Legal & Data Protection

Privacy Policy

This Privacy Policy explains what information Malaysia Arrival Card Desk collects, why we collect it, and how we use and protect it when you use our website or purchase our independent support services.

Last updated: September 2026

1. Information We Collect

When you access our platform, request independent administrative assistance, or communicate with our support desk, we may collect the following categories of information:

  • Full name and contact details
  • Nationality and country of passport
  • Email address
  • Phone / WhatsApp number
  • Intended arrival date in Malaysia
  • Passport and travel document details
  • Passport scan image, if you choose to upload one
  • Malaysia entry point and travel details
  • Information provided to our support desk
  • Payment and transaction reference data
  • Technical data (IP, browser type, device info)

2. How We Use Your Information

We use the information we collect strictly for legitimate operational purposes, including:

  • Provide the administrative and review service you requested.
  • Review information supplied to us for completeness and accuracy.
  • Communicate with you regarding your support request or application status.
  • Provide dedicated customer support and answer travel-related inquiries.
  • Process payments and service fees.
  • Send service-related transactional emails or status notifications.
  • Prevent fraud, misuse, unauthorized activity, or security incidents.
  • Improve our website usability, workflow, and customer experience.
  • Maintain records required for accounting, legal compliance, security, and dispute resolution.

3. Information You Provide

Please ensure that all information submitted to us is complete and accurate. If you submit details on behalf of another traveller (e.g. family members or co-travellers), you confirm that you have obtained their explicit permission to provide that information to us for the relevant service purpose.


4. Payment Information

Payments are processed through secure, accredited third-party payment providers. We do not store complete payment card numbers, CVV codes, or full banking credentials on our systems.

Payment details are handled directly by the payment provider according to its industry-standard security and PCI-DSS compliance practices.


5. Sharing Information

We may share limited information with trusted service providers that assist us in operating our business, including payment processors, secure cloud hosting providers, transactional email providers, fraud-prevention tools, technical infrastructure partners, professional advisers, and legal authorities where mandated by law.

We do not sell, trade, or rent customer personal information to third parties.

6. Data Security

We implement reasonable administrative, technical, and physical safeguards designed to protect personal information against unauthorized access, loss, misuse, alteration, or disclosure. However, please note that no internet-based service or electronic storage system can be guaranteed to be 100% secure.


7. How Long We Keep Information

We retain personal information only for as long as reasonably necessary to fulfill the purposes for which it was collected, including providing customer assistance, accounting, legal compliance, fraud monitoring, and dispute resolution.

Specific retention period: Travel and support request records are generally retained for the duration of the active support request and up to 12 months for compliance and reference tracking, after which they are securely deleted or anonymized.


8. Cookies

Our website may use cookies and similar browser storage technologies to maintain platform functionality, remember user preferences, facilitate navigation, monitor system performance, improve our services, and support essential security measures.


9. Analytics and Advertising

We may use analytical tools (such as Google Analytics or similar technologies) to understand how visitors interact with our website and to assess service efficiency. These services may collect technical identifiers, browser details, device characteristics, and anonymized activity metrics in accordance with their respective privacy policies.


10. International Data Transfers

Because international travel support inherently involves cross-border communication, some of our service providers or infrastructure may process information in jurisdictions outside your home country. Where transfers occur, we implement appropriate contractual and operational safeguards.


11. Your Privacy Choices

Depending on your location and applicable privacy laws, including Malaysia's Personal Data Protection Act 2010 (PDPA), you may have rights regarding your personal information, such as requesting access, rectification, deletion, restricting processing, or withdrawing consent.

To exercise your privacy choices, submit a request to our privacy desk at: travel@nicheempire.io.


12. Children

Our services are directed toward adults. We do not knowingly collect personal information directly from children where prohibited by applicable laws. Support requests involving minor travellers must be submitted by a parent or legal guardian.


13. Changes to This Policy

We may periodically update this Privacy Policy to reflect operational or regulatory changes. When updates are published, the "Last updated" date at the top of this page will be revised accordingly.


14. Contact Us

Company
Malaysia Arrival Card Desk
Phone
+60 3-8880 7000
Privacy & Support Email
Customer Support
Available via Contact Helpdesk