1. Introduction and Scope

This Privacy Policy (“Policy”) outlines how memoryprinted.com (referred to as “We,” “Us,” or “Our”) collects, uses, maintains, and discloses your Personal Data in compliance with the Personal Data Protection Act 2010 (“PDPA”) of Malaysia.

This Policy applies to all individuals who interact with us, including customers, visitors to our website, and others who purchase our products (custom printed t-shirts and merchandise) or use our services (“Data Subjects” or “You”).

Note on Language: As required under Section 7 of the PDPA, we are committed to providing this Notice in both the National Language (Bahasa Malaysia) and English. The Bahasa Malaysia version is available [Insert Link to Malay Version].

2. The Personal Data We Collect (General & Notice and Choice Principles)

In the course of conducting commercial transactions, we collect Personal Data that is necessary and directly related to the provision of our custom printing services.

Categories of Personal Data We Collect include:

CategoryData ExamplesPurpose
Identity & Contact DataName, billing and shipping addresses, telephone number, email address.Order processing, delivery, and communication.
Transaction DataDetails about products and services purchased (e.g., shirt size, color, design specifications).Order fulfillment and record-keeping.
Payment DataCredit/debit card details (only if processed directly, though usually processed by a third-party gateway), bank account information, and transaction history.Processing payments for orders.
Technical & Usage DataIP address, browser type, operating system, time zone setting, and information about how you use our website (e.g., through cookies).Website functionality, security, and internal analytics.
Content/Design DataAny images, text, logos, or other graphic files you upload for the purpose of custom printing on the merchandise.Crucial: To fulfill the custom printing order.

3. Purpose of Processing Your Personal Data (General Principle)

We process your Personal Data solely for the following lawful purposes which are directly related to our business activities:

  • Order Fulfillment: To process your purchase orders, manufacture the custom merchandise, and deliver the goods to your specified address.
  • Payment Processing: To process and facilitate all financial transactions related to your purchases.
  • Customer Service: To manage your account, provide customer support, handle queries, manage returns, and respond to complaints.
  • Improvement & Research: To conduct internal research, analysis, and development activities (e.g., data analytics) to improve our products, services, security, and website functionality.
  • Direct Marketing (Subject to Consent): To send you promotional materials, newsletters, and information about new products, services, or special offers, only if you have provided your express consent to receive such communications.
  • Legal & Compliance: To comply with any applicable laws, regulations, legal processes, government requests, or to enforce our Terms and Conditions.

4. Disclosure of Your Personal Data (Disclosure Principle)

We do not sell, rent, or trade your Personal Data. We will only disclose your Personal Data to the following classes of third parties, both within and outside Malaysia, for the purposes stated above, and where necessary with your consent:

  • Payment Processors: Third-party payment gateways (e.g., Stripe, PayPal, local Malaysian bank processors) to process your transactions.
  • Logistics & Courier Services: Third-party delivery and shipping companies (e.g., PosLaju, J&T Express, DHL) to deliver your orders.
  • Service Providers: IT, website hosting, and maintenance providers who assist us in operating our business.
  • Professional Advisors: External auditors, legal advisors, and consultants.
  • Regulatory Bodies: Government authorities, regulatory bodies, and law enforcement agencies as required by law (e.g., Personal Data Protection Commissioner).

Cross-Border Transfer: In some cases, your data may be transferred, stored, and processed in a jurisdiction outside Malaysia. We will only do so if we are satisfied that the recipient jurisdiction provides a substantially similar level of protection to that afforded by the PDPA, or if we have obtained your explicit consent for the transfer.

5. Security and Safeguards (Security Principle)

We are committed to ensuring the confidentiality and security of your Personal Data. We have implemented practical steps and robust security safeguards to protect your data from loss, misuse, modification, unauthorized access or disclosure, alteration, or destruction. These measures include:

  • Implementing access control systems and registration to monitor who can access Personal Data.
  • Using secure server infrastructure and encryption (SSL/TLS) for data transmission.
  • Ensuring third-party processors we engage are bound by contractual data protection obligations.

6. Retention of Personal Data (Retention Principle)

We will retain your Personal Data only for as long as is necessary to fulfill the purpose(s) for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. Once the data is no longer necessary, we will take reasonable steps to ensure that it is destroyed or permanently deleted.

7. Your Rights (Access and Access Principle)

Under the PDPA, you have the following rights regarding your Personal Data:

  1. Right to Access: You have the right to request access to your Personal Data held by us.
  2. Right to Correction: You have the right to request us to correct any inaccurate, incomplete, misleading, or outdated Personal Data.
  3. Right to Withdraw Consent: You have the right to withdraw your consent for the processing of your Personal Data at any time. Withdrawal of consent may result in us being unable to provide you with certain services (e.g., fulfilling your order if we can no longer process your address).
  4. Right to Prevent Direct Marketing: You have the right to instruct us to cease, or not to begin, processing your Personal Data for the purposes of direct marketing.

8. Cookies and Tracking Technology

Our website uses cookies to enhance user experience, track site usage, and analyze marketing effectiveness. You can choose to disable cookies through your browser settings, but this may affect the functionality of our website.

9. Contact Information

If you have any questions about this Policy, wish to exercise your rights, or have a complaint regarding the handling of your Personal Data, please contact us at:

Data Protection Officer (DPO) / Contact Person

Company Name: memoryprinted.com

Email: [Insert DPO or General Inquiry Email Address]

Telephone: [Insert Contact Number]

Mailing Address: [Insert Physical Address in Malaysia]


Actionable Compliance Points for the Website Owner:

  1. Provide Malay Translation: The PDPA requires the notice to be in both English and the National Language (Bahasa Malaysia). You must obtain an accurate, professional translation of this policy.
  2. Implement Consent Checkbox: For direct marketing (e.g., email newsletters), you must have a clear, opt-in checkbox on registration/checkout forms that explicitly asks for the customer’s consent.
  3. Security Measures: Ensure your hosting, payment systems, and internal data storage comply with the Security Principle (e.g., use SSL, secure payment gateways, restrict internal access to customer data).
  4. Registration: Depending on the nature and scale of your business, you may be required to register as a Data User under the PDPA. You should check the Personal Data Protection (Class of Data Users) Order 2013 and consult a lawyer.