LEGAL & INDUSTRIAL COMPLIANCE

Shiftix Privacy Policy Malaysia & Industrial Data Security

Effective Date: January 1, 2026 | Last Updated: August 2026 | Official PDPA Notice

The Shiftix Privacy Policy Malaysia outlines our rigorous commitment to safeguarding enterprise information, factory telemetry, and personal identity. As an advanced industrial technology provider headquartered in Selangor, Shiftix Sdn Bhd adheres strictly to the Personal Data Protection Act 2010 (PDPA) of Malaysia, ensuring full transparency in how we collect, process, and secure shop floor intelligence.

Shiftix Privacy Policy Malaysia Official PDPA and Industrial IoT Data Security Compliance

1. Malaysia PDPA Compliance Notice & Regulatory Alignment

Shiftix Sdn Bhd operates in full compliance with the Malaysia PDPA Compliance Notice standards established and enforced by the Department of Personal Data Protection (JPDP Malaysia). We process commercial and personal data solely for legitimate business operations, smart factory deployments, and authorized customer support.

Our technical and operational architecture complies strictly with the seven statutory PDPA principles:

  • General Principle: Lawful, fair processing executed strictly with explicit customer consent.
  • Notice and Choice Principle: Clear, upfront notification regarding the exact purpose of corporate and personal data collection.
  • Disclosure Principle: Strict prohibition of sharing data with third parties without written authorization.
  • Security Principle: Robust hardware-level and cloud-layer encryption to block unauthorized access.
  • Retention Principle: Data is permanently erased or anonymized once the operational and commercial purpose is concluded.
  • Data Integrity Principle: Systematic verification to ensure all production and administrative records remain accurate.
  • Access Principle: Unrestricted mechanisms for authorized clients to audit, correct, and retrieve their stored data.

2. Industrial IoT Data Protection & Shop Floor Telemetry

Our Industrial IoT Data Protection architecture maintains a strict technological boundary between business identity data and raw machine telemetry. When connecting to legacy CNC machines, plastic injection molders, or stamping presses via Shiftix edge gateways, our system captures physical operational states without touching confidential CAD files, proprietary part blueprints, or intellectual property.

🔒 Edge-Level Hardware Encryption

All machine vibration, motor current, and run/stop signals are encrypted directly at the edge layer using TLS 1.3 before transmission.

⚙️ Zero Unnecessary Payload

We extract only the mechanical telemetry required for OEE calculation and micro-stop detection, preventing operational risk.

3. Scope of Information We Collect and Process

To provide seamless smart factory execution, Shiftix categorizes and manages collected information into two distinct repositories:

A. Commercial Account & Technical Contact Records

Includes names, corporate email addresses, direct phone numbers, job titles, and factory site locations submitted when requesting technical consultations through our Contact Us Portal.

B. Smart Factory Telemetry Security & Execution Logs

Includes machine identifiers, shift work-order status, operator barcode timestamps, and station cycle times processed through our integrated Smart Factory MES & APS Solutions. Our smart factory telemetry security protocols logically isolate these datasets to prevent any cross-tenant data contamination.

4. Enterprise Data Processing, Retention & Cloud Isolation

Shiftix does not sell, rent, or monetize your industrial datasets. To guarantee high availability and data sovereignty for Malaysian manufacturers, all core database clusters are deployed within AWS Tier-4 Data Centers located in Malaysia.

Multi-Tenant Data Isolation: Every manufacturing client is assigned isolated database schemas and dedicated cryptographic keys. Data retention strictly mirrors the commercial contract duration plus mandatory statutory audit windows.

5. Exercising Your Data Subject Access Request Malaysia

Under the statutory provisions of the Personal Data Protection Act 2010, you retain full ownership of your corporate and personal information. You may file a formal Data Subject Access Request Malaysia at any time to inspect, modify, or permanently delete your records.

Shiftix Data Protection Officer (DPO)

Email: dpo@shiftix-tech.com

Phone / WhatsApp: +60 14-383 4931

Office: Shiftix Sdn Bhd, 53, Jln Bestari 2B, Bandar Bestari, 41200 Klang, Selangor, Malaysia.

6. Continuous Security Governance and Policy Updates

Shiftix maintains an active Information Security Management System (ISMS) featuring semi-annual third-party vulnerability assessments and continuous penetration testing. All software engineering updates undergo automated static and dynamic security analysis.

This Shiftix Privacy Policy Malaysia is reviewed semi-annually to reflect evolving PDPA guidelines and international industrial cybersecurity standards. Continued utilization of Shiftix software signifies full acceptance of these terms.

Secure, Isolated & Built for Malaysian Industry

Have concerns about legacy machine telemetry, cloud security, or PDPA compliance? Speak directly with our industrial IoT engineers to evaluate a secure, zero-risk deployment roadmap for your factory.

Consultation-Led Approach
100% Data Sovereignty (AWS Malaysia)
Malaysian Industry Specialists