Security
Clinic24 is built with a practical security mindset. This page provides a general overview of our approach and does not constitute a warranty, certification, or legal opinion.
Security by design
We aim to build Clinic24 with practical safeguards that support confidentiality, integrity, and availability across the platform.
Access controls
We use role-appropriate access practices, authentication measures, and internal controls intended to limit access to authorized personnel and systems.
Operational monitoring
We maintain processes intended to support system reliability, issue investigation, and ongoing operational improvement.
Responsible handling
We work to handle customer and personal data in a manner consistent with product needs, operational necessity, and applicable legal obligations.
Our Approach
Clinic24 takes a layered approach to security that includes technical, administrative, and operational measures intended to reduce risk and support trustworthy service delivery.
Data Protection
Where personal data is processed in commercial transactions in Malaysia, that processing may be relevant to the Personal Data Protection Act 2010 (Act 709), as amended. We aim to support secure handling, appropriate retention, and controlled disclosure practices.
Infrastructure and Vendors
Clinic24 may rely on third-party hosting, communications, analytics, or payment providers as part of delivering the service. We seek to work with providers that are appropriate for the functions they perform.
Incident Response
If we become aware of a security issue affecting the service, we aim to investigate, contain, remediate, and communicate appropriately based on the nature of the event and applicable obligations.
Shared Responsibility
Customers also play an important role in security by managing account access carefully, using strong credentials, maintaining appropriate internal processes, and sharing accurate operational information during setup.
Contact
Security-related enquiries may be sent to admin.clinic24@gmail.com.