This Privacy Policy explains how CartTell collects, uses, discloses, and protects personal data in accordance with Malaysia’s Personal Data Protection Act 2010 (PDPA) and similar laws where applicable.
Controller: admin@carttell.com
Contact: admin@carttell.com, No 23 Jalan BRP 1/5 Bukit Rahman Putra 47000 Sungai Buloh Selangor Malaysia, Tel:+60145782222, Tel:+60386842222
Account & billing: name, email, phone, business details, address; payment method tokens from payment providers.
Store content & orders: product data, images, prices, tax settings; customer names/emails/phones/addresses that you enter or collect.
Usage & device data: IP, browser/device info, pages viewed, timestamps, diagnostics, and security logs.
Cookies & similar tech: essential (login, security), analytics, preferences, and—where consented—marketing.
Deliver and maintain the Service; provide support and notifications
Process payments via integrated providers; prevent fraud/abuse
Personalise features, run analytics, improve performance
Enable integrations (e.g., WhatsApp, payments, shipping, analytics)
Comply with legal obligations and enforce our Terms
We rely on contract (to deliver the Service), legitimate interests (security, analytics, product improvement), consent (marketing/optional cookies), and legal obligation (records, compliance).
We share data only with:
Service providers (hosting, payments, messaging, analytics, support) under contract and confidentiality;
Professional advisors (legal/accounting) where necessary;
Authorities when required by law.
We do not sell personal data.
Data may be processed outside Malaysia. We use reputable cloud providers and apply safeguards consistent with PDPA principles and contractual protections.
We implement administrative, technical and organisational safeguards (encryption in transit, access controls, monitoring). No method is 100% secure—please keep your credentials safe.
We retain personal data while your account remains active and for a reasonable period thereafter for backups, audit and legal purposes. You may request deletion; some records may be kept to comply with law.
Subject to PDPA, you may access, correct, withdraw consent (for marketing), or request deletion of your personal data—contact [privacy@carttell.com].
For data you collect from your Customers, you are the data user/controller; we act as a processor. Please handle customer requests accordingly (we will assist where legally required).
We use cookies for core functionality, analytics and preferences. Manage choices via the cookie banner or browser settings. Disabling certain cookies may impact functionality.
The Service is not intended for individuals under 18. We do not knowingly collect data from children.
Stores built on CartTell may include links to third-party sites/apps. We are not responsible for their practices—review their privacy notices.
We may update this policy; material changes will be notified via email or dashboard.
Product pages are clear and the QR link makes ordering effortless. FPX and card options increased completed checkouts—simple for me and my customers.