Each service has a defined scope and a fixed price
We do not offer open-ended consulting. Every service we provide starts and ends in a known place, with a written output that belongs to you.
← Back to homeOur methodology
We begin every client engagement by understanding the current state — what information the business holds, how it moves, and who touches it. Only then do we make recommendations about where an AI tool could add value without creating new data risks.
Each service is designed to stand alone. The PDPA review does not require you to purchase anything else. The knowledge assistant does not require an ongoing support plan. You make each decision based on whether it makes sense for your business at that time.
PDPA Readiness Review
A review of what customer information your business holds and where it would travel if you added an outside tool. We look at your enquiry forms, message archives, order records and staff practice, then set out in plain language which items should not leave your own systems and what a compliant arrangement would look like under Malaysian personal data rules.
Short written assessment as the output
Steps ordered by effort, not just theoretical risk
Covers forms, archives, order records and staff practice
Notes where a lawyer should be involved
Process
Short intake questionnaire about your business and current tools
We review the forms, records and systems you use to collect or store customer information
Written assessment delivered within five working days
One follow-up conversation to clarify any points in the assessment
Advisory work, not a legal opinion. We note in the assessment where legal advice is the appropriate next step.
Knowledge Base Assistant
An assistant that answers staff questions from your own internal documents: procedures, warranty terms, supplier agreements, the things new hires ask about for six months. It cites the document and section behind each answer, so a person can check rather than trust. Setup covers gathering and tidying the source documents, defining what stays out of scope, and a two-week correction period where wrong answers are logged and fixed.
Draws only from your own documents, not the general web
Cites the document and section behind each answer
Scope defined before setup — what the assistant can and cannot answer
Two-week correction period after initial delivery
Process
You share your existing internal documents in any common format
We review, tidy and organise the documents; you confirm what stays out of scope
Assistant is configured, tested internally and delivered to you
Two-week correction period: wrong answers are logged and fixed, not hidden
Total timeline: four to five weeks from document handover to end of correction period.
Support Plan
An ongoing plan for businesses running an assistant on internal documents. Each month we add whatever documents have changed, retire the superseded ones, review the questions that received poor answers, and check that nothing sensitive has drifted into scope. Includes a response commitment for problems raised by your staff and a written summary you can file.
Monthly document updates — new content added, old content retired
Monthly answer quality review and scope check
Written summary each month for your records
No lock-in; cancel at end of any month
Monthly cycle
You send updated documents or flag changes at start of month
We update the assistant and retire outdated content
We review flagged poor answers and adjust scope if needed
Written summary sent before end of month
Requires an existing knowledge assistant, either one we built or one set up separately.
Choosing the right service
This table helps you decide which service fits your current situation.
| What you need | PDPA Review | Knowledge Assistant | Support Plan |
|---|---|---|---|
| Understand your data compliance position | — | — | |
| Reduce staff time spent on internal questions | — | ||
| Keep assistant updated as documents change | — | — | |
| One-time engagement with fixed end point | — | ||
| Monthly written report for your records | — | — |
The most common path is: PDPA Review first → Knowledge Base Assistant → Support Plan. But each step is optional and separate.
Standards we apply across all services
These apply to every engagement, regardless of which service you take.
Data minimisation
We do not copy or retain your business data beyond what the engagement requires. Source documents are held only during active work and deleted on completion unless you ask otherwise.
Scope in writing first
Every engagement is preceded by a written scope document that sets out what is included, what is not, and what the deliverable will look like. Changes to scope are agreed in writing.
PDPA Malaysia alignment
All compliance advice references PDPA 2010 (Malaysia) and relevant sector-specific codes. We do not apply European GDPR frameworks as a substitute for Malaysian law.
Honest limits stated
Where our work reaches the boundary of what advisory or technical work can address, we say so explicitly and indicate what kind of professional you should speak to next.
Pricing
PDPA Readiness Review
RM 138
One-time. Written assessment of your data compliance position under Malaysian personal data rules.
- Written output
- One follow-up call
- No hidden extras
Knowledge Base Assistant
RM 460
One-time setup fee. Assistant built from your own documents with source citations and a two-week correction period.
- Document review & setup
- Two-week correction period
- Scope definition included
Support Plan
RM 615 / month
Ongoing. Monthly updates, answer quality review, and written summary. No minimum period.
- Monthly document updates
- Written monthly summary
- No lock-in
Not sure which service fits?
Send us a brief description of what you are trying to sort out. We will tell you honestly which service applies, or whether none of them do.
Get in Touch