Data Security & Compliance Policy
At Al-Bari Technologies , we are committed to maintaining the highest standards of data security, privacy, and regulatory compliance—especially for clients operating in the European Union (EU) and subject to the General Data Protection Regulation (GDPR).
Our Commitment to Data Security
We implement technical and organizational measures to protect your data against unauthorized access, disclosure, alteration, or destruction. These include:
- Encryption (at rest and in transit)
- Secure Socket Layer (SSL) protocols
- Firewall and antivirus protection
- Role-based access controls</li>
- Regular security audits and vulnerability testing
- Data backups and disaster recovery systems
Data We Collect and Store
We only collect and process data essential for ERP functionality and customer service, including:
- Business profile and user contact details
- Transactional and financial records
- Inventory and HR-related data
- Login, usage, and device information (for security)
How We Use Your Data
We use collected data strictly for:
- Providing and improving ERP functionality
- Customer support
- Invoicing and account management
- Compliance with legal and regulatory obligations
We never sell or share your data with third parties for marketing or non-operational purposes.
Data Access and Control
As our customer, you have full access and control over your data:
- View, update, or export your records
- Request data deletion or correction
- Define user roles and access levels within your ERP system
GDPR Compliance for EU Clients
If you are an EU-based client, the following CGPR Principles apply:
a) Lawful Processing:
We only collect and process data with explicit user consent or for contract fulfillment.
b) Right to Access:
You may request a full copy of all personal data we store about your organization or employees.
c) Right to Erasure (Right to Be Forgotten):
Upon your request, we will permanently delete your data from our servers unless legally required to retain it.
d) Data Portability
We support structured, machine-readable exports of your data on request.
e) Data Breach Notification
In the event of a breach, we will notify affected clients and regulators within 72 hours, as required by GDPR.
Third-Party Integrations
Where we use third-party services (e.g., payment gateways, SMS gateways), we ensure:
- Compliance with GDPR (if EU-based)
- Strict data processing agreements are in place
- Minimal and secure data transmission
User Responsibility
Users are responsible for:
- Creating strong passwords
- Managing internal user roles and permissions
- Not sharing login credentials
Policy Updates
This policy may be updated periodically. Users will be notified via email or platform notifications.
Continued use of our ERP after changes means you accept the revised terms.
Data Hosting
All ERP data is hosted on secure cloud servers with restricted physical access.
- Hosting locations may vary by client region to comply with data localization laws.
Contact Information
If you have any questions about our Data Security & Compliance Policy or wish to exercise your rights under GDPR:
- Al-Bari Technologies
- 📧 Email: support@albaritechnologies.com
- 📞 Phone: +92-303-44-66-999