Our commitment to your privacy
This Privacy Notice outlines how SG Medical Clinic collects, uses, maintains and discloses your personal data in respect of commercial transactions and how SG Medical Clinic safeguards the personal data.
“SG Medical Clinic” or “We” in this Privacy Notice refers to SKIN GYM GROUP SDN BHD, including its branches in Malaysia.
Your consent is important
When you request information or sign up for our products and services or when you enter into any commercial transactions with the SG Medical Clinic, you may be required to provide SG Medical Clinic with your personal data. In doing so, you consent to its use by SG Medical Clinic in accordance with this Privacy Notice. Your personal data may have otherwise been provided to the SG Medical Clinic by a third party (for example your spouse, a company in which you are a director, an officer or a shareholder, or a partnership in which you are a partner) for products or services that these third parties have sought from the SG Medical Clinic on pursuant to commercial transaction entered into with SG Medical Clinic. In this context, the term “you” or “your” in this Privacy Notice extends to any individual whose personal data has been provided to the SG Medical Clinic and/or has been collected in other circumstances.
We may collect your sensitive personal data (including, data relating to your physical or mental health, the commission or alleged commission of offences etc.) if you apply for certain products such as health / life insurance or housing loans, which require you to disclose such sensitive personal data to us. We will only use your sensitive personal data to provide the service(s) you signed up for. If we collect, use, maintain or disclose your sensitive personal data, we will ask for your explicit consent.
You have the choice, at any time, not to provide your personal data/sensitive personal data or to revoke your consent to SG Medical Clinic processing of your personal data/sensitive personal data. However, failure to provide such personal data/sensitive personal data or revocation of your consent to process personal data/sensitive personal data provided may result in SG Medical Clinic being unable to provide you with effective and continuous products and services.
What types of personal data do we collect?
Personal data refers to any information that relates directly or indirectly to an individual, who is identified or identifiable from that information or from that and other information in the possession of SG Medical Clinic, including any sensitive personal data and expression of opinion, video recordings made through close circuit security surveillance cameras placed for security reasons and audio recordings about the individual.
The types of personal data we collect may include, but is not limited to your name, address, other contact details, age, occupation, marital status, financial information such as your income, or income tax particulars your identity card or passport, place of birth, credit history and your transaction history.
The personal data we collect can be either obligatory or voluntary. Obligatory personal data are those that we require in order to provide you with our products and services. If you do not provide us with obligatory personal data, we would not be able to provide you with our products and services. Voluntary personal data are those that are not mandatory in order for us to provide you with our products and services. If you do not provide us with voluntary personal data, you can still sign up for our products and services. Obligatory and voluntary personal data differ for each products and services and will be indicated in the application forms.
How do we collect your personal data?
We obtain your personal data in various ways, such as:
- When you sign up for or use one of the many services we provide or when you register an account at any SG Medical Clinic websites; and/or
- When you contact the SG Medical Clinic through various methods such as application forms, emails and letters, telephone calls and conversations you have with our staff in a branch. If you contact us or we contact you using telephone, we may monitor or record the phone call for quality assurance, training and security purposes; and/or
- From our analysis of your transactions (e.g. payment history, purchases);
- We may also obtain your personal data when you participate in customer surveys or when you sign up for any of our competitions or promotions; and/or
- When we obtain any data and information from third parties (e.g. credit reference agencies, regulatory and enforcement agencies, employers, joint account holders, guarantors, legal representatives, spouses, parents, guardians, dependents and/or companies/partnership that you hold directorships, shareholdings or partnership in); and/or
- When you enter into any commercial transactions with the SG Medical Clinic including but not limited to you providing goods and/or services or your professional services; and/or
- From video recordings from close circuit security surveillance cameras and audio recordings; and/or
- From publicly available sources.
Personal data we collect from our websites
IP Address
An IP address is a number that is automatically assigned to your computer when you signed up with an Internet Service Provider. When you visit our website, your IP address is automatically logged in our server. We use your IP address to help diagnose problems with our server, and to administer our website. From your IP address, we may identify the general geographic area from which you are accessing our website. Generally we do not link your IP address to anything that can enable us to identify you unless it is required by law and regulation.
Information on Cookies
A cookie is an element of data that a website can send to your browser, which may then store it on your system. We use cookies in some of our pages to store visitors’ preferences and record session information. The information that we collect is then used to ensure a more personalised service level for our users. You can adjust settings on your browser so that you will be notified when you receive a cookie. Please refer to your browser documentation to check if cookies have been enabled on your computer or to request not to receive cookies.
Use of Your Personal Data
The Company may use Personal Data for the following purposes:
To provide and maintain our Service, including to monitor the usage of our Service.
To manage Your Account: to manage Your registration as a user of the Service. The Personal Data You provide can give You access to different functionalities of the Service that are available to You as a registered user.
For the performance of a contract: the development, compliance and undertaking of the purchase contract for the products, items or services You have purchased or of any other contract with Us through the Service.
To contact You: To contact You by email, telephone calls, SMS, or other equivalent forms of electronic communication, such as a mobile application’s push notifications regarding updates or informative communications related to the functionalities, products or contracted services, including the security updates, when necessary or reasonable for their implementation.
