Heart Ticket Digital
Privacy Policy
Last updated: 8 May 2025
At Heart Ticket Digital, we believe that privacy is foundational for trust. This Privacy Policy explains how we collect, use, and protect your information when you interact with our website, products, and services. We strive to uphold your rights, protect your data, and act in full alignment with our values of clarity, integrity, and intentionality.
By accessing or using our website, you agree to the practices described in this policy. If you do not agree with our practices, please do not use our site.
1. Who We Are
Heart Ticket Digital is registered in Malaysia under Business Registration No. 202503109056 (003721915-P), operating as a mindful-media digital studio. We produce and distribute digital products such as informational ebooks, templates, toolkits, and educational content.
We engage with users through this website and related communication tools, including email forms, behavioral analytics, and performance tracking technologies.
This Privacy Policy applies to all data collected through our domain www.heartticket.digital, including the technologies, tools, and user interactions that support and personalize your experience with our site.
2. What Information We Collect
Consent and Collection Notices
Heart Ticket Digital operates in compliance with Malaysia’s Personal Data Protection Act 2010 (PDPA). At each point where we collect personal data—such as through sign-up forms, waitlists, or contact submissions—you will be presented with a clear and explicit request for consent. This typically includes one or more unticked checkboxes confirming the following:
That you agree to the terms of this Privacy Policy
That you consent to receive marketing and promotional content, where applicable
These checkboxes must be affirmatively selected before any data is submitted or used by us for those purposes.
We collect both personal and non-personal information in three main ways:
a. Information You Provide Voluntarily:
By submitting your information through our forms, you will be asked to explicitly consent to our collection and use of your data as outlined in this Privacy Policy.
This includes personally identifiable information that you provide directly to us, such as:
Name
Email address
Any data submitted through newsletter sign-ups, waitlist registrations, or direct contact forms
Any correspondence sent to us via email or embedded submission tools
b. Information We Collect Automatically:
We automatically collect technical and usage-related data when you interact with our site. This includes information from your browser, device, and navigation behavior:
IP address (used for analytics, fraud prevention, and security)
Browser type, device data, and screen resolution
Pages visited, time spent on pages, click paths
Referring URLs
Cookies, pixels, and similar tracking technologies (see Section 6)
This information helps us identify patterns, improve service quality, tailor content to user needs, and ensure our communication remains relevant and aligned with your expectations.
c. Information from Third Parties:
We may also receive supplemental information from third-party services that support our operations. This includes:
Behavioral and engagement data from analytics platforms (e.g., Google Analytics, Meta Pixel)
Email campaign performance and delivery metrics from mailing platforms
Aggregated insights from hosting and infrastructure tools
This data is used solely to improve our service delivery and user experience. We do not share your personal data with these third-party platforms for their own marketing or independent use.
3. How We Use Your Information
We use the data we collect to:
Communicate with you about updates, products, and content
Provide, personalize, and improve our services to you
Understand your interests and anticipate your digital knowledge needs based on your usage patterns
Develop features that reflect accurately how you actually use our site and resources
Refine and adapt our content to serve you more meaningfully over time, in line with our tagline, "with heart, always. ❤️"
Deliver relevant marketing and promotional messages
Maintain the security and integrity of our systems
Fulfill any legal or regulatory obligations
We do not and will not sell your personal data under any circumstance.
Any sharing of your data is limited to service providers essential for the above purposes, as detailed in Section 5, and only within the scope that we have outlined above.
4. Legal Basis for Processing
Heart Ticket Digital operates under the legal jurisdiction of Malaysia, and our use of your data is governed by the Personal Data Protection Act 2010 (PDPA). We process your personal data based on your consent, in the fulfillment of our services to you, for legitimate business interests, and in compliance with local legal obligations.
5. Third-Party Services and Data Sharing
We share your information only with trusted service providers who help us operate effectively. These may include:
Email service providers (e.g., MailerLite, ConvertKit, etc.)
Web analytics platforms (e.g., Google Analytics, Meta Pixel)
Payment processors (e.g., Stripe, HitPay, or equivalent), should we offer paid products or services in the future
Cloud hosting and infrastructure providers
These providers are bound by confidentiality obligations and are not authorized to use your data for their own purposes. We ensure that all third-party service providers implement reasonable data protection measures aligned with international best practices.
We do not share or sell your personal information to third parties for advertising purposes.
6. Cookies and Tracking Technologies
We use cookies, pixels, and similar technologies to enhance your experience and improve our website. These tools help us:
Understand visitor traffic and behavior
Measure the effectiveness of our marketing
Provide personalized or relevant content
Some of these technologies may collect information that could be considered personal data under Malaysian law. In such cases, we apply the principles of notice and consent in accordance with the Personal Data Protection Act 2010 (PDPA) in order to deliver our services to you.
You may manage or disable cookies through your browser settings at any time. Continued use of our website constitutes implied consent to the use of cookies, unless you take action to block or restrict them.
We do not use cookies to collect sensitive personal data or to sell your information to third parties.
7. International Data Transfers
Your information may be transferred to, stored, or processed in countries outside of Malaysia, including servers or service providers located in the United States, Europe, or other jurisdictions.
Where personal data is processed in Malaysia, it is subject to the Personal Data Protection Act 2010 (PDPA), regardless of where it was originally collected.
We take reasonable precautions to ensure that any international transfer of personal data is carried out in a manner that maintains confidentiality, integrity, and compliance with PDPA principles. Where necessary, we obtain your consent or ensure that contractual or technical safeguards are in place.
While recipient countries may not have laws equivalent to Malaysia’s PDPA, we require all service providers and data processors to uphold strong data protection standards consistent with the values and practices outlined in this Privacy Policy.
8. Data Retention
We retain personal data only for as long as necessary to fulfill:
The purposes described in this Privacy Policy
Legal, regulatory, or contractual requirements
Internal analytics, archival, or system integrity processes
Once personal data is no longer required for these purposes, we will take reasonable steps to securely delete, anonymize, or otherwise make the data inaccessible.
You may request deletion of your personal data at any time by contacting us at privacy@heartticket.digital. We will comply with your request unless retention is required by law. For more information on contacting us, see Section 11.
9. Children's Privacy
Our site is not intended for individuals under the age of 18. We do not knowingly collect personal data from minors without verified parental or guardian consent.
If you are a parent or guardian and believe that your child has submitted personal information to us, please contact us at privacy@heartticket.digital, and we will promptly investigate and address the issue, including the secure deletion of the data if appropriate.
10. Your Rights
Under the Personal Data Protection Act 2010 (PDPA), you have the right to:
Access your personal data
Correct any inaccurate or outdated data
Request deletion or anonymization of your data when it is no longer needed
Withdraw your consent at any time, with reasonable notice
Object to the processing of your data for direct marketing purposes
Restrict processing that may cause you harm or distress
You may exercise any of these rights by contacting us (see Section 11 below). We will respond promptly and in accordance with applicable Malaysian law.
11. Contacting Us
If you have questions or concerns about this Privacy Policy, or wish to exercise your data rights, please contact us at:
Heart Ticket Digital
Email: privacy@heartticket.digital
Website: www.heartticket.digital
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, or legal obligations. When we do, we will revise the “Last updated” date at the top of this page.
If a material change affects how we use or share your personal data, we will take reasonable steps to notify you — such as posting a notice on our website or contacting you via email, if appropriate.
You are encouraged to review this policy periodically. Your continued use of our site after any updates constitutes acceptance of the revised policy.
Thank you for trusting us. We promise to handle your data with the same care and intentionality we put into every part of Heart Ticket Digital. ❤️