Privacy Policy & Biometric Data Standards | Gomen Biometrics
1. General Scope & Commitment to Biometric Confidentiality
Your personal data protection is our paramount priority at Gomen Biometrics (located at https://gomen.my). This comprehensive Privacy Policy outlines the technical and organizational safeguards implemented across our web infrastructure, explaining how your privacy is protected whenever you access our interactive calculation suite.
Operating in the digital health and physical fitness technology space, we recognize that anthropometric data, biological metrics, and personal wellness explorations require the utmost digital confidentiality. This document outlines how we handle user interactions, browser caching, technical cookies, and third-party advertising services, demonstrating our strict adherence to the highest international data protection benchmarks.
We operate on the fundamental belief that individuals should be free to explore physiological formulas, calculate caloric requirements, and benchmark their physical fitness without fear of being tracked, profiled, or targeted by predatory commercial wellness advertising networks.
2. Client-Side Execution: Zero Storage of Biometric Health Data
The foundational design pillar of Gomen Biometrics is our Zero-Biometric Storage Architecture. When you utilize any calculator on https://gomen.my—whether calculating Body Mass Index, entering waist and neck measurements for body fat estimation, projecting calorie deficits, or planning hydration—all calculations are executed exclusively in your local web browser's memory via client-side JavaScript.
At no point are your height, weight, age, biological sex, caloric intake, or waist circumference measurements transmitted over the internet to our backend servers, recorded in remote server databases, or aggregated into persistent user profiling databases. When you close or refresh your browser tab, all calculated metrics are instantly and permanently purged from active memory. We believe this represents the gold standard in digital consumer privacy.
3. Technical Web Server Logs & Diagnostic Infrastructure
Like virtually all standard web server infrastructures, when you request a webpage from https://gomen.my, our web hosting servers automatically record routine non-personally identifiable technical connection data in standard web server access logs. This data includes:
- Internet Protocol (IP) address (frequently anonymized or masked at the network level);
- Browser type, software build, and rendering engine (e.g., Chrome, Safari, Firefox, Edge);
- Operating system environment (e.g., Windows, macOS, iOS, Android, Linux);
- Referring Uniform Resource Locator (the webpage you visited prior to navigating to our site);
- Date, time, and server response codes (e.g., HTTP 200 OK, HTTP 404 Not Found);
- Total bytes transferred and page asset load latencies.
This technical log data is utilized strictly for system diagnostics, server performance monitoring, DDoS mitigation, and ensuring operational availability. It is never cross-referenced or linked with any user identities.
4. Browser Cookies, Local Storage, & Client Preferences
https://gomen.my utilizes minimal first-party cookies and modern browser Local Storage solely to enhance your user experience—such as remembering your preferred measurement unit system (Metric versus Imperial) or theme preferences across sessions. These functional cookies contain zero health information, zero personal identities, and zero tracking vectors.
You have the absolute right and ability to disable, block, or delete cookies at any time through your browser's security settings. Disabling cookies will not prevent you from using our calculators, though you may need to re-select your preferred measurement units upon each visit.
5. Third-Party Advertising & Digital Partner Data Standards
Gomen Biometrics may display digital advertisements served by reputable third-party advertising partners, programmatic exchanges, and certified ad technology networks. These advertising partners may deploy standard HTTP cookies, web beacons, or non-personal device identifiers to deliver contextually relevant advertisements based on general web browsing patterns.
Users may opt out of personalized interest-based advertising by visiting the Network Advertising Initiative (NAI) opt-out page at https://www.aboutads.info/choices/ or the Digital Advertising Alliance consumer choices portal. Third-party advertising partners on our platform have zero access to any personal biometric measurements, inputs, or calculations you perform within our computational tools.
6. HIPAA Context & Health Data Non-Covered Entity Disclosure
While Gomen Biometrics maintains the highest technological standards of biometric privacy, visitors should note that our platform is an open educational website and is not a 'Covered Entity' as defined under the United States Health Insurance Portability and Accountability Act of 1996 (HIPAA). We do not maintain electronic protected health information (ePHI) or medical records, nor do we bill health insurance providers.
Because no identifying patient records are gathered or stored on our servers, HIPAA regulations do not formally govern our digital calculators. However, our zero-storage technical architecture provides consumers with voluntary privacy protections that exceed standard commercial wellness application practices.
7. Children's Privacy Protection Act (COPPA) Compliance
Protecting the privacy of young children is critically important. Gomen Biometrics does not knowingly collect, request, or solicit personal information from children under the age of thirteen (13), nor is our website designed for, marketed to, or directed at children. In the event that we learn that an individual under age 13 has transmitted personal information through our contact portal, we will delete that information immediately from our correspondence logs.
8. Global Privacy Rights (GDPR, CCPA/CPRA, and International Regulations)
In full adherence to the European Union General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA/CPRA), visitors to https://gomen.my possess comprehensive data rights, including the Right to Know, the Right to Access, the Right to Rectification, the Right to Erasure, and the Right to Non-Discrimination.
Because Gomen Biometrics does not collect, record, sell, or share personal identifying information, names, email lists, or biometric parameters with third parties, we do not engage in the sale of consumer personal information as defined under CCPA. For any privacy inquiries or statutory requests, please contact our Consumer Health Privacy & Statutory Rights Ombudsman at contact@gomen.my.
9. Children's Online Privacy Protection Act (COPPA) & Minors' Safeguards
Protecting the privacy of young children is critically important. Gomen Biometrics does not knowingly collect, request, or solicit personal information from children under the age of thirteen (13), nor is our website designed for, marketed to, or directed at children. In the event that we learn that an individual under age 13 has transmitted personal information through our contact portal, we will delete that information immediately from our correspondence logs.
Because our calculators run entirely in client-side browser memory, children browsing the website are never subjected to biometric profiling or persistent health tracking. Parents and educators are encouraged to monitor their children's online activities to ensure a safe, privacy-respecting digital environment.
10. Data Security Architecture & Transport Layer Security (TLS 1.3)
To deliver rapid calculation speeds, cryptographic SSL/TLS encryption, and robust DDoS protection, https://gomen.my utilizes premier global Content Delivery Networks (CDNs) and secure cloud server infrastructure. All network traffic between your web browser and our servers is encrypted using modern Transport Layer Security (TLS 1.3) protocols.
Our infrastructure enforces strict HTTP Strict Transport Security (HSTS) headers, X-Content-Type-Options protections, and secure cross-origin resource sharing policies. Any technical connection data processed by our hosting providers and CDN partners is handled strictly in compliance with enterprise-grade data protection standards, SOC 2 Type II certifications, and international data transfer agreements.
11. Statutory Data Protection Inquiries & Rights Requests
Whether you reside within the European Economic Area, the United Kingdom, California, or any other global jurisdiction, you retain the full right to inquire about our data governance practices, request confirmation regarding server log retention, or raise privacy concerns.
Direct all statutory privacy inquiries, GDPR data controller requests, or CCPA rights notices to our designated Consumer Health Privacy & Statutory Rights Ombudsman via email at contact@gomen.my. We guarantee a prompt, detailed response from our technical privacy compliance team within statutory deadlines.
Additionally, users accessing our website through privacy-focused web browsers (such as Brave, DuckDuckGo, or Firefox with Enhanced Tracking Protection enabled) or utilizing system-wide Virtual Private Networks (VPNs) will experience zero loss of functionality. Our client-side calculation architecture does not require browser fingerprinting, canvas extraction, or battery status tracking to operate, maintaining total technical integrity under high-privacy settings.