Plain-language summary: ADAR uses personal data to provide the service you request, operate accounts and subscriptions, process payments through payment providers, secure the platform, support users and improve our products. We do not sell personal data.
1. Who we are
ADAR is a digital platform operated by Adar Digital Sdn. Bhd. (Company No. 1432692-A), Malaysia (“ADAR”, “we”, “us” or “our”). For the personal data described in this Policy, Adar Digital Sdn. Bhd. is the organisation responsible for deciding why and how it is processed, except where another organisation acts independently as described below.
2. Scope of this Policy
This Policy applies to the ADAR website at adar.asia, the ADAR web application and related products and services, including Exams Simplify, Games Simplify, Corporate Services, point-of-sale, marketplace or station features, customer support and authorised integrations.
Third-party websites and services have their own privacy notices. Their handling of personal data is governed by those notices, not this Policy.
3. Personal data we collect
The data we collect depends on the services you use and the choices you make. It may include:
- Account and identity data: name, mobile number, email address, account identifier, organisation or tenant, role, login and authentication records.
- Parent, guardian and learner data: parent or guardian contact details, learner name or profile, education level, exam system, subject selections, practice activity, attempts, answers, scores and feedback.
- Business and professional data: company, position, product information, leads, customer records, quotations, invoices, delivery details, campaign information and operational records entered into Corporate Services.
- Transaction and subscription data: products selected, order or checkout identifiers, amount, currency, gateway, payment status, subscription period, invoices and refund records.
- User content: game content, documents, media, messages, prompts, campaign drafts, support requests and other material you submit or create.
- Connected-platform data: authorised platform account or page identifiers, profile or page names, permission scopes, connection status and content you ask ADAR to process or publish. Provider API keys and authentication tokens you choose to save are treated as confidential credentials, encrypted at rest and retained until you replace or disconnect them, subject to applicable account-retention requirements.
- Technical and usage data: IP address, browser and device details, timestamps, requested pages, application events, error logs, security signals, session identifiers and cookie or local-storage data.
- Communications: enquiries, complaints, feedback and correspondence with ADAR.
Where a field is required to create an account, complete a purchase or deliver a requested service, failure to provide it may prevent us from providing that service. Optional fields may be left blank.
4. How we collect personal data
- Directly from you when you register, purchase, subscribe, create content, contact support or enter information into ADAR.
- From a parent, guardian, school, organisation administrator or authorised business user who creates or manages an account or record for you.
- Automatically when you use ADAR, through essential cookies, local storage, server logs and security or diagnostic technologies.
- From payment, delivery, authentication, social, business and other third-party services you choose to connect, subject to the permissions you grant.
5. Why and how we use personal data
We process personal data only where relevant to a stated or compatible purpose, including to:
- create, authenticate and administer accounts;
- provide exam practice, feedback, game creation, corporate operations and other requested features;
- process orders, subscriptions, payments, refunds, invoicing and service access;
- deliver customer support and respond to enquiries or rights requests;
- operate optional integrations and publish content only when instructed by an authorised user;
- protect users, prevent fraud, investigate misuse, maintain logs and secure the platform;
- diagnose errors, analyse aggregate service performance and improve usability and reliability;
- send service, billing, security and account notices;
- send promotional communications where permitted and subject to your right to opt out;
- comply with legal, tax, accounting, regulatory and dispute-resolution obligations; and
- establish, exercise or defend legal rights.
Depending on the circumstances and applicable law, processing is based on your consent, steps requested before or performance of a contract, compliance with legal obligations, or our legitimate operational and security interests where those interests do not override your rights. You may withdraw consent where processing relies on consent, without affecting earlier lawful processing.
6. Who may receive personal data
We do not sell personal data. We may disclose only the data reasonably necessary to:
- Service providers: cloud hosting, database, authentication, storage, communications, security, diagnostics and technical-support providers acting for ADAR.
- Payment providers: the gateway used for checkout, such as Billplz or Stripe, to create and confirm a payment.
- Delivery or fulfilment providers: where physical delivery or fulfilment is requested.
- Connected platforms: social, video, messaging or business platforms where you authorise a connection or publishing action.
- Your organisation: authorised administrators or team members where you use ADAR through an organisation account.
