Privacy Policy

Last Updated: June 1, 2025

1. Introduction

At Notamu ("we," "our," or "us"), we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application. Please read this privacy policy carefully. By using Notamu, you consent to the practices described in this policy.

For the purposes of the Personal Data Protection Act 2010 of Malaysia ("PDPA"), the data user for Notamu is the Notamu operating entity. References to "you" in this Privacy Policy include students, parents and guardians who use or manage a Notamu account.

2. Information We Collect

2.1 Personal Information

  • Email address
  • Name (if provided)
  • Profile picture (if provided)
  • Education level
  • Date of birth
  • Authentication information from Google and Apple Sign-In

2.2 Device Information

  • Device ID
  • Device model
  • Operating system version
  • Platform information
  • IP address

2.3 Usage Information

  • Articles viewed and bookmarked
  • Study progress and completion rates
  • Community interactions (posts, comments, likes)
  • Feature usage patterns
  • Subscription status and purchase history

2.4 Whether Information Is Mandatory or Optional

Some information that we request is necessary for you to create and use your Notamu account (for example, your email address, education level, date of birth, and authentication information). If you do not provide this information, you may not be able to register or use certain core features of the app.

Other information, such as your profile picture and certain community or preference settings, is optional. If you choose not to provide this optional information, you can still use Notamu, but certain personalised experiences (such as richer profile features) may not be available.

3. How We Use Your Information

  • To provide and maintain our services
  • To process your premium subscriptions
  • To personalize your learning experience, including tailoring content, recommendations, and difficulty level based on your education level and study progress
  • To analyze and improve our application
  • To communicate with you about updates and features
  • To ensure compliance with our terms of service
  • To send you birthday greetings or special offers related to your learning journey, where you have provided your date of birth (you may opt out of these communications at any time through your notification or account settings)

4. Third-Party Services

4.1 Firebase Authentication

We use Firebase Authentication for secure user authentication. When you sign in with Google or Apple, we collect the following information:

  • Authentication tokens
  • Basic profile information (name, email)
  • Profile picture (if available)

For more information about how Firebase handles your data, please visit their Privacy Policy.

4.2 RevenueCat

We use RevenueCat to process in-app purchases and manage subscriptions. RevenueCat collects:

  • Purchase history
  • Subscription status
  • Transaction information
  • Device information for receipt validation

For more information about how RevenueCat handles your data, please visit their Privacy Policy.

4.3 Analytics

We use analytics tools to understand how users interact with our application. This helps us improve our services and user experience.

For more information about how Google Analytics handles your data, please visit their Privacy Policy.

4.4 Data Transfers

Your information may be transferred to and processed in countries other than Malaysia. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.

4.5 Disclosure to Other Third Parties

We may disclose your information to the following categories of third parties, only where necessary for the purposes described in this Privacy Policy:

  • Technical and infrastructure service providers (for example, hosting, cloud storage, and security providers)
  • Analytics and performance measurement providers, to help us understand and improve how Notamu is used
  • Professional advisers, such as lawyers, auditors, and consultants, where necessary for our business operations and compliance
  • Regulators, law enforcement, or other authorities where we are required to do so by law or to protect our legal rights

5. Data Storage and Security

  • We implement appropriate security measures to protect your information
  • Data is stored on secure servers with encryption
  • We regularly review and update our security practices
  • Access to personal information is restricted to authorized personnel
  • In case of a data breach, we will notify affected users within 72 hours of becoming aware of the breach

6. App Permissions

Our app may request the following permissions:

  • Internet Access: Required for downloading content and syncing data
  • Storage: Required for saving study materials offline
  • Camera: Required for profile picture uploads (optional)
  • Notifications: Required for study reminders and updates (optional)

You can manage these permissions through your device settings at any time.

7. Data Retention

We retain your information for as long as your account is active or as needed to provide you services. We will delete your information upon request, subject to legal requirements.

8. Your Rights

Under the Personal Data Protection Act 2010 (PDPA) of Malaysia, you have the right to:

  • Access your personal information
  • Correct inaccurate information
  • Request deletion of your information
  • Withdraw consent for data processing
  • Object to processing of your information
  • Request data portability in a structured, commonly used format
  • Export your data in a machine-readable format

You may exercise these rights by contacting us at the email address provided below or, where available, through the in-app account settings. We may need to verify your identity before processing your request. Your rights may be subject to certain limitations under applicable law, for example where we need to retain data to comply with legal obligations.

9. Children's Privacy

Notamu is designed for secondary school students. We require parental consent for users under 18 years old. We do not knowingly collect personal information from children under 13 without parental consent. Where you choose to provide your date of birth, we may use this information to determine whether parental consent is required and to provide age-appropriate content and experiences.

10. Changes to Privacy Policy

We may update this privacy policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last Updated" date.

11. Refund Policy

For detailed information about our refund policy, please visit our Refund Policy page. In general:

  • Subscription fees are generally non-refundable
  • Refunds may be considered in exceptional circumstances
  • Refund requests must be made within 14 days of purchase
  • Refunds are processed through the original payment method
  • Processing time for refunds may take 5-10 business days

12. Contact Us

If you have questions about this Privacy Policy, please contact us at:
Email: contact@notamu.app