Last Updated: 26 August 2026
Information We Collect When You Engage Our Services
We collect only the information strictly necessary to establish communication and deliver the service you have requested.
Personal Information: Full legal name, email address, and/or telephone number. You may elect to provide only one method of contact.
Business Information: Company name, physical location (where applicable), company logo, professional role, and relevant professional background.
We do not intentionally collect unnecessary or sensitive information, including but not limited to tax returns, identification documents, passport copies, or biometric data.
Purpose of Data Processing
We utilise your information solely to: (a) respond to your inquiry; (b) prepare required documentation; (c) deliver the service you have requested; (d) communicate with you regarding your matter; and (e) complete the work you have commissioned.
We expressly refrain from utilising your information for marketing purposes, profiling activities, or any purpose unrelated to the service you have engaged us to perform.
Legal Basis for Processing
GDPR Article 6 (Residents of the European Union/European Economic Area)
We process your personal data on the basis of contractual necessity (to fulfil the services you have requested) and legitimate interests (operating our business efficiently and securely). For individuals residing in the EU/EEA, we ensure that all processing activities comply with General Data Protection Regulation requirements.
Jordan Personal Data Protection Law No. 24 of 2023 (Residents of the Hashemite Kingdom of Jordan)
We process personal data on the basis of: (a) prior consent where applicable; (b) legitimate interests, including responding to business inquiries and maintaining website functionality; and (c) legal obligations pursuant to Jordanian laws and regulations. All processing activities align with Personal Data Protection Law requirements effective March 2025.
Data Processing and Storage Methodology
We process documents locally using LibreOffice.
All files created are stored locally on Ubuntu systems.
Security Measures: We protect your data with AES 256 file level encryption at rest (via eCryptfs), enforce TLS 1.3 for all data in transit, maintain strict role based access controls, and run all applications in isolated sandboxed environments.
We do not retain client data upon completion of the requested work unless explictly requested to. Once final materials have been delivered to you, all related data is securely erased from our systems.
We do not sell your data to any third parties.
We shall never share your data under any circumstances, including when compelled by law enforcement or regulatory authority, as there would remain negligible data available for disclosure following systematic deletion of all client records post service completion. Accordingly, no meaningful disclosure can occur.
Security Incident Notification Protocol
By default, we securely erase all client data immediately upon service completion. If you require us to retain a copy, please request this explicitly before the project ends; otherwise, no archives are kept.
Should a security breach take place in relation to active or recently erased client data, then the following actions will be undertaken:
We will conduct an assessment of the breach in terms of its size right away. Should the breach involve active client data, then it will be obligatory to report the matter to the affected people within 72 hours after the discovery of the breach according to Article 33 of GDPR and Article 17 of the Jordan PDPL. Should the breach affect only transient data backup (older than 48 hours), then no reporting will be needed as the data cannot be traced back to particular people anymore.
Data Retention Policy
We do not retain client data upon completion of the requested work. Once final materials have been delivered, all related data is securely erased from our active systems. Automated backup snapshots are transient and purged automatically within a short window (typically less than 48 hours) solely to allow for immediate disaster recovery in the event of catastrophic system failure.
Your Rights
The right to access: you are able to ask for a copy of your data which is now in our possession. The right to rectification: you can ask to correct any inaccuracies in your data. The right to erasure: you can ask for instant removal of your data prior to the completion of the service. Important Note: since we follow the policy of zero retention of data, once we have provided a service and removed your data (in 48 hours after delivering the order), these rights cannot be used anymore since the data will no longer be in our possession as we don't keep archives of client data. To use your rights while working with us, please contact us through the Contact page. We usually respond in one (1) business day.
For EU/EEA Residents
These rights correspond with GDPR Chapter III, including rights to access, rectification, erasure, restriction, portability, objection, and withdrawal of consent.
For Jordan Residents (PDPL)
Under Jordan's Personal Data Protection Law No. 24 of 2023, you possess the right to be informed, access personal data, withdraw previously granted consent, request rectification or alteration of your data, and object to processing. Standardised forms for data subject requests are available by contacting us via our Contact page pursuant to the 2025 Regulation on Data Subject Rights.
To exercise these rights, please contact us via the Contact page on our website. We typically respond to such requests within one (1) business day.
International Data Transfers
This includes matters relating to intellectual property in several jurisdictions. But, since our services are zero retention, wherein we delete all the client information once the service is completed, we do not have any large scale databases of personal information that need to be processed and stored across borders. In cases where particular documents are required to be transferred overseas in order to respond to a request (such as filing in a foreign registry), we will: Obtain your explicit consent for such a transfer. Transfer through secure, encrypted channels. Verify the compliance of the receiver to relevant data protection requirements (such as GDPR or Jordan PDPL). We do not store or process your personal information in third country servers.
Transfers Outside the European Economic Area
Protected through Standard Contractual Clauses (SCCs) or adequacy determinations where applicable. You may request particulars on specific transfer mechanisms by contacting us via our Contact page.
Transfers Outside the Hashemite Kingdom of Jordan
In accordance with Jordan PDPL provisions, transfers outside the Kingdom ensure that the receiving entity provides adequate protection. Where required, we implement contractual safeguards aligned with PDPL cross border transfer requirements.
Cookies
Functional Cookies
These cookies are indispensable for the proper operation of our website.
Analytics Cookies
These cookies assist us in understanding fundamental website traffic and usage patterns. We utilise Matomo for anonymous analytics purposes.
Updates to This Policy
We reserve the right to update this policy periodically. Material amendments shall be communicated via electronic mail or conspicuous site notice no fewer than seven (7) days prior to taking effect. Continued utilisation following updates constitutes acceptance thereof.
If You Have Additional Questions
Please contact us via the Contact page on our website.