Privacy notice — EkoTopJiwa

General Principles

EkoTopJiwa is committed to handling personal data with care and transparency. This privacy policy explains what data we collect in connection with economic mindset and spiritual management coaching services, how that data is used, and the choices available to individuals. The purpose of these practices is to provide coaching services, manage client relationships, comply with legal obligations, and improve service delivery. Information practices described here apply to data collected through EkoTopJiwa.pro, email communications, telephone, and in-person interactions at our office in Shah Alam, Selangor, Malaysia.

  • 2026-02-14
  • EkoTopJiwa, Business ID 377066971708
General Principles

We collect personal data that is either provided directly by users or generated automatically during interactions with our services. Collected data supports service delivery, communication, and administrative tasks associated with coaching engagements.

01

Definitions

This policy uses defined terms to clearly explain data handling practices and user options regarding personal data processed by EkoTopJiwa.

Personal data means any information relating to an identifiable person, including identifiers provided directly or indirectly in connection with coaching services.
Processing includes any operation performed on personal data, whether automated or manual, including collection, storage, use, transfer, and erasure.
User refers to clients, prospects, or visitors who access EkoTopJiwa.pro or receive services from EkoTopJiwa.
Service refers to all coaching services, digital materials, workshops, and related communications offered by EkoTopJiwa.
Cookies are small pieces of data stored on a user's device to enable website functionality and collect usage information.
02

What Data We Collect

We collect personal data that is either provided directly by users or generated automatically during interactions with our services. Collected data supports service delivery, communication, and administrative tasks associated with coaching engagements.

03

Data You Provide

The data you supply enables us to manage and deliver coaching services, maintain contact, and process payments in a secure and compliant manner.

  • Name and contact details to register and communicate about sessions.
  • Service preferences, intake forms, and notes required to tailor coaching programs.
  • Billing information and payment details for processing fees.
  • Consent choices and marketing preferences for communication management.
  • Optional demographic information provided for program evaluation and research.
  • Feedback, testimonials, or content you authorize for publication on EkoTopJiwa channels.
04

Automatically Collected Data

Automatic data collection supports basic site functions, security, and performance tracking to ensure a stable experience for users of EkoTopJiwa.pro.

  • IP address and connection metadata used to identify and mitigate suspicious activity.
  • Device identifiers and browser settings used to optimize site rendering and compatibility.
  • Page visit and interaction metrics to analyze trends and improve resource placement.
  • Referrer information that shows how users reach EkoTopJiwa.pro.
  • Cookie identifiers for session management and basic personalization.
  • Performance metrics and error logs captured for troubleshooting and reliability enhancements.
05

Third Parties and Subprocessors

We engage third-party subprocessors only when necessary to provide services. Contracts are used to limit use of data to specified purposes and to require adequate protections.

  • Cloud hosting providers that store website data and backups.
  • Email and communication platforms used for client contact and notifications.
  • Analytics and reporting tools to measure website usage and service performance.
06

Purposes of Processing

Processing is aligned with the needs of delivering coaching services and maintaining operational integrity for users in Malaysia and beyond where services are accessed.

  • Deliver coaching sessions, materials, and follow-up content to clients.
  • Manage appointments, invoicing, and client records for administrative accuracy.
  • Communicate service updates, policy changes, and relevant administrative notices to clients.
  • Analyze aggregated data to inform content and program development.
  • Protect the integrity and security of systems and user accounts.
  • Comply with legal obligations and resolve disputes as needed.
  • Facilitate research and evaluation when consented to by participants.
  • Support client inquiries and exercise of data subject rights.
07

Basis for Processing Personal Data

We apply appropriate legal justifications for processing based on the nature of the data and the purpose, including contractual necessity, legitimate interests, consent, or legal compliance.

  • Necessary for performance of a contract with a client to provide coaching services.
  • Legitimate interests of EkoTopJiwa to operate and secure the service infrastructure, balanced against individual rights.
  • Consent where specific communications or optional features require explicit permission.
  • Compliance with applicable laws and regulatory obligations in jurisdictions where services are offered.
08

Cookies and Similar Technologies

Cookies enable core site functionality, personalization, and measurement. Users can manage cookie settings through their browser or on-site controls where available.

Types include essential cookies for site operation, analytics cookies for performance, and preference cookies to remember user choices.

Categories are strictly necessary, performance, functional, and marketing or tracking where used with explicit consent.

To manage cookies, users can adjust browser settings to block or delete cookies. Some features of EkoTopJiwa.pro may be limited if cookies are disabled.

View full cookie details

09

Sharing and Disclosure

Data sharing is limited to service providers and parties with a legitimate need. Sharing is governed by agreements and only the minimum necessary data is disclosed.

