BASELINE PRIVACY NOTICE

This Privacy Notice describes how Baseline, a product of Sante Solutions (“Baseline”, “we”, “us”, or “our”), collects, uses, discloses, and protects your personal data in accordance with the Personal Data Protection Act 2010 of Malaysia (“PDPA”).

By accessing or using www.baselinemy.com and our services, you consent to the processing of your personal data as described in this Privacy Notice.

1. PERSONAL DATA WE COLLECT

We may collect and process the following categories of personal data:

(a) Personal Identification Information
  • Name

  • Email address

  • Phone number

  • Age and demographic information

(b) Health and Sensitive Personal Data
  • Hormone test results

  • Medical history (e.g. PCOS, thyroid conditions)

  • Symptoms and lifestyle information

  • Menstrual and reproductive health data

Note: Under the PDPA, health-related data is classified as sensitive personal data and will be handled with enhanced safeguards.

(c) Technical and Usage Data
  • IP address

  • Browser type

  • Device information

  • Website usage data (via cookies and analytics tools)

2. PURPOSE OF PROCESSING

Your personal data is collected and processed for the following purposes

  • To provide hormone testing services and reports

  • To generate personalized health insights and recommendations

  • To improve our products, services, and user experience

  • To communicate with you regarding your results, updates, or support

  • To comply with legal and regulatory obligations

We will not process your personal data for any purpose other than those stated above without your consent.

3. CONSENT

By providing your personal data, you explicitly consent to:

  • The collection and processing of your personal data

  • The processing of your sensitive personal data for health-related insights

  • The sharing of your data with relevant service providers as described below

You may withdraw your consent at any time by contacting us (see Section 10).

4. DISCLOSURE OF PERSONAL DATA

We may disclose your personal data to:

  • Partner laboratories for test analysis

  • Logistics providers for sample collection and delivery

  • Healthcare professionals (where applicable and with your consent)

  • Technology service providers (e.g. hosting, analytics)

All third parties are required to process your data in accordance with PDPA and maintain confidentiality. We do not sell your personal data to third parties.

5. DATA SECURITY

We take reasonable technical and organizational measures to protect your personal data, including:

  • Secure servers and encrypted data transmission

  • Access controls and authentication measures

  • Limiting access to authorized personnel only

However, no method of transmission over the internet is completely secure, and we cannot guarantee absolute security.

6. DATA RETENTION

We will retain your personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Notice, including:

  • Providing ongoing health insights and tracking

  • Meeting legal, regulatory, and operational requirements

When your data is no longer required, it will be securely deleted or anonymized.

7. YOUR RIGHTS UNDER PDPA

Under the PDPA, you have the right to:

  • Request access to your personal data

  • Request correction of inaccurate or incomplete data

  • Withdraw consent to data processing

  • Limit the processing of your personal data

Requests may be subject to applicable fees and verification requirements.

8. FAILURE TO PROVIDE DATA

If you do not provide the required personal data:

  • We may not be able to provide our services

  • Your test results and insights may be incomplete or unavailable

9. COOKIES AND TRACKING

We use cookies and similar technologies to:

  • Improve website functionality

  • Analyze user behavior

  • Enhance user experience

You may manage cookie preferences through your browser settings.

10. CONTACT INFORMATION

If you have any questions, requests, or complaints regarding your personal data, please contact:

Sante Solutions (Baseline)

Name: Karen Michell Othaya Kumar
Email: admin@baselinemy.com

11. CHANGES TO THIS NOTICE

We may update this Privacy Notice from time to time. Any changes will be posted on this page with an updated effective date.

12. DATA TRANSFER OUTSIDE MALAYSIA

If your personal data is transferred outside Malaysia, we will ensure that:

  • The receiving party provides an adequate level of data protection

  • Appropriate safeguards are in place in compliance with PDPA

By using our website and services, you acknowledge that you have read and understood this Privacy Notice and agree to the processing of your personal data as described above.