LuukoLuuko

Privacy Policy

How Luuko collects, uses and protects your data (PDPA 2010).

DRAFT — to be finalised before launch.

1. Data we collect

When you use Luuko, we collect:

2. How we use it

3. Storage & security

Data is stored in a managed database (Supabase/PostgreSQL) over an encrypted connection (TLS). Passwords are hashed; sessions are protected by httpOnly cookies; every request is isolated by tenant so your business data cannot be accessed by another business.

4. Data sharing

We do not sell your data. Data is only shared with the infrastructure providers required to run the service (hosting, database, email delivery) and with authorities when required by law.

5. Your rights (PDPA)

6. Cookies & sessions

Luuko uses essential cookies only: the sign-in session (30 days), a "remember me" token, and a CSRF security token. There are no advertising or third-party tracking cookies.

7. Contact us

Any privacy questions: luuko@skrichgroup.com.

Last updated: June 2026 · Luuko Systems Sdn Bhd

Terms of Service · Sign in · © 2026 Luuko Systems Sdn Bhd