  • Providers facilitating payments and receipt issuance.
  • Hosting and infrastructure partners that maintain servers and backups.
  • Communication platforms used to deliver scheduled messages and resources.
  • Professional service providers such as accountants or legal advisers engaged for specific purposes.
  • Regulatory or law enforcement authorities when disclosure is compelled by law.
  • Authorized subcontractors working under contract to support service delivery.
10

Cross-Border Processing

Cross-border transfers may occur when third-party service providers operate servers outside Malaysia. We assess transfer mechanisms and require protections to maintain an appropriate level of data protection.

Safeguards include contractual clauses, security assessments of providers, and limiting transfers to jurisdictions with adequate protections or additional contractual measures.

11

Data Retention

Retention periods are determined by the purpose of processing, regulatory requirements, and the need for recordkeeping. We periodically review stored data and remove it when no longer required.

Client account information is kept for the duration needed to provide services and for a reasonable administrative period afterward to meet accounting and regulatory requirements.

Transactional communications and service-related messages are retained for client service continuity and to support any potential follow-up required by either party.

Operational logs and analytics data are retained according to security and performance needs, with aggregation and anonymization where feasible.

When data is no longer necessary, it is disposed of securely. Requests for deletion are considered within the limits of legal and contractual obligations.

12

Security Measures

Protecting personal data is a priority. EkoTopJiwa employs technical safeguards such as encryption and access restrictions, paired with administrative controls like policies and staff training to reduce the risk of unauthorized access or misuse.

  • Access management and multi-factor authentication for administrative accounts.
  • Encryption for transmitted data and secure storage for sensitive records.
  • Regular security assessments, backups, and a defined incident response plan.
13

Your Rights

You may exercise rights to access, correct, or manage your personal data. Requests are handled promptly subject to verification and applicable legal considerations.

  • Access to the personal data we hold about you.
  • Correction of inaccurate or incomplete information.
  • Deletion of data where processing is no longer necessary and legal conditions are met.
  • Restriction of processing in specific circumstances defined by law.
  • Data portability where applicable, to receive data in a structured, commonly used format.
  • Objecting to processing based on legitimate interests or for direct marketing purposes.
  • Withdrawal of consent for processing activities previously consented to, without affecting prior processing.
  • Filing a complaint with a supervisory authority if you believe data protection laws have been breached.
14

EU Data Protection (where applicable)

To the extent EU data protection laws apply to specific interactions, EkoTopJiwa follows relevant GDPR principles including lawfulness, fairness, transparency, purpose limitation, and data minimization.

While EkoTopJiwa is established in Malaysia, GDPR provisions may apply in cases where EU resident data is processed. We will take appropriate measures to respect those obligations and support rights requests from affected individuals.

  • Documented legal bases, data subject rights mechanisms, and contractual safeguards for international processing where relevant.
  • We process personal data necessary for delivering coaching sessions, managing bookings, and communicating schedule updates. Processing bases include performance of a contract, compliance with legal obligations, and legitimate interests such as service improvement and fraud prevention.
  • Data processed may include contact details, payment records, session notes, and anonymized usage metrics. Sensitive data is only collected with explicit consent and handled with enhanced safeguards when applicable to spiritual or health-related discussions.
  • Where required, personal data is shared with payment processors, scheduling platforms, and trusted third-party service providers who act on our instruction and maintain appropriate security measures.

If you believe your data rights have been breached you may contact the supervisory authority in Malaysia or submit a complaint to our data protection contact. We record and contribute complaints and provide a response within the timeframes described below.

15

Your data rights

You have rights to access, correct, restrict processing, object to processing where applicable, and request the portable copy of data we hold about you. You may also request erasure of personal data, subject to legal or operational retention requirements.

[email protected]

We aim to acknowledge requests within 7 business days and provide a full response within 30 calendar days. Complex requests may require an extension, which will be communicated promptly.

16

Marketing communications

With your consent we may send informational messages about new coaching programs, educational resources, or scheduling updates. Communication channels include email, SMS, and transactional messages related to bookings.

You can opt out of marketing communications at any time via the unsubscribe link in emails, by replying STOP to SMS, or by contacting our privacy team using the details below.

17

Children and personal data

Our services are intended for adults. We do not knowingly collect personal information from individuals under the age of majority in Malaysia. If we learn that we have collected data from a minor without appropriate consent, we will take steps to delete it.

18

Third-party links

Our website may include links to external sites for resources or partner services. We are not responsible for the privacy practices or content of those sites. Review the privacy policies of third parties before providing personal information.

Third-party links

Data sharing is limited to service providers and parties with a legitimate need. Sharing is governed by agreements and only the minimum necessary data is disclosed.

Cookies and Similar Technologies

View full cookie details

19

Changes to this policy

We may update this privacy information to reflect changes in law, our services, or for operational reasons. Material changes will be published on our site with an updated effective date.