Privacy Policy
UAE PDPL (Federal Decree-Law No. 45 of 2021) · M7 Sovereign UG (haftungsbeschränkt) · 100% remote, serving the GCC
1. Who we are (Controller)
M7 Sovereign UG (haftungsbeschränkt) ("M7", "we") is the data controller. We operate 100% remotely and serve clients across the GCC. Data-protection contact: datenschutz@m7digital.de.
2. What data we process
- From our booking form: name, business email, phone, company, country, preferred date/time.
- From business outreach: publicly available business contact data (company name, website, public business phone/email).
- Operational: message content you send us, and records of our correspondence.
3. Purposes & legal basis
- Booking & service delivery — basis: performance of / steps toward a contract.
- B2B outreach — basis: legitimate interest in offering relevant business services, balanced against your rights, with a clear opt-out in every message.
4. Cross-border processing (important)
To generate and process communications we use AI services located outside the UAE — including providers in the USA (OpenRouter) and model providers that may operate in other jurisdictions (e.g. Alibaba Qwen, Zhipu GLM). Safeguard: before any data leaves our systems, directly identifying personal data is replaced with reversible tokens by our internal egress gateway; only the minimum, pseudonymised content required for the task is transmitted. Transfers are made consistent with the PDPL's cross-border provisions.
5. Retention
We keep personal data only as long as necessary for the purpose collected, after which tokens and records are purged. You may request earlier deletion at any time.
6. Your rights (PDPL)
- Access, rectification and erasure of your data.
- Objection / withdrawal — every outreach email contains a one-click opt-out link; you can also email us.
- Lodge a complaint with the UAE Data Office.
7. Security
Encryption of sensitive values, role-based access control, and a mandatory egress gateway through which all external data flows are tokenised and audited.
8. Contact
Data-subject requests: datenschutz@m7digital.de.
سياسة الخصوصية
قانون حماية البيانات الإماراتي (PDPL) · M7 Sovereign UG · عن بُعد 100% · نخدم دول الخليج
١. من نحن
شركة M7 Sovereign UG هي المتحكم في البيانات. نعمل عن بُعد بالكامل ونخدم عملاء في دول الخليج. للتواصل بشأن حماية البيانات: datenschutz@m7digital.de.
٢. البيانات التي نعالجها
الاسم، البريد الإلكتروني، الهاتف، اسم الشركة، الدولة، الموعد المفضّل (من نموذج الحجز)؛ وبيانات التواصل التجارية المتاحة علنًا (للتواصل B2B)؛ ومحتوى رسائلك.
٣. الغرض والأساس القانوني
تنفيذ العقد/خطوات ما قبل التعاقد (الحجوزات)؛ والمصلحة المشروعة لعرض خدمات تجارية ذات صلة (التواصل B2B) مع إمكانية إلغاء الاشتراك في كل رسالة.
٤. المعالجة عبر الحدود
نستخدم خدمات ذكاء اصطناعي خارج الإمارات (OpenRouter بالولايات المتحدة، ومزوّدو نماذج مثل Qwen وGLM). الضمان: قبل خروج أي بيانات من أنظمتنا، تُستبدل البيانات المُعرِّفة برموز (Tokens) عبر بوابة داخلية؛ ولا يُرسَل سوى الحد الأدنى اللازم.
٥. مدة الاحتفاظ
نحتفظ بالبيانات بالقدر اللازم فقط، ثم تُحذف. يمكنك طلب الحذف في أي وقت.
٦. حقوقك
الوصول والتصحيح والحذف؛ والاعتراض/إلغاء الاشتراك (رابط في كل بريد)؛ وتقديم شكوى إلى مكتب البيانات الإماراتي.
٧. التواصل
طلبات أصحاب البيانات: datenschutz@m7digital.de.