Legal

Privacy Policy

Last Updated: 10 April 2026  ·  Effective Date: 10 April 2026

Rehat Residence ("we", "us", "our") is committed to protecting the personal information of residents, their families, and visitors to our website. This policy explains what data we collect, why we collect it, how it is used, and the rights available to you under Malaysia's Personal Data Protection Act 2010 (PDPA). By using our website or engaging with our services, you agree to the practices described here.

1. Who We Are

Rehat Residence is a non-medical senior living residence operating at 23 Jalan Duta, 50480 Kuala Lumpur, Malaysia. We are the data controller for personal information collected through our website and during the enquiry and residency process. For privacy-related questions, contact us at [email protected].

2. What Personal Data We Collect

Depending on how you interact with us, we may collect the following categories of personal data:

  • Identification data: full name, identity card number (where required), date of birth
  • Contact data: email address, phone number, postal address
  • Family or emergency contact data: names and contact details of nominated next-of-kin
  • Enquiry content: messages submitted through our contact form, questions about availability or pricing
  • Website usage data: pages visited, browser type, device type, IP address, session duration (collected via analytics cookies, with your consent)
  • Dietary and lifestyle preferences: collected only from confirmed residents to support meal planning and activity coordination

We do not collect sensitive health or medical data. Rehat Residence is a non-medical facility and does not require clinical records.

3. How We Collect Data

Personal data is collected through the following channels:

  • The contact form on our website (name, email, phone, message)
  • Phone enquiries and in-person visits to the residence
  • Email correspondence initiated by prospective residents or family members
  • Residency onboarding forms completed upon move-in
  • Website cookies and analytics tools, subject to your consent preferences

4. Why We Use Your Data

We use personal data for the following purposes, each supported by an appropriate legal basis under PDPA 2010:

  • Responding to enquiries: to contact you with information about room availability and package details (legitimate interest)
  • Residency administration: to manage room arrangements, meals, activities, and communication with residents and families (contractual necessity)
  • Service improvement: to understand how our website is used and improve its content and usability (consent, via analytics cookies)
  • Legal compliance: to meet obligations under applicable Malaysian law (legal obligation)
  • Safety and security: to maintain a safe environment for residents and staff (legitimate interest)

We do not use personal data for automated decision-making or profiling.

5. Data Retention

We retain personal data only for as long as necessary for the purposes described above:

  • Enquiry and contact form data: up to 12 months from the date of enquiry, unless a residency arrangement follows
  • Resident records: for the duration of the residency and up to 7 years thereafter, in accordance with Malaysian financial and administrative requirements
  • Website analytics data: retained in aggregated, anonymised form for up to 26 months
  • Correspondence (email and written): up to 3 years from the date of the last communication

After the applicable retention period, data is securely deleted or anonymised.

6. Sharing Your Data

We do not sell personal data to third parties. We may share data in the following limited circumstances:

  • Service providers: third parties who assist with website hosting, email communication, or administrative software, bound by data processing agreements
  • Emergency contacts: nominated next-of-kin, in the event of a situation involving a resident's welfare
  • Legal authorities: where required by Malaysian law or in response to a valid legal order

All third-party processors are required to handle data in a manner consistent with PDPA 2010 requirements.

7. Cookies

We use cookies to support basic website functionality and, with your consent, to understand how visitors use our site. Essential cookies cannot be disabled as they are necessary for the site to function. Optional analytics and preference cookies are only activated if you choose to accept them via the cookie consent prompt.

You can review and update your cookie preferences at any time by visiting our Cookie Policy page.

8. Data Protection Measures

We take reasonable and appropriate technical and organisational measures to protect personal data from unauthorised access, disclosure, alteration, or loss. These include:

  • Secure HTTPS connections for all website data transmission
  • Access controls limiting staff access to personal data on a need-to-know basis
  • Regular review of third-party processors to confirm ongoing compliance
  • Staff awareness of data protection responsibilities

In the event of a data breach that may affect your rights, we will notify you and the relevant authorities in accordance with applicable Malaysian requirements.

9. Your Rights Under PDPA 2010

Under Malaysia's Personal Data Protection Act 2010, you have the following rights in relation to personal data we hold about you:

  • Right of access: to request a copy of the personal data we hold about you
  • Right of correction: to request that inaccurate or incomplete data be updated
  • Right to withdraw consent: where processing is based on your consent, you may withdraw it at any time, without affecting the lawfulness of prior processing
  • Right to limit processing: to request that we restrict how we use your data in certain circumstances
  • Right to complain: to lodge a complaint with the Personal Data Protection Commissioner of Malaysia if you believe your data has been mishandled

To exercise any of these rights, please write to us at [email protected] or visit us at 23 Jalan Duta, 50480 Kuala Lumpur. We will respond within 21 days.

10. Children's Privacy

Our website and services are directed at adults aged 18 and above, or the adult family members of prospective senior residents. We do not knowingly collect personal data from individuals under the age of 18. If we become aware that data from a minor has been submitted, we will delete it promptly.

11. Third-Party Links

Our website may contain links to external websites, such as mapping services or community resources. We are not responsible for the privacy practices of those websites and recommend that you review their policies independently before providing any personal information.

12. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make material changes, we will update the "Last Updated" date at the top of this page. Continued use of our website following any update constitutes your acknowledgement of the revised policy.

13. Contact for Data Enquiries

For any questions or requests related to this Privacy Policy or your personal data, please contact us:

  • Email: [email protected]
  • Phone: +60 3-6201 4738
  • Address: 23 Jalan Duta, 50480 Kuala Lumpur, Malaysia
  • Hours: Monday–Friday, 9am–6pm MYT