Privacy Policy
Last updated: 21 July 2026
1. Who we are
SafetyLitics is a specialist HSSE consultancy operated by Ali Bakhtiar Nizamani, based in Kuala Lumpur, Malaysia. When this policy says “we,” “us” or “SafetyLitics,” it means this business.
Contact: info@safetylitics.com
2. What we collect and why
a) Contact and quote-request forms
When you submit the contact or quote-request form, we collect your name, email address, company name (optional), service interest (optional) and your message. We use this information solely to respond to your enquiry. Your submission is sent to us by email (via Brevo SMTP) and is not stored in a marketing database.
b) Account registration (optional)
If you create an account, we collect a display name, email address and a hashed
password. We use this to authenticate you and to personalise your experience.
Passwords are hashed with bcrypt and are never stored or transmitted
in plain text.
c) Feedback widget
If you submit feedback through the floating widget, we collect your name, what you were trying to do, the issue or suggestion, your email (optional) and the page URL. This data is used only to improve the site.
d) Free HSSE tools (calculators and Safety Culture Score)
All calculator inputs are processed entirely in your browser. Your incident data, hours worked and other inputs never leave your device and are never sent to our server.
For the Safety Culture Score, your individual answers are never transmitted. Only the overall 0–100 score and per-dimension scores (without any answers or personally identifiable information) are sent to our server so we can track aggregate usage. No names, emails or company details are attached to these scores unless you are logged in, in which case only your user ID is linked.
e) Analytics (consent-gated)
If you consent via the cookie banner, we use Google Analytics (GA4) and Microsoft Clarity to understand how visitors use the site. These tools may set cookies on your device. If you decline or dismiss the banner, no third-party analytics scripts are loaded. We also collect anonymous, first-party page-view events (page path, session ID, timestamp) in our own database to monitor site health; these contain no personal data.
f) Server logs
Our hosting provider (Hostinger) automatically logs IP addresses, request timestamps and user-agent strings in standard web-server access logs. These logs are used for security monitoring and are retained according to Hostinger’s policies.
3. How we use your data
We use personal data only to:
- respond to your enquiries and quote requests;
- provide and secure your account (if you register);
- improve the site based on feedback and aggregate analytics;
- comply with legal obligations.
We do not sell, rent or share your personal data with third parties for marketing purposes.
4. Third-party services
We use the following third-party services that may process data on our behalf:
- Brevo (Sendinblue) — transactional email delivery (SMTP).
- Google Analytics (GA4) — website analytics (consent-gated).
- Microsoft Clarity — session replay and heatmaps (consent-gated).
- Hostinger — web hosting and server infrastructure.
Each service operates under its own privacy policy and data-processing terms.
5. Cookies
Essential cookies: a session cookie (sl_session) is
set when you visit the site. It is required for the site to function (form security,
login state). It expires when you close your browser.
Analytics cookies: GA4 and Clarity set cookies only if you consent via the cookie banner. You can withdraw consent at any time by clearing your cookies.
6. Data retention
Contact and feedback submissions are retained until the enquiry is resolved and then deleted or archived. Account data is retained for as long as your account is active. Analytics data is retained according to the defaults of the respective service (GA4: 14 months; Clarity: 30 days).
7. Your rights
You may request access to, correction of, or deletion of your personal data at any time by emailing info@safetylitics.com. If you have an account, you can request that we delete it and all associated data.
8. Security
We use HTTPS throughout, hash passwords with bcrypt, enforce CSRF protection on all forms, apply rate limiting, and follow security best practices. However, no system is 100% secure; we encourage you to use a strong, unique password for your account.
9. Children
SafetyLitics is a professional HSSE consultancy site. We do not knowingly collect data from anyone under the age of 18. If you believe a child has submitted personal data, please contact us and we will delete it.
10. Changes to this policy
We may update this policy from time to time. Material changes will be noted on this page with an updated “last updated” date.
11. Contact
For any privacy-related questions: info@safetylitics.com