1Introduction
Andronest ("we," "us," or "our"), headquartered in Dubai, United Arab Emirates, is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, use our services, or engage with us in any way.
This policy is designed to comply with the UAE Federal Decree-Law No. 45/2021 on Personal Data Protection (PDPL), the General Data Protection Regulation (GDPR) for our European users, the California Consumer Privacy Act (CCPA), and other applicable international data protection laws.
2Definitions
3Information We Collect
3.1 Information You Provide
- Contact Information: Name, email address, phone number, company name, job title
- Account Information: Username, password, account preferences
- Business Information: Company details, financial information for accounting services
- Communication Data: Messages, feedback, support requests
- Payment Information: Billing details (processed through secure payment providers)
3.2 Information Collected Automatically
- Device Information: IP address, browser type, operating system, device identifiers
- Usage Data: Pages visited, time spent, click patterns, referring URLs
- Location Data: General geographic location based on IP address
- Cookies & Tracking: As described in our Cookie Policy
3.3 Information from Third Parties
- Business partners and referral sources
- Social media platforms (when you link accounts)
- Publicly available sources
4Legal Basis for Processing
We process your personal data based on the following legal grounds:
Consent
You have given explicit consent for specific purposes (e.g., marketing communications).
Contract
Processing is necessary for the performance of a contract with you.
Legal Obligation
Processing is required to comply with UAE laws and regulations.
Legitimate Interest
Processing serves our legitimate business interests without overriding your rights.
5How We Use Your Information
- Provide, maintain, and improve our services
- Process transactions and send related information
- Send promotional communications (with your consent)
- Respond to inquiries and provide customer support
- Analyze usage patterns to enhance user experience
- Ensure security and prevent fraud
- Comply with legal obligations and regulatory requirements
- Fulfill accounting and bookkeeping services
6Data Sharing and Disclosure
We may share your personal data with:
- Service Providers: Third parties who perform services on our behalf (hosting, analytics, payment processing)
- Business Partners: Trusted partners for joint offerings (with your consent)
- Legal Authorities: When required by UAE law, court orders, or regulatory bodies
- Professional Advisors: Lawyers, auditors, and consultants as necessary
- Business Transfers: In connection with mergers, acquisitions, or asset sales
Note: We never sell your personal data to third parties for marketing purposes.
7International Data Transfers
Your data may be transferred to and processed in countries outside the UAE. When transferring data internationally, we ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses (SCCs) approved by relevant authorities
- Adequacy decisions recognizing equivalent data protection levels
- Binding Corporate Rules for intra-group transfers
- Your explicit consent for specific transfers
8Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected:
| Data Type | Retention Period |
|---|---|
| Account information | Duration of account + 3 years |
| Transaction records | 7 years (UAE legal requirement) |
| Marketing preferences | Until consent withdrawn |
| Website analytics | 26 months |
| Support communications | 3 years after resolution |
9Your Rights
Under UAE PDPL, GDPR, and other applicable laws, you have the following rights:
Right to Access
Request a copy of your personal data we hold.
Right to Rectification
Correct inaccurate or incomplete data.
Right to Erasure
Request deletion of your personal data.
Right to Restrict
Limit how we process your data.
Right to Portability
Receive your data in a structured format.
Right to Object
Object to processing based on legitimate interests.
Right to Withdraw Consent
Withdraw consent at any time.
Right to Complain
Lodge a complaint with the UAE Data Office.
To exercise your rights, contact us at privacy@andronest.com. We will respond within 30 days.
10Data Security
We implement appropriate technical and organizational measures to protect your data:
- SSL/TLS encryption for data in transit
- AES-256 encryption for data at rest
- Access controls and authentication mechanisms
- Regular security audits and penetration testing
- Employee training on data protection
- Incident response and breach notification procedures
11Children's Privacy
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal data from children. If you believe we have inadvertently collected such data, please contact us immediately at privacy@andronest.com.
12Policy Updates
We may update this Privacy Policy periodically. Changes will be posted on this page with an updated "Last Updated" date. For material changes, we will notify you via email or prominent website notice. We encourage you to review this policy regularly.
13Contact Us
For questions about this Privacy Policy or our data practices:
UAE Data Office
You may also contact the UAE Data Office if you have concerns about our data processing practices or wish to file a complaint under UAE Federal Decree-Law No. 45/2021.