Privacy Policy
Last updated: 29 September 2026
Identity and Role of the Data Controller
trainlyxe operates this informational website focused on course programming topics. We act as the data controller under the Personal Data Protection Act 2010 of Malaysia. Our role involves determining the purposes and means of processing personal data collected through the site.
Scope of This Notice
This policy applies to all visitors to the website, including those who access our blog content or use the contact form. It covers individuals located in Malaysia and explains how we handle data regardless of where the site is accessed from.
Categories of Personal Data and Sources
We collect data such as names, email addresses, and messages submitted via the contact form. Additional information may include IP addresses and browsing behaviour obtained automatically through server logs. Data is sourced directly from users or through standard web technologies.
Purpose-by-Purpose Explanation of Processing
Data is processed to respond to enquiries submitted through the contact form, to maintain and improve the blog, and to ensure the site functions securely. The legal basis for these activities includes consent where forms are used and legitimate interests in operating an informational resource.
Whether Providing Data Is Required
Providing personal data through the contact form is voluntary. Refusing to supply information means we cannot respond to specific queries, though general access to blog posts and other content remains available without registration.
Cookies and Similar Technologies
The site uses cookies for basic functionality and analytics. Details are set out in our separate Cookie Policy, which is accessible from the site-wide cookie banner and explains how to manage preferences.
Processors, Recipients and Disclosures
Service providers such as hosting companies and email delivery platforms may process data on our behalf. We may disclose information if required by Malaysian law or to protect our rights in legal proceedings.
International Transfers
Some service providers may be located outside Malaysia. In such cases we rely on contractual safeguards and ensure that transfers comply with PDPA requirements for adequate protection.
Retention Periods
Contact form data is retained for up to two years after the last interaction. Log data is kept for twelve months. Blog-related analytics are stored for a maximum of three years unless a longer period is needed for legal compliance.
Security and Data-Minimisation Practices
We apply reasonable technical measures including encryption in transit and access controls. Data collection is limited to what is necessary for the stated purposes, and unnecessary fields are avoided in forms.
Data-Subject Rights
Under the PDPA you may request access to, correction of, or deletion of your personal data. Requests should be sent to [email protected] or through the contact form on our Contacts page. We aim to respond within the timelines prescribed by law.
Right to Withdraw Consent and Object to Marketing
If processing is based on consent you may withdraw it at any time by contacting us. The site does not conduct direct marketing or profiling activities.
Right to Complain
If you believe your data has been handled improperly you may lodge a complaint with the Personal Data Protection Department of Malaysia at the address published on their official website.
Children and Age Restrictions
The site is intended for users aged 18 and above. We do not knowingly collect personal data from individuals under 18. If such data is identified it will be deleted promptly.
Automated Decision-Making and Profiling
No automated decision-making or profiling that produces legal effects is carried out on this website.
Policy Changes
We may update this policy periodically. The current version is dated 29 September 2026. Continued use of the site after changes constitutes acceptance of the revised terms.
