Privacy Policy

Effective date: 16 April 2026 | Last updated: 16 April 2026

THL Access Solution (Registration No.: 202503052738 / 003703083-K) (“we”, “us”, or “GajiNow”) is committed to protecting the privacy and security of your personal data in accordance with Malaysia’s Personal Data Protection Act 2010 (PDPA).

This Privacy Policy explains how we collect, use, disclose, store, and protect your personal data when you use the GajiNow platform, website, and services (“Services”).

1. Personal Data We Collect

1.1 Information You Provide

  • Identity Information: Full name, MyKad/IC number, date of birth, nationality
  • Contact Information: Phone number, email address, residential address
  • Employment Information: Employer name, employment status, job title, monthly salary, employment start date
  • Financial Information: Bank account number, bank name, salary details, EPF contribution records
  • Account Information: Username, password (encrypted), account preferences

1.2 Information Collected Automatically

  • Device Information: Device type, operating system, browser type, IP address
  • Usage Information: Pages visited, features used, time spent
  • Location Information: General location based on IP address (we do not collect precise GPS location)

1.3 Information From Third Parties

  • Employer Data: Employment verification, salary verification (with your consent and your employer’s participation)
  • Payment Processors: Transaction status, payment verification from banking partners

2. How We Use Your Personal Data

We use your personal data for the following purposes:

  • Service Delivery: Processing salary advance requests, verifying eligibility, and disbursing funds
  • Identity Verification: Verifying your identity and preventing fraud
  • Account Management: Creating, maintaining, and managing your GajiNow account
  • Communication: Contacting you about your account, transactions, and service updates
  • Compliance: Complying with applicable laws, regulations, and legal obligations
  • Improvement: Improving our services and enhancing user experience
  • Security: Detecting, preventing, and addressing fraud and unauthorized access
  • Financial Calculations: Providing calculator tools (EPF, cash flow, loan, zakat, tax) — calculator inputs are processed locally in your browser and are NOT sent to or stored on our servers

3. Disclosure of Personal Data

We may disclose your personal data to:

  • Your Employer: For employment verification and salary advance coordination (with your consent)
  • Banking Partners: To process fund transfers and repayment transactions
  • Payment Processors: Third-party payment service providers for transaction processing
  • Regulatory Authorities: When required by law, court order, or government request
  • Professional Advisors: Legal, accounting, and audit service providers bound by confidentiality obligations

We do NOT sell, rent, or trade your personal data to any third party for marketing purposes.

4. Data Security

We implement appropriate technical and organizational security measures to protect your personal data, including:

  • Encryption: All data transmission is encrypted using TLS/SSL protocols
  • Access Control: Role-based access controls that limit data access to authorized personnel only
  • Secure Storage: Personal data is stored on protected servers with industry-standard safeguards
  • Regular Audits: Regular security assessments and vulnerability testing
  • Incident Response: Established procedures to detect and respond to data breaches

5. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes of collection:

  • Active Account Data: For the duration your account is active plus 7 years after account closure (as required by financial regulations)
  • Transaction Records: 7 years from the transaction date (as required by applicable laws)
  • Communication Records: 3 years from the communication date
  • Calculator Usage: NOT stored — calculator inputs are processed locally in your browser

6. Your Rights Under the PDPA

Under the Personal Data Protection Act 2010, you have the following rights:

  • Right of Access: You may request access to your personal data held by us
  • Right of Correction: You may request correction of any inaccurate or incomplete personal data
  • Right to Withdraw Consent: You may withdraw your consent for data processing at any time (note: this may affect our ability to provide services)
  • Right to Limit Processing: You may request that we limit the processing of your personal data to specific purposes
  • Right to Data Portability: You may request a copy of your personal data in a commonly used format

To exercise any of these rights, please contact us at info@gajinow.com.

7. Cookies and Tracking

Our website uses essential cookies to ensure proper functionality. We do not use third-party tracking cookies or advertising cookies. Essential cookies include session cookies (to maintain your login status) and preference cookies (to remember your language preferences).

You can disable cookies through your browser settings, but this may affect the functionality of our Services.

8. Third-Party Links

Our website may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to read the privacy policy of any third-party website you visit.

9. Children’s Privacy

Our Services are not directed at individuals under the age of 18. We do not knowingly collect personal data from children. If we discover that we have collected data from a child, we will promptly delete that data.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on our website with an updated effective date. Continued use of our Services after any changes constitutes your acceptance of the updated policy.

We will notify you of material changes by email or through a prominent notice on our platform.

11. Cross-Border Data Transfers

Your personal data may be processed on servers located outside Malaysia. In such cases, we will ensure that appropriate safeguards are in place to protect your data in accordance with the PDPA.

12. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

THL Access Solution

Registration No.: 202503052738 (003703083-K)

Email: info@gajinow.com

Phone: +60178312813

Operating Hours: Monday - Friday, 9:00 AM - 6:00 PM

For complaints regarding the handling of your personal data, you may also contact the Department of Personal Data Protection (JPDP) Malaysia.