Carsome Sdn Bhd ("Carsome") is committed to protecting the personal data, provided by you, in accordance with the Personal Data Protection Act 2010 ("PDPA"). This policy (which may be amended or updated by Carsome from time to time) seeks to outline how Carsome intends to deliver all the rights and protections that you are entitled to under the PDPA. This policy is provided in English [and Malay languages] and should there be any conflict in meaning between the English [and Malay] language version, the English language version shall prevail.
1. DISCLOSURE OBLIGATION
a. Your information is essential for Carsome to render its services to you. As part of the quotation, account opening and order fulfilment processes, Carsome will be asking you for your personal information in order to provide an appropriate quotation and services tailored to your needs
b. You have the opportunity to make choices. If you do not provide this data, it will not be possible for you to open an account with Carsome or Carsome will not have sufficient information to provide relevant services to you.
c. You shall provide up-to-date and complete personal data to Carsome to enable providing appropriate and quality services to you.
2. NATURE OF PERSONAL DATA
The nature of the personal data that Carsome collect, and where it comes from may include:
a. personal data as provided by you on account opening applications, subscribing to Carsome service, seeking a quotation for a policy, for a renewal, for an endorsement, of for making a claim or for requesting further services, fulfillment of your orders or other forms, which may include but is not limited to
(i) your name;
(ii) date of birth;
(iii) home address or correspondence address;
(iv) bank account details, including account numbers;
(v) payment details, including credit card and banking information;
(vi) contact details, including contact name, telephone number and email address;
(vii) information required for the verification of your identity, including Identity Card number and passport number;
(viii) personal details such as age, race, nationality, languages; height, weight;
(ix) employment details such as employer’s name, designation, years of service, income;
(x) lifestyle such as frequency of exercise, smoking habits, driving behavior, food intake, and;
(xi) medical reports or records.
b. personal data about your transactions with Carsome, its affiliates or third parties, such as account balances, payment history and account activity; or
c. personal data about you as a result of correspondences with you, referral programmes, contests or surveys.
d. details of your visits to Carsome website including, but not limited to, traffic data, location data, weblogs and other communication data, whether this is required for Carsome own billing purposes or otherwise and the resources that you access.
e. personal data about yourself which you may have provided to third parties insurers for the purposes of your insurance policy.
Cookies are data files that contain and collect data. When you browse Carsome Site, cookies will be stored in your computer's hard drive. This helps Carsome to provide you with a good experience when you browse Carsome Site and also allows Carsome to improve Carsome Site (see below for more details). Carsome will not collect any personal data from you under this circumstance. You have a choice not to accept the cookies, but if you do, certain functionality may not be available.
Carsome Site uses the cookies to, distinguish you from other users of Carsome Site, to enable you to move throughout Carsome Site, to enable Carsome to customise your experience of Carsome Site to you and your interests by remembering your preferences as to language, font size etc., to determine previous and/or subsequent websites that you have visited to enable a better understanding of your behaviour and preferences, and to improve our Site through monitoring usage trends.
3. USERS OF PERSONAL DATA
All your personal data will be kept confidential but such personal data may be processed or used by the following persons:
a. by Carsome and/or any of its affiliates or associates;
b. any director, officer or employee or agent of Carsome;
c. any nominee or custodian in whose name securities or other property may be registered;
d. any contractor, agent or service provider which provides administrative, data processing, financial, computer, telecommunications, payment or securities clearing, lawyers, advisers, professional or other services authorized by Carsome when carrying out your instructions and/or Carsome business;
e. any of Carsome actual or proposed assignee, or participant or sub-participant of Carsome rights in respect of a customer, to evaluate the transaction intended to be the subject of the assignment, participation or sub-participation;
f. any governmental, regulatory or other bodies or institutions, whether as required by law or regulations applicable to Carsome and/or any of Carsome affiliates or associates;
g. any third party designated or appointed by you with reasons that are accepted by Carsome;
h. a drawee bank providing a copy of a paid cheque (which may contain information about the payee) to the drawer; or
i. to such parties as may be permitted under Malaysian laws.