- Professional advisers and authorities: auditors, lawyers, insurers, regulators, law-enforcement bodies or courts where reasonably necessary or legally required.
- Business transaction parties: under appropriate confidentiality safeguards in connection with a proposed or completed financing, reorganisation, merger, acquisition or transfer of assets.
Service providers are expected to use personal data only for authorised purposes and to apply appropriate safeguards.
7. Payments and financial information
Payment checkout is provided by the selected payment gateway. ADAR sends transaction details needed to create the checkout and receives identifiers, status and confirmation information. Card details are entered on the payment provider’s secure checkout and ADAR does not intend to store complete card numbers or card security codes.
8. Optional connected services
Some ADAR features allow an authorised business user to connect a third-party account. We request only the permission scopes needed for the selected feature. ADAR uses connected-platform data to show the connection, retrieve authorised account or page information and perform actions initiated by the user.
You can disconnect an integration in ADAR where that control is available and may also revoke access through the third-party platform. Revocation stops future access but does not automatically remove content already published to that platform or records we must retain for security, legal or transaction purposes.
9. International transfers
ADAR and its service providers may process or store data in Malaysia and other countries where they operate infrastructure. Where personal data is transferred outside Malaysia, we take reasonable steps to use recipients, contractual measures and safeguards intended to provide a level of protection appropriate to applicable requirements.
10. Data retention
We retain personal data only for as long as reasonably necessary for the purpose for which it was collected, including to keep an account active, deliver subscriptions, maintain security and audit records, resolve disputes, and comply with tax, accounting and legal obligations.
Retention periods vary by record type. Transaction and legal records may be kept for the period required by applicable law. Operational logs are kept for a more limited period where practical. When data is no longer required, we take reasonable steps to delete, destroy or anonymise it, subject to backup cycles and lawful retention requirements.
11. Security
We use reasonable technical and organisational safeguards designed to protect personal data against loss, misuse, unauthorised access or disclosure, alteration and destruction. Measures may include access controls, authentication, encryption in transit, restricted secret storage, logging, backups and service-provider controls.
No internet or storage system is completely secure. You are responsible for keeping your password and devices secure and for notifying us promptly if you suspect unauthorised account use. We will assess and respond to personal-data incidents and make notifications where required by applicable law.
12. Children, students and parental responsibility
Some education services are intended for school learners and are offered through a parent, guardian, school or other authorised adult. A parent or guardian must create or authorise the account and supervise use where required by age or applicable law.
We ask users not to submit unnecessary sensitive information about a child. We use learner data to provide educational activities, track progress, deliver feedback, secure the service and support the account. We do not knowingly sell children’s personal data or use it for targeted advertising. A parent or guardian may contact us to request access, correction or deletion, subject to legal and operational requirements.
14. Your choices and rights
Subject to applicable law and any permitted limitations, you may ask us to:
- confirm whether we process your personal data and provide access to it;
- correct personal data that is inaccurate, incomplete or out of date;
- withdraw consent or object to certain processing;
- stop direct-marketing communications;
- delete personal data that is no longer needed or is processed without a valid basis; or
- explain relevant data practices or lodge a complaint.
We may need to verify your identity and authority before acting on a request. Some data cannot be deleted immediately where retention is required for transactions, security, legal claims or compliance. You may update certain account information directly in ADAR.
15. Educational feedback and automated processing
ADAR may use automated rules or AI-assisted tools to generate practice content, feedback, suggestions, drafts or operational insights. These outputs may contain errors and should be reviewed by the user, parent, educator or authorised business decision-maker. ADAR does not use automated educational output as an official exam result or as the sole basis for a legal or similarly significant decision about a person.
16. Third-party links
ADAR may link to external websites, examination bodies, payment pages or connected services. We are not responsible for the privacy practices or content of third parties. Review their privacy notices before submitting information.
17. Changes to this Policy
We may update this Policy to reflect changes in our services, technology or legal obligations. We will publish the revised version here and update the “Last updated” date. Where required, we will provide additional notice or request consent.
18. Contact us
Adar Digital Sdn. Bhd. (Company No. 1432692-A)
Malaysia
Email: admin@adar.asia
Website: https://adar.asia/about-us.html
Please use the subject “ADAR Privacy Request” and describe the account or service concerned. Do not send passwords, full card details or unnecessary identity documents by email.