Privacy Policy
How Sophie Giraudel collects, processes, and protects personal data during corporate compliance audits and ISO certification testing for heavy manufacturing clients in Malaysia.
Data We Collect
When you contact us through our forms, request an audit quote, or engage our compliance testing services, we collect the information you provide directly: your name, company name, business email address, phone number, and the contents of your message. We also collect technical data automatically, including your IP address, browser type, device information, and pages visited on this site, which helps us maintain security and understand how our documentation is used.
Purpose of Processing
We process personal data solely for the purpose of responding to your inquiries, preparing audit proposals, scheduling ISO compliance assessments, and delivering quality assurance reports for your manufacturing facility. Technical data is used for site security, fraud prevention, and improving the usability of our corporate pages. We do not sell personal information to third parties, and we do not use your data for marketing purposes without explicit consent.
Cookies and Tracking
This website uses essential cookies to maintain session functionality and basic analytics tools to measure aggregate visitor statistics such as page views and referral sources. These analytics help us understand which compliance resources are most relevant to our B2B audience. You may disable cookies in your browser settings, though some parts of the site may not function correctly as a result.
Data Retention and Storage
Inquiry messages and associated contact details are retained for a maximum of 24 months after the last interaction, after which they are securely deleted. Audit documentation and compliance records required for certification purposes are stored in accordance with ISO record-keeping standards and applicable Malaysian regulations. All data is hosted on secure servers with restricted access limited to authorized audit personnel.
Third-Party Processors
We share personal data only with service providers that support our core operations: website hosting providers, email and form processing services, and analytics platforms. These processors are contractually obligated to protect your data and may only use it to perform services on our behalf. We do not transfer personal data to unrelated third parties, and we do not engage in any data monetization arrangements.
Your Rights
You have the right to request access to the personal data we hold about you, ask for correction of inaccurate information, request deletion of your records, and withdraw consent for processing at any time. You may also request a portable copy of your data in a structured format. To exercise any of these rights, contact us using the details below, and we will respond within 30 days.
Accuracy and Transparency
Sophie Giraudel does not make misleading claims about audit outcomes, certification guarantees, or regulatory approval. All compliance testing results are based on documented evidence collected during on-site assessments and are reported without exaggeration. We do not fabricate endorsements, invent client testimonials, or imply official affiliation with certification bodies unless such affiliation is formally established.
Contact for Privacy Requests
For any privacy-related questions, data access requests, or concerns about how your information is handled, contact our compliance office at info@sophiegiraudel.com or call +60 18 954 0230. Written requests may be sent to 2 Jalan Penchala, Petaling Jaya, Selangor, 46050, Malaysia. This policy was last updated on January 15, 2025.