To provide You with news, special offers and general information about other goods, services and events which we offer that are similar to those that you have already purchased or enquired about unless You have opted not to receive such information.
To manage Your requests: To attend and manage Your requests to Us.
For business transfers: We may use Your information to evaluate or conduct a merger, divestiture, restructuring, reorganization, dissolution, or other sale or transfer of some or all of Our assets, whether as a going concern or as part of bankruptcy, liquidation, or similar proceeding, in which Personal Data held by Us about our Service users is among the assets transferred.
For other purposes: We may use Your information for other purposes, such as data analysis, identifying usage trends, determining the effectiveness of our promotional campaigns and to evaluate and improve our Service, products, services, marketing and your experience.
We may share Your personal information in the following situations:
- With Service Providers: We may share Your personal information with Service Providers to monitor and analyze the use of our Service, to contact You.
- For business transfers: We may share or transfer Your personal information in connection with, or during negotiations of, any merger, sale of Company assets, financing, or acquisition of all or a portion of Our business to another company.
- With Affiliates: We may share Your information with Our affiliates, in which case we will require those affiliates to honor this Privacy Policy. Affiliates include Our parent company and any other subsidiaries, joint venture partners or other companies that We control or that are under common control with Us.
- With business partners: We may share Your information with Our business partners to offer You certain products, services or promotions.
- With other users: when You share personal information or otherwise interact in the public areas with other users, such information may be viewed by all users and may be publicly distributed outside. If You interact with other users or register through a Third-Party Social Media Service, Your contacts on the Third-Party Social Media Service may see Your name, profile, pictures and description of Your activity. Similarly, other users will be able to view descriptions of Your activity, communicate with You and view Your profile.
- With Your consent: We may disclose Your personal information for any other purpose with Your consent.
Retention of Your Personal Data
The Company will retain Your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use Your Personal Data to the extent necessary to comply with our legal obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes, and enforce our legal agreements and policies.
The Company will also retain Usage Data for internal analysis purposes. Usage Data is generally retained for a shorter period of time, except when this data is used to strengthen the security or to improve the functionality of Our Service, or We are legally obligated to retain this data for longer time periods.
Transfer of Your Personal Data
Your information, including Personal Data, is processed at the Company’s operating offices and in any other places where the parties involved in the processing are located. It means that this information may be transferred to — and maintained on — computers located outside of Your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from Your jurisdiction.
Your consent to this Privacy Policy followed by Your submission of such information represents Your agreement to that transfer.
The Company will take all steps reasonably necessary to ensure that Your data is treated securely and in accordance with this Privacy Policy and no transfer of Your Personal Data will take place to an organization or a country unless there are adequate controls in place including the security of Your data and other personal information.
Disclosure of Your Personal Data
Business Transactions
If the Company is involved in a merger, acquisition or asset sale, Your Personal Data may be transferred. We will provide notice before Your Personal Data is transferred and becomes subject to a different Privacy Policy.
Law enforcement
Under certain circumstances, the Company may be required to disclose Your Personal Data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency).
Other legal requirements
The Company may disclose Your Personal Data in the good faith belief that such action is necessary to:
- Comply with a legal obligation
- Protect and defend the rights or property of the Company
- Prevent or investigate possible wrongdoing in connection with the Service
- Protect the personal safety of Users of the Service or the public
- Protect against legal liability
How do we protect your data?
The security of your personal data is our priority. SG Medical Clinic takes all physical, technical and organisational measures needed to ensure the security and confidentiality of personal data. If we disclose any of your personal data to our authorised agents or service providers, we will require them to appropriately safeguard the personal data provided to them.
How long may we retain your personal data?
We will only retain your personal data for as long as necessary to fulfil the purpose(s) for which it was collected or to comply with legal, regulatory and internal requirements. Afterwards we will destruct or permanently delete your data.
Changes to this Privacy Notice
Please note that we may update this Privacy Notice from time to time. If there are material changes to this Privacy Notice, we will notify you by posting a notice of such changes on our website or by sending you a notification directly. Do periodically review this Privacy Notice to stay informed on how we are protecting your information.
This Privacy Notice was last updated in August 2021.
How can you access / correct / update your personal data?
We are committed to ensure that the personal data we hold about you is accurate, complete, not misleading and up-to-date. If there are any changes to your personal data or if you believe that the personal data we have about you is inaccurate, incomplete, misleading or not up-to-date, please contact us so that we may take steps to update your personal data.
You have the right to access your personal data. If you would like to request access to your personal data, please contact us. Please note that depending on the information requested we may charge a small fee. We may also take steps to verify your identity before fulfilling your request for access to your personal data.
How may you contact us?
If you need to contact us, you may visit any of our branches, call +6011-1133 8088 / +6019-880 8829 (Paradigm Mall Petaling Jaya, Selangor) or +6010-882 2811 / +6012-590 9419 (Sutera Utama, Johor Bharu).
If you have provided the SG Medical Clinic with personal data of a third party, please ensure that you have obtained the third party’s consent in relation to the processing and disclosure of their personal data and that this Privacy Notice is brought to the attention of any such third party.
Last updated: 16 August 2021