SQLmPOS
SQLmPOS app icon

ANDROID APPLICATION

Privacy Policy

SQLmPOS · IT UNICODE SDN BHD

This Privacy Policy explains how the SQLmPOS Android application (package name com.itunicode.sqlmpos) accesses, uses, stores, and shares information.

Effective and last updated: 26 August 2026

01

Who we are and the scope of this policy

SQLmPOS is a business point-of-sale application published by IT UNICODE SDN BHD ("IT UNICODE", "we", "us", or "our"). It is used by merchants and their authorised staff to manage checkout, inventory, customers, reports, SQL Accounting synchronisation, and Malaysia e-Invoice workflows.

A merchant using SQLmPOS controls the business and customer records entered into its system. The merchant is responsible for deciding what information its staff enter and for providing any notices required to its own customers. This policy describes IT UNICODE's handling of information through SQLmPOS and related support services.

02

Information we handle

Depending on the features configured by your organisation, SQLmPOS may handle:

Account and business information

User or cashier identifiers, login credentials, company and outlet details, business contact details, tax registration information, settings, and licence information.

Sales and operational information

Products, barcodes, prices, inventory, orders, receipts, payment method and amount, discounts, refunds, and reports. SQLmPOS does not require users to enter payment-card numbers or card security codes into the app.

Customer and e-Invoice information

Information entered by a merchant for customer management or e-Invoice submission, such as name, company name, address, telephone number, email address, Tax Identification Number, registration or identity type and number, and invoice details.

Device, technical, and support information

App version, device model, operating system, network and connection information, sync status, error details, and any information you choose to provide when requesting support.

Images and files you select

Product images, documents, database backup or restore files, and other media or files that you deliberately select, capture, import, export, upload, or attach while using a feature.

SQLmPOS does not use personal or sensitive information for third-party advertising, and we do not sell personal or sensitive user data.

03

App permissions and device access

SQLmPOS requests device access only when needed for a feature. You can deny or later revoke optional permissions in Android settings, although the related feature may then be unavailable.

Camera

Used when you choose to scan product, payment, or e-Invoice QR codes or barcodes, or capture an image. Camera access is not used for background surveillance.

Photos, videos, files, and storage

Used when you choose to import or export files, select media, create or restore a backup, or save a generated document. On supported Android versions, the system photo or file picker may be used instead of broad library access.

Bluetooth and nearby devices

Used to discover and connect to compatible POS peripherals, such as receipt printers and scanners, when you initiate that connection.

Network, notifications, and background sync

Internet and network-state access enable login, licence verification, synchronisation, updates, and e-Invoice services. Notifications and foreground data-sync services may report sync, update, or operational status.

04

How we use information

We use information only as reasonably necessary to:

  • provide and operate the POS, inventory, reporting, and customer features;
  • authenticate authorised users and administer licences;
  • synchronise records with the merchant's configured SQL Accounting or server environment;
  • prepare, submit, retrieve, or display e-Invoice information when that feature is used;
  • connect to printers, scanners, and other user-selected POS hardware;
  • maintain security, prevent misuse, diagnose errors, and improve reliability; and
  • provide updates, customer service, and technical support.
05

How information is shared

Information may be disclosed only as needed to:

  • Your organisation and its authorised systems. Records may be stored on the device and synchronised with servers, databases, or SQL Accounting environments selected or operated by the merchant.
  • Government e-Invoice services. When an authorised user initiates or configures e-Invoice functionality, required invoice and taxpayer information may be transmitted to Malaysia's Inland Revenue Board (LHDN/HASiL) or its designated systems.
  • Service providers. Hosting, communications, maintenance, and support providers may process limited information for us under appropriate confidentiality and security obligations.
  • Legal and corporate requirements. We may disclose information where required by law, to protect rights or security, or in connection with a merger, acquisition, or transfer of business, subject to applicable legal safeguards.

We do not permit service providers to use app information for their own advertising, and we do not sell personal or sensitive user data.

06

Security and retention

We use reasonable administrative, technical, and organisational safeguards appropriate to the nature of the information. Network transmission to IT UNICODE-operated online services uses encrypted connections where supported. No storage or transmission method can be guaranteed to be completely secure, so merchants must also secure their devices, credentials, local networks, servers, and backups.

Information stored locally remains until it is deleted through app functionality, the app is cleared or uninstalled, or the merchant's retention settings require deletion. Information synchronised to a merchant-controlled system is retained according to that merchant's policies. Information processed by IT UNICODE is retained only as long as needed for the purposes described above, contractual and support obligations, security, and applicable legal, accounting, or tax requirements, after which it is deleted or anonymised.

07

Your choices, access, correction, and deletion

You may control optional Android permissions through your device settings. Users whose SQLmPOS access is provided by a merchant should first contact that organisation's administrator to access, correct, export, or delete their account and associated records.

You may also request access, correction, or deletion by emailing sales@unicode.com.my. Include "SQLmPOS privacy request", your organisation name, user identifier, and enough information for us to verify the request. Do not send passwords or full identity-document numbers by email. We may refer merchant-controlled data requests to the relevant merchant.

Subject to verification and applicable law, we will respond and delete or anonymise information under our control. Some transaction, invoice, tax, fraud-prevention, or contractual records may need to be retained for a legally required period. Deleting an account may not delete records the merchant is legally required to keep.

08

Children

SQLmPOS is a business application intended for merchants and their authorised workforce. It is not directed to children and is not intended for use by anyone under 18. We do not knowingly collect personal information from children through SQLmPOS.

09

Changes to this policy

We may update this policy when SQLmPOS features, data practices, or legal obligations change. We will publish the revised policy at this URL and update the date above. Where required, we will provide additional notice in the app or obtain consent before materially new processing begins.

10

Contact us

Questions or privacy requests can be directed to:

IT UNICODE SDN BHD
No 1, 2nd Floor, Jalan Setia Dagang AK U13/AK
Setia Alam, 40170 Shah Alam, Selangor, Malaysia
Email: sales@unicode.com.my
Website: www.sql-pos.com