Privacy Policy
Last Updated: June 26, 2025
This Privacy Policy describes how Susfarm Sdn Bhd (Company Registration No. 202301035171 (1529094-U)) (“Susfarm”, “we”, “us”, or “our”) collects, uses, processes, discloses, and protects your personal data when you visit and make purchases from The Levfy e-shop (the “Website” or “levfy.com”).
We are committed to protecting your privacy and ensuring that your personal data is handled in compliance with the Personal Data Protection Act 2010 (PDPA) of Malaysia. By accessing or using our Website and services, you signify your agreement to the terms of this Privacy Policy. If you do not agree with any part of this policy, please do not use our Website or services.
By accessing or using our Website and services, you signify your agreement to the terms of this Privacy Policy. If you do not agree with any part of this policy, please do not use our Website or services.
What Information We Collect
We collect various types of personal data to provide and improve our services to you.
1. Information You Provide Directly to Us:
When you interact with our Website, you may provide us with the following personal information:
- Account Creation: Email Address, Password.
- Checkout Process: Name (First and Last Name), Email Address, Phone Number, Shipping Address, Billing Address. While payment details (like credit card numbers) are processed directly by our payment gateway, we collect necessary billing information to facilitate the transaction.
- Customer Support Interactions: When you contact our Customer Support (via WhatsApp, email, etc.), we collect your name, contact details, order details, and the content of your communication to assist you effectively.
- Preferences & Feedback: Information you provide regarding your preferences, dietary restrictions, or responses to surveys and feedback forms.
2. Information Collected Automatically (Technical Data):
When you visit and use our Website, certain information is automatically collected, including:
- Device and Usage Information: Your IP address, browser type, device type, operating system, pages viewed, time spent on pages, clickstream data, and referring URLs.
- Cookies and Tracking Technologies: We use cookies, pixels (e.g., Facebook Pixel, TikTok Pixel), and other similar tracking technologies for:
- Essential Website Functions: To enable core Website features, like managing your shopping cart.
- Analytics: To understand how users interact with our Website, using services like Google Analytics and Google Tag Manager (GTM). This helps us improve our Website’s performance and user experience.
- Marketing & Advertising: To deliver relevant advertisements to you on other platforms and to track the effectiveness of our ad campaigns.
3. Information from Other Sources:
We may receive information from third-party service providers (e.g., payment gateways) to confirm transaction details, but we do not actively collect personal data from other external sources unless explicitly disclosed.
How We Use Your Information
We use the personal data we collect for the following primary purposes:
- Account Management: To create, maintain, and manage your user account on our Website.
- Order Processing & Fulfillment: To process your purchases, confirm your orders, pack and deliver your Products, and manage payment transactions via our payment gateway (HitPay).
- Customer Support: To respond to your inquiries, provide assistance, and resolve any issues you may encounter with your orders or our services. Communication: To send you updates regarding your orders, delivery status, and other service-related communications.
- Website Improvement: To analyze Website usage patterns, troubleshoot technical issues, and enhance the overall functionality and user experience of our Website.
- Marketing & Promotions: With your explicit consent, we may use your email address to send you marketing and promotional communications, such as newsletters, special offers, and information about new Products or services. You will always have the option to withdraw your consent for these communications.
- Personalization: To tailor your experience on our Website based on your preferences and previous interactions.
- Legal Compliance & Fraud Prevention: To comply with applicable laws, regulations, and legal processes, and to prevent, detect, and investigate fraudulent or illegal activities.
How We Share Your Information
We take your privacy seriously and do not sell your personal data to third parties. We only share your information with third parties in the following limited circumstances:
- Service Providers: We engage trusted third-party service providers to perform functions on our behalf. These may include, but are not limited to:
- Payment Gateway Providers, for secure payment processing.
- Delivery and Logistics Partners, for delivering your orders.
- Website Hosting and Platform Providers, for hosting and maintaining our Website.
- Analytics Service Providers, for website usage analysis.
- Marketing, Advertising, and Audience Targeting Partners, to deliver relevant advertisements and track campaign effectiveness.
- General Service Providers: We may also engage other service providers for email marketing, customer relationship management (CRM), or other operational support. We ensure that all such providers are bound by confidentiality obligations and comply with relevant data protection laws.
- Legal Compliance: We may disclose your personal data if required to do so by law, court order, or governmental regulation, or if we believe that such disclosure is necessary to protect our rights, property, or safety, or the rights, property, or safety of others.
- Business Transfers: In the event of a merger, acquisition, sale of assets, or other business transaction, your personal data may be transferred as part of that transaction. We will notify you of any such transfer and any changes to the Privacy Policy.
Data Retention
We retain your personal data for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. This duration is also determined by relevant Malaysian laws and regulatory obligations. When your personal data is no longer required, we will securely delete or anonymize it.
Data Security
We implement appropriate technical and organizational measures to protect your personal data from unauthorized access, loss, misuse, alteration, or disclosure. These measures include:
- Using a secure server/hosting provider with industry-standard security protocols.
- Implementing SSL/TLS encryption for data transmission over the internet.
- Restricting access to personal data to authorized personnel only on a “need-to-know” basis.
- Regularly reviewing and updating our security practices.
While we strive to protect your personal data, no method of transmission over the Internet or method of electronic storage is 100% secure. Therefore, we cannot guarantee its absolute security.
Your Rights
Under the Personal Data Protection Act 2010 (PDPA) of Malaysia, you have certain rights concerning your personal data:
- Right to Access: You have the right to request access to the personal data we hold about you.
- Right to Correction: You have the right to request correction or rectification of any inaccurate or incomplete personal data we hold about you.
- Right to Withdraw Consent: You have the right to withdraw your consent for us to process your personal data for specific purposes, particularly for marketing communications. We will provide clear options for you to opt-out of marketing emails. Please note that withdrawing consent may affect our ability to provide certain services to you.
How to Exercise Your Rights: To exercise any of these rights, please submit your request by contacting our Customer Support via email as provided in Section 10. We may require you to verify your identity before processing your request.
International Data Transfers
Some of our service providers may be located outside of Malaysia. As such, your personal data, or portions thereof, may be transferred to, processed, and stored in countries outside of Malaysia.
When we transfer your personal data internationally, we take all reasonable precautions and exercise due diligence to ensure that the personal data will not be processed in any manner which would be a contravention of the PDPA. We rely on your consent for such transfers where applicable and ensure our service providers uphold adequate data protection standards.
Children's Privacy
Our Website and services are not intended for individuals under the age of 18. We do not knowingly collect personal data from children under 18. If we become aware that we have inadvertently collected personal data from a child under 18, we will take steps to delete that information as quickly as possible.
Changes to This Privacy Policy
We may update or revise this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. Any changes will be effective immediately upon posting the revised Privacy Policy on this page.
The “Last Updated” date at the top of this page will indicate when the Privacy Policy was last revised. Your continued use of the Website after any such changes constitutes your acceptance of the updated Privacy Policy. We will not notify users via email for changes to this Privacy Policy.
Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data protection practices, please contact our Customer Support:
WhatsApp: +6019-982 7955
Email: ask@levfy.com
Business Address: No. 7, Jalan Pelepas 4/4, Taman Perindustrian Tanjung Pelepas, 81550 Gelang Patah, Johor, Malaysia