4. USES OF PERSONAL DATA
All your personal data may be processed or used for the following purposes:
a. carrying out new or existing client verification;
b. ongoing account administration and services in connection with your account, including the collection of amounts due, enforcement of security, charge or other rights and interests;
c. identifying policies of insurance for which you may be eligible and to obtain quotes on your behalf designing further products and services or marketing Carsome’s existing or future products and services to you;
d. application for policies of insurance that you make, and any policy endorsements, cancellations or renewals forming part of Carsome’s records in accordance with relevant laws;
e. issuance and administration of policies of insurance that you take out including claims handling;
f. providing on the terms of any other agreements and services relating to you;
g. any purpose relating to or in connection with compliance with any law, regulation, court order or order of any regulatory body;
h. any other purpose relating to the execution of your instructions or in connection with Carsome’s business or dealings;
i. conducting market research including the number of users, profile of users and using such analysis for Carsome’s business plans or the enhancement of Carsome’s products and services;
j. to communicate with you and respond to your inquiries;
k. facilitate your participation in Carsome’s rewards program and notification to you or
l. for all other purposes incidental and associated with any of the above.
Carsome will not intentionally disclose your personal data to any third party for any purpose other than for such purposes to which your consent encompasses except in the following circumstances:
a. you have given Carsome your consent for the disclosure;
b. the disclosure;
(i) is necessary for the purpose of preventing or detecting a crime, or for the purpose of investigations; or
(ii) was required or authorized by or under any law or by the order of a court;
c. Carsome disclosed your personal data in the reasonable belief that Carsome had in law the right to disclose the personal data to the other person;
d. Carsome disclosed your personal data in the reasonable belief that Carsome would have had your consent if you had known of the disclosing of your personal data and the circumstances of such disclosure; or
e. the disclosure was justified as being in the public interest in circumstances as determined by the Malaysian Minister of Communications and Multimedia.
For the avoidance of doubt, Carsome may disclose your personal data to any of our officers, employees, agents or affiliates on a need-to-know basis without obtaining your prior consent.
5. USE OF PERSONAL DATA IN DIRECT MARKETING
Your personal data may be used by Carsome in direct marketing. In this regard, please note the following:
a. the following classes of services, products and subjects may be marketed:
(i) financial, insurance and investment related services and products as well as any associated promotional offers;
(ii) reward, loyalty or privileges programmes and related services and products;
(iii) services and products offered by Carsome co-branding partners; and
(iv) donations and contributions for charitable and/or non-profit making purposes;
b. the above services, products and subjects may be provided or (in the case of donation and contributions) solicited by Carsome and/or:
(i) any of Carsome and or it’s affiliates and associates;
(ii) third party financial institution, insurance and investment services providers;
(iii) third party reward, loyalty, co-branding or privileges programme providers;
(iv) Carsome co-branding partners; and
(v) charitable or non-profit making organizations.
6. RIGHTS OF ACCESS AND CORRECTION
You have the right to access, correct and update your personal data in accordance with the PDPA. In general, and subject to certain exemptions, you are entitled to:
a. enquire whether Carsome holds your personal data;
b. request access to your personal data within a reasonable time, at a prescribed fee, in a reasonable manner and in a form that is intelligible;
c. request the correction of your personal data; and
d. be given reasons if a request for access or correction is refused, and object to any such refusal.
7. SECURITY AND RETENTION
Once Carsome have received your Personal Data, Carsome will use strict procedures and security features to try to prevent unauthorised access, including anti-virus software. Any personal data which you provide to Carsome is stored on Carsome secure servers. Any payment transactions and all pages that require the submission of personal data will be encrypted using Secure Socket Layer (“SSL”) technology.
Where Carsome have given you (or where you have chosen) a password which enables you to access certain parts of Carsome’s website, you are responsible for keeping this password confidential. You shall not share your login and password with anyone.
Carsome will only keep your personal data for as long as it is necessary to achieve the purpose for which it was collected as well as to ensure due compliance with the law. Once they are no longer required to be retained by Carsome, Carsome will take all reasonable steps to ensure that your Personal Date is destroyed and permanently deleted.
8. LAW AND JURISDICTION
The Malaysian courts will have exclusive jurisdiction over any claim arising from, or related to, any transaction entered into between Carsome and you.
9. CONTACT CARSOME
If you do not wish for your data to be used in direct marketing or wish to request access to and/or correct your personal data, please email the request to the Compliance Officer at email@example.com
Dated: 1 October 2018