerns.

Is my health data shared with advertisers?
No. We do not sell, rent, or trade any personal health information. Analytics are anonymized and aggregated, meaning no individual profile is ever created for advertising.
What happens if I delete my account?
Your personal data is immediately anonymized from active systems. Backups are purged within 90 days. Any clinical notes required by Malaysian law are archived offline with restricted access.
Do you use cookies for tracking?
We use essential cookies for site functionality (like keeping your booking form filled) and optional analytics cookies that require your consent. You can manage preferences anytime via our cookie banner.
Who inside NutriEnergi sees my info?
Only your assigned dietitian and essential administrative staff (for billing). Our support team cannot view your detailed health history unless you explicitly ask for help with a booking issue.
Is my data stored outside Malaysia?
We prioritize Malaysian or Singapore-based servers. If we use global providers (e.g., AWS), we ensure they comply with data residency requirements and standard contractual clauses.
What about breach notifications?
If a breach occurs, we will notify affected users within 72 hours via email, detailing what happened and steps to protect yourself.

Common Pitfalls & How We Avoid Them

Mistake: The "Form of Doom"

Many sites ask for everything upfront—IC, full address, medical history—before trust is built.

Our Fix: We collect basic contact info first. Health details are requested via a secure form only after you book, with a clear explanation of why each question matters.

Mistake: Hidden Third Parties

Using flashy plugins that send data to unknown servers.

Our Fix: We audit every tool. If it touches user data, it must have a clear privacy policy and be listed here.

Mistake: No Easy Exit

Making it hard to delete data or unsubscribe.

Our Fix: One-click unsubscribe from emails. A simple email request triggers full data deletion protocols.

Mistake: Sharing for "Insights"

Selling anonymized data to "partners" for research.

Our Fix: We never share individual data. If we publish research, it is fully aggregated and impossible to trace back to a person.

Contact Our Data Officer

For any privacy-related questions, requests, or complaints, please reach out to our Data Protection Officer. We are bound by Malaysian law and committed to resolving issues transparently.

Written Requests

NutriEnergi Sdn. Bhd.
Attn: Data Protection Officer
Level 10, Menara 3, Petronas Twin Towers
Kuala Lumpur City Centre, 50088
Malaysia

Digital Requests

Email: [email protected]
Phone: +60 3-2333 4567 (Mon-Fri 9am-6pm)