Policy

Privacy policy

How we handle personal data under the Malaysian PDPA 2010.

PhysioJohor operates as a physiotherapy referral network.

This page explains our practices under the Malaysian Personal Data Protection Act 2010 (PDPA).

What we collect

Only what you send via WhatsApp: name, phone number, rough location, and a description of your condition.

We do not use tracking pixels, we do not sell data, and we do not add you to any marketing list.

How we use it

Only to screen your case clinically and match you to a physio.

We send a brief on your case to that physio so you do not re-explain at the first session.

Who we share with

Only the matched physio, and only the minimum necessary for your care.

We do not share data with advertisers, data brokers, or any third party not involved in your care.

Retention

We retain WhatsApp conversations for up to 24 months for continuity of care, then delete.

You can ask us to delete your data sooner by WhatsApp.

Your rights under PDPA

You have the right to access, correct, limit, or withdraw consent at any time.

Send a WhatsApp to the number on our contact page stating your request.

We action requests within 21 days.

Security

WhatsApp conversations are end-to-end encrypted.

Your data is not stored on any public cloud database.

No payment information passes through PhysioJohor - you pay the matched physio directly.

Changes

We will update this page if anything material changes.

Last updated: May 2026.

Chat on WhatsApp