Privacy Policy

Effective date: 4 July 2026

This Privacy Policy explains how Mapify Technologies Sdn Bhd (“Gisify”, “we”, “us”) collects, uses, discloses and protects personal data when you use the Gisify platform and website. We handle personal data in line with the Malaysian Personal Data Protection Act 2010 (PDPA) and, where applicable, other data protection laws.

1. Data we collect

  • Account data — name, work email, organisation, and role you provide at signup.
  • Billing data — handled by our payment processor Paddle; we receive transaction metadata (plan, amount, status) but not full card details.
  • Usage data — log data, device/browser information and feature usage to operate and improve the Service.
  • Customer Data — the maps, layers and files you upload, which may contain data you control.
  • Field capture data (Gisify Field mobile app)— when you use the Gisify Field mobile app, precise GPS location (the points, lines and areas you capture) and photos you attach to a form response. This is collected only to complete and submit the form response you are filling; it is stored on your device until it syncs to your organisation’s Gisify backend, and is never used for advertising or cross-app tracking.

2. How we use data

We use personal data to provide and secure the Service, process subscriptions, provide support, communicate service notices, comply with legal obligations and improve the product. We do not sell your personal data.

3. Service providers and sharing

We share data with trusted processors only as needed to run the Service, including:

  • Paddle.com Market Limited — payments, invoicing and tax as our Merchant of Record;
  • Cloud infrastructure providers — hosting, storage and email delivery;
  • AI providers — to process prompts you submit to AI features.

We may disclose data where required by law or to protect our rights and users.

4. International transfers

Data may be processed in countries other than your own. Where we transfer personal data internationally, we take steps to ensure an appropriate level of protection consistent with applicable law.

5. Retention

We retain personal data for as long as your account is active and as needed to provide the Service, then for the period required to meet legal, accounting or reporting obligations. Customer Data is deleted on request or a reasonable period after account termination.

6. Cookies

We use strictly necessary cookies for authentication and session management, and limited analytics to understand usage. You can control cookies through your browser settings.

7. Your rights

Subject to applicable law, you may request access to, correction of, or deletion of your personal data, and may withdraw consent or object to certain processing. To exercise these rights, contact us using the details below.

8. Security

We use technical and organisational measures including encryption in transit, access controls and encryption at rest for sensitive fields. No method of transmission or storage is completely secure, but we work to protect your data.

9. Contact

For privacy questions or requests, email support@gisify.co or use our contact page.