Legal

Privacy Policy

Last Updated: 7 April 2026  ·  Effective Date: 7 April 2026


1. Introduction

Finhaven ("we", "us", "our") is committed to protecting the personal data of individuals who interact with our services. This Privacy Policy explains how Finhaven collects, uses, stores, and protects your personal data in accordance with Malaysia's Personal Data Protection Act 2010 (PDPA).

This policy applies to all personal data collected through our website at https://finhaven.live, our program enrollment processes, and direct communications with our team. By using our website or enrolling in our programs, you agree to the practices described in this policy.

For data-related enquiries, contact us at: [email protected]

2. What Personal Data We Collect

We collect the following categories of personal data:

  • Identification data: Full name
  • Contact data: Email address, phone number
  • Communication data: Messages you send through our contact form
  • Usage data: Pages visited, time on site, browser type (via analytics cookies, if consented)
  • Enrollment data: Program preferences and correspondence related to program participation

We do not collect sensitive personal data such as financial account details, identity card numbers, or health records through our website.

3. How We Collect Data

Personal data is collected through the following means:

  • The contact enquiry form on our website
  • Direct email and telephone communication
  • Program enrollment and payment processes
  • Cookies and analytics tools (only with your consent — see Section 8)

4. Legal Basis for Processing

Under the PDPA, we process personal data on the following bases:

  • Consent: For marketing communications and non-essential cookies
  • Contractual necessity: To manage your program enrollment and deliver our services
  • Legitimate interests: To respond to enquiries, improve our programs, and maintain business records
  • Legal compliance: Where processing is required by Malaysian law

5. How We Use Your Data

Your personal data may be used to:

  • Respond to your enquiries and provide program information
  • Process enrollment and confirm your place in a program cohort
  • Send you program-related communications (schedules, materials, updates)
  • Improve the quality of our programs based on feedback
  • Comply with legal and regulatory obligations under Malaysian law
  • Analyse website usage to improve user experience (with your consent)

We do not use your personal data for automated decision-making or profiling.

6. Data Sharing

Finhaven does not sell personal data. We may share your data with:

  • Service providers: Third-party tools used for website hosting, email, and payment processing, where necessary and under data processing agreements
  • Analytics providers: Google Analytics (if you consent to analytics cookies), used only in aggregated form
  • Legal authorities: Where required by Malaysian law or court order

We do not share personal data with financial institutions, insurance companies, or other commercial partners.

7. Data Retention

We retain personal data for as long as necessary to fulfil the purposes described in this policy:

  • Enquiry data: Up to 12 months from the date of last contact
  • Enrollment and program records: Up to 7 years from program completion, for record-keeping compliance
  • Analytics data: Per the retention settings of the applicable analytics tool (typically 26 months)

After retention periods expire, data is securely deleted or anonymised.

8. Cookies

We use cookies on our website. For full details on the types of cookies we use and how to manage your preferences, please see our Cookie Policy.

In summary, we use essential cookies (always active), and optional analytics, marketing, and preference cookies (active only with your consent).

9. Data Security

We implement reasonable technical and organisational measures to protect your personal data, including:

  • Secure HTTPS connections across all website pages
  • Access controls limiting who within our team can view personal data
  • Regular review of data storage and processing practices

While we take data security seriously, no online transmission or storage system is entirely secure. If you become aware of any security concerns, please contact us promptly at [email protected].

10. Your Rights Under the PDPA

Under Malaysia's Personal Data Protection Act 2010, you have the right to:

  • Access the personal data we hold about you
  • Correct inaccurate or incomplete personal data
  • Withdraw consent for processing at any time (where consent is the legal basis)
  • Request limitation of processing in certain circumstances
  • Object to processing for direct marketing purposes

To exercise these rights, contact us at [email protected]. We aim to respond within 21 days.

If you believe your data rights have not been respected, you may lodge a complaint with the Department of Personal Data Protection Malaysia (PDPD).

11. Third-Party Links

Our website may contain links to third-party websites. Finhaven is not responsible for the privacy practices of those sites. We encourage you to review the privacy policies of any external sites you visit.

12. Children's Privacy

Our programs and website are intended for adults aged 18 and above. We do not knowingly collect personal data from individuals under 18. If you believe a minor has provided us with personal data, please contact us and we will take steps to remove it.

13. Changes to This Policy

We may update this Privacy Policy from time to time. The "Last Updated" date at the top of this page reflects the most recent revision. We encourage you to review this policy periodically. Continued use of our website following a policy update constitutes acceptance of the revised terms.

14. Contact the Data Controller

Finhaven
52 Persiaran KLCC, 50088 Kuala Lumpur, Malaysia
Phone: +60 3-2381 6749
Email: [email protected]