This study analyzes the legal protection of personal data belonging to Micro and Small Enterprise (MSE) actors in East Kalimantan within the free halal certification scheme (SEHATI), utilizing an integrated approach of Law No. 27 of 2022 on Personal Data Protection and the maṣlaḥah mursalah perspective. Employing a qualitative socio-legal approach through literature review and in-depth interviews, this research identifies vulnerabilities in personal data management resulting from MSEs' limited digital literacy and the absence of technical data protection SOPs within BPJPH and LP3H. The findings reveal that submitting identity documents to Halal Product Process Companions (P3H) without confidentiality agreements leads to data leakage risks, fraudulent product registrations, and the blocking of legitimate MSEs from free certification access. To address these challenges, this study formulates a data protection framework that synthesizes compliance with informed consent and data minimization principles alongside Sharia ethics—positioning data confidentiality as a sacred trust to uphold maqāṣid al-sharī‘ah in protecting the assets and dignity of MSEs actors.
Copyrights © 2026