Privacy Policy

Last updated: January 2, 2026

Boleh Makan Sdn Bhd ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our Boleh Makan application.

1Information We Collect

Account Information

Name, email address (if provided), and profile preferences you choose to share with us.

Health Data

Meals logged, nutritional information, food photos, vital readings (glucose, blood pressure, weight), and health goals you track in the app.

Device Information

Device type, operating system, and technical information necessary for app functionality.

Usage Data

How you interact with the app, features used, and app performance data to improve our service.

2How We Use Your Information

  • Personalized Nutrition Tracking: Provide accurate calorie counting, macro tracking, and meal analysis tailored to Malaysian foods.
  • Health Insights: Generate personalized recommendations and correlate your meals with vital readings.
  • AI Improvement: Use anonymized food corrections to improve our AI food recognition accuracy for Malaysian cuisine.
  • Service Updates: Send important notifications about app updates, security alerts, and service changes.

3Data Storage & Security

Secure Cloud Storage

Your data is stored securely on Supabase, a trusted cloud infrastructure provider with enterprise-grade security.

Encryption

All data is encrypted in transit (TLS/SSL) and at rest (AES-256) to protect against unauthorized access.

Limited Access

Access to personal data is strictly limited to authorized personnel who need it to provide our services.

4Your Rights Under PDPA Malaysia

Under the Personal Data Protection Act 2010 (PDPA) of Malaysia, you have the following rights:

📋 Right to Access

Request a copy of all personal data we hold about you.

✏️ Right to Correct

Request correction of inaccurate or incomplete data.

🗑️ Right to Delete

Request permanent deletion of your personal data.

🚫 Right to Withdraw

Withdraw consent for data processing at any time.

📦 Right to Data Portability

Export your data in a portable, machine-readable format (JSON).

To exercise any of these rights, visit the Profile section in the app or contact us at the email below.

5Data Sharing

We do NOT sell your personal data to third parties for marketing or advertising purposes.

Anonymized, aggregated data may be used for research purposes to improve Malaysian food nutrition databases.

Service Providers: Food images are processed by OpenAI for AI-powered food recognition. Images are not stored by OpenAI after processing.

6Data Retention

  • Your data is retained for as long as your account is active.
  • Upon account deletion request, all personal data is permanently deleted within 30 days.
  • Anonymized, aggregated data (not personally identifiable) may be retained for analytics.

7Contact Us

If you have questions about this Privacy Policy or wish to exercise your data protection rights, please contact us:

Boleh Makan Sdn Bhd

Data Protection Officer

📧 privacy@bolehmakan.my

8Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make significant changes, we will notify you through the app or via email. We encourage you to review this policy periodically.

The "Last updated" date at the top of this policy indicates when it was most recently revised.

Ready to take control of your health journey?