ICOn

Get 7 Days Free Trial, Money Back Guarantee

Data Security & Compliance Policy

At Al-Bari Technologies , we are committed to maintaining the highest standards of data security, privacy, and regulatory compliance—especially for clients operating in the European Union (EU) and subject to the General Data Protection Regulation (GDPR).

Our Commitment to Data Security

We implement technical and organizational measures to protect your data against unauthorized access, disclosure, alteration, or destruction. These include:

  • Encryption (at rest and in transit)
  • Secure Socket Layer (SSL) protocols
  • Firewall and antivirus protection
  • Role-based access controls</li>
  • Regular security audits and vulnerability testing
  • Data backups and disaster recovery