Kuala Lumpur Sports Medicine Centre Privacy Policy

This privacy policy (and the amendment thereof which may be made from time to time) (“Privacy Policy”) outlines and explains on the policies and principles pertaining to the personal data that we hold from you, as the customer or patient or the individual providing the personal data or any information being the subject matter of this Privacy Policy to us. This Privacy Policy sets out the manner we deal with your personal data including the manner in which we collect, process, use, disclose, transfer and store your personal data. This Privacy Policy applies to our day-to-day operations including visitors to our website.

Our services is provided to you subject to the Terms and Conditions of Service and other rules, policies and regulations which have been issued or will be issued by us from time to time, and this Privacy Policy should be read into those terms and conditions, rules, policies and regulations to the extent as relevant and applicable. In certain specific instances, this Privacy Policy may also be supplemented by additional policies and terms, or any short notice or statement used in connection with particular purpose(s) or on various forms issued by us from time to time.

This Privacy Policy constitutes written notice to you in accordance with the Data Protection Principles under the Data Protection Act, 2010 (“Act”). In addition, this Privacy Policy shall also constitute as a written notice (as the context shall require) in relation to personal data of any other individual who is not a customer or patient but whose data is required to be collected by us by reason of, or incidental to, the provision of any services to our customers or patients. Kindly review this Privacy Policy on a periodic basis to stay informed of your rights and the protection accorded to you under the said Act.

By using this website and/or by submitting your personal data to us, you have agreed to be bound by this Privacy Policy in processing your personal data as outlined and explained in this Privacy Policy.

(In this Privacy Policy, the term “we”, “our”, “us”, “ours” refers to Kuala Lumpur Sports Medicine Centre or any of its subsidiaries or affiliates or any related companies or any other third party authorised for the collection of the personal data or any information being the subject matter of this Privacy Policy.)

1. Consent to the Processing and Use of Personal Data

Personal data in this Privacy Policy refers to any information that relates directly or indirectly to an individual, who is identified or identifiable from that and other information in our possession, including any sensitive personal data (i.e. personal data consisting of information as to your physical or mental health, political opinions, religious beliefs or other beliefs of a similar nature, the commission or alleged commission of any offence) and expression of opinion about the individual, where such individual refers to any of our customers or patients or any other individual providing the personal data or any information being the subject matter of this Privacy Policy to us, including individual who is not a customer or patient but whose data is required to be collected by us by reason of, or incidental to, the provision of any services to our customers or patients.

It is obligatory that you supply us with your personal data when you engage us for services and before we may carry out the services. In this regard, by providing us your personal data and your continued usage of our services, it is deemed that you have given your consent for us to use and process your personal data in accordance with this Privacy Policy. Failure to consent to the above may result in us being unable to provide you or continue to provide you the services as may be required in your best interest.

In relation to personal data of any other individual who is not a customer or patient but whose data is required to be collected by us to facilitate the provision of our services to the customer or patient, the customer or patient confirms and warrants that he has obtained the consent of such individual for the personal data of such individual to be collected and processed by us, or in the event that this is not practicable, it is deemed that such individual has given consent for us to process and use his personal data by continuous engagement for our services to be provided to the customer or patient.

When we need to collect your personal data for a purpose not set out in this Privacy Policy, we will endeavour to notify you and obtain your consent before such collection, or in the event that this is not practicable, as soon thereafter as is reasonable. In respect of your sensitive personal data, we will only use your sensitive personal data to provide the service(s) you request from us (or in facilitating the provision of our services) to the extent as permissible under the Act, and where it is practicable, we will endeavour to notify you and obtain your consent before the processing and use of your sensitive personal data.

You have the choice, at any time, not to provide your personal data and/or sensitive personal data, or to revoke your consent for us to process or use your personal data and/or sensitive personal data by writing to us at the address as shown in Section 12 of this Privacy Policy. However, failure to provide such data or revocation of your consent may result in us being unable to provide you or continue to provide you the services as may be required in your best interest.

2. Types of Personal Data

We obtain your personal data through various ways in the ordinary course of carrying out the Purposes as stated in this Privacy Policy, and this may involve personal data receiving from you through our communication with you via a variety of means and channels, including through our centre(s) (including branches), our marketing schemes, admission procedures, consultations, through the internet or via post, email, phone, fax or text messaging on your mobile phone. We may also obtain your personal data from a third party in the event you falls within one of the category of person covers in Section 9 of this Privacy Policy as well as from authorised third parties (e.g. credit reference agencies, regulatory and enforcement agencies, financial or banking institutions).

The types of personal data which we collect vary depending upon the scope of services you engage us for. Nevertheless, the information generally comprises the following:

(a) Name;
(b) Date of birth;
(c) Passport or identity card number;
(d) Home address, telephone number, facsimile number or email address;
(e) Photograph;
(f) Age, gender, marital or family status;
(g) Ancestry, race, nationality or ethnic origin;
(h) Religion or religious belief, political belief, association or activity;
(i) Blood type, finger prints, hereditary characteristics or DNA;
(j) Education history, employment or occupational history;
(k) Source of income or financial circumstances, activities or history;
(l) Information relating to bank accounts details or related information required for terms of payment;
(m) Personal health information (as defined hereunder); and/or
(n) Other information which we may request at any point to enable us to proceed or to continue with the provision of our services and/or which is necessary for the Purposes as set out in Section 3 below.

“Personal health information” means any recorded information which includes (without limitation) any case notes, laboratory reports, radiographs and other types of recorded information about an identifiable individual that relates to:
(i) the individual’s health or health care history;
(ii) the provision of health care to the individual;
(iii) any information relating to the payment for health care provided to the individual; or
(iv) such other information required to diagnose, treat or maintain the individual’s physical or mental condition, including the history of drug, device or other item pursuant to a prescription.

(the above-listed types of personal data is also applicable to the collection of personal data of any other individual who is not our customers or patients but whose data is required to be collected by us to facilitate the provision of our services to the customer or patient, to the extent as relevant and applicable, and includes information in respect of the relationship between such individual with the particular customer or patient.)

Where we collect information through our website, we may automatically collect certain non-personal information regarding website user that does not identify you, and this includes the Internet Protocol (IP) address of your computer, and the date and time you access the website (“non-personal information”). We may use non-personal information to compile tracking information report for our better understanding and study to best meet the needs of visitors to our website, whereby you will remain anonymous to us unless you specifically choose to share information with us.

3. Purposes of Personal Data Collected

We collect the personal data to be used for the following purposes, which shall include without limitation:

(a) to carry out services and/or to complete transactions entered into with customers or patients;
(b) to carry out our daily operations, services and/or facilities as a medical centre;
(c) marketing our services and/or products;
(d) market research and statistical analysis and surveys with the aim of improving our services and products;
(e) to personalise our services and products;
(f) to maintain and update our records;
(g) to respond to requests or complaints;
(h) to enhance our services and to enforce our legal rights;
(i) to support our business, financial and risk monitoring, planning and decision making; and/or
(j) for all other purposes relating to the above but not specifically mentioned herein.

Our use of the personal data may also be extended to other purposes, including to comply with all applicable legislation, laws and regulations, to prevent fraud or illegal activities, or, to enforce or defend any of our rights.

(all the above purposes stated in this Section shall collectively be referred to as “the Purposes”)

Failure to supply personal data may result in us being unable to carry out or fulfil our obligations in respect of the Purposes, and including us being unable to provide you or continue to provide you the services in your best interest.

4. Disclosure of Personal Data

Without prejudice to any authorisation and consent given by you in relation to or pursuant to any of the terms, notice or statement in authorising us to release and disclose your personal data, we may disclose, disseminate and/or transfer your personal data to any of our subsidiaries or affiliates or related companies or business associates or organisations howsoever connected to us, or to any third party organisations or persons for the purpose of carrying out and/or fulfilling our obligations in respect of the Purposes and/or to all other purposes that are related to the Purposes, including without limitation, any personnels who are involved in taking care of and/or in coordinating the services to the customer or patient.

We may also disclose your personal data to external service providers (including but not limited to mailing houses, telecommunication companies, telemarketing and direct sales agents, call centres, data processing companies and information technology companies) that we engage for the purpose of carrying out and/or fulfilling our obligations in respect of the Purposes and/or to all other purposes that are related to the Purposes, to the extent as applicable and necessary.

We may also disclose your information to other third parties where such disclosure:
(a) is requested or authorised by you;
(b) is lawfully permitted or required;
(c) is in compliance with any judicial order or legal requirement;
(d) is required to protect and defend us and our property; and
(e) for all other purposes incidental and associated with any of the above or the provision of our services to you.

In the case where the disclosure of your personal data may involve disclosure and/or transfer of your personal data to places outside of Malaysia, you agree to such a disclosure or transfer where it is necessary to carry out and to fulfil our obligations in respect of the Purposes.

Notwithstanding the foregoing, we will endeavour to treat your personal data held by us as confidential, and to ensure that our subsidiaries, affiliates or related companies to treat your personal data as confidential in accordance with this Privacy Policy and with all applicable data protection legislation, to the extent as practicable and necessary.

5. Accessing To And Updating Personal Data

Please note that the accuracy of your personal data provided to us is essential. You are responsible for informing us about changes to your personal data or in the event you believe that the personal data we have about you is inaccurate, incomplete, misleading or not up-to-date.

You have the right to access your personal data subject to the provisions of the Act. We recommend you to provide us with written notice and/or to complete the data access form, whichever is applicable and practicable, in requesting for access to your personal data. Please note that we may require you to provide us with additional information as reasonably necessary and as required under the Act for us to satisfy your data access request.

We reserve the right to charge you a reasonable fee for the processing of any data access request.

6. Security And Protection of Personal Data

We will take the necessary precautions, both administrative and technical, to safeguard your personal data against loss, theft, misuse and unauthorized access or disclosure, unauthorised alteration or destruction.

7. Retention of Personal Data

We will only retain your personal data for as long as necessary to fulfil our obligations in respect of the Purposes and to all other purposes that are related thereto and/or purpose(s) for which it was collected or to comply with legal, regulatory and internal requirements. Thereafter we will destroy or permanently delete your data.

8. Cookies And Links to Other Websites

We may use cookies on our website to allow you to set your individual preferences and to help us provide a better user experience. In this regard, you may choose to accept or decline cookies if your browser permits, but declining cookies may affect your use of the facilities at our website and your ability to access certain features of the site or to engage in transactions.

Our website may contain links to other third party owned and operated websites or internet resources. When you click on one of those links you are contacting another website or internet resource, and we have no responsibility or liability for or control over those other websites or internet resources or their collection, use, or in any way processing of your personal data. The inclusion of third party websites on our website shall not in any way constitute an endorsement of such website’s contents, actions or policies.

9. Personal Data Involving Minor And Disability Persons

This Section applies to personal data collected in relation to the following individuals:
(a) Individual under the age of majority i. e. eighteen (18);
(b) Individual who lacks the capacity to give or withhold consent due to:
(i) his disability to comprehend and retain information material to give his consent and/or to make any decision; and/or
(ii) he is unable to use and weigh information in the decision-making process; and/or
(iii) he is unconscious.

In addition and without prejudice to the provisions of this Privacy Policy, the personal data of the individuals as listed in this Section will be collected by us in accordance with our rules, policies and guidelines. In the event we become aware that the personal data of such individuals has been collected in contravene with our rules, policies and guidelines, we will endeavour to cause the necessary correction in order to be in compliance with our rules, policies and guidelines.

10. Patient Experience

We may collect your stories and/or experience which has been made public or released to the public domain pursuant to an interview conducted by any third party or social media (where the interview may be conducted via various means including without limitation by telephone or by email), and share or publish the same by reproducing the stories and/or experience on our website or on any marketing materials including without limitation any printed materials or social media. Such stories and/or experience may contain general information identifying the individual (including name and age) and answers to questions concerning his/her health status, where the consent to participate in the interview and to use the personal data for the purpose thereof will be sought prior thereto. Patient is given the choice not to give his/her consent to participate in the interview and to use his/her personal data in relation thereto.

11. Update And Changes To This Privacy Policy

We reserve the right to amend and update this Privacy Policy from time to time. This Privacy Policy together with any changes, amendments or updates will be posted on our web-site (http://www.klsmc.com).

This Privacy Policy will be provided in both English and Bahasa Malaysia (the Bahasa Malaysia version will be made available in due course). In case of any inconsistencies, the English version shall prevail.

12. Contacting us

If you need to contact us on any questions or concerns regarding this Privacy Policy, please call or email us at the contact number and email address as specified below:

Kuala Lumpur Sports Medicine Centre Sdn Bhd
7th Floor, Wisma Perintis,
47 Jalan Dungun,
Damansara Heights,
50490 Kuala Lumpur.
Tel: 603-2096 1033
Fax: 603-2093 9700
Email : enquiry@klsmc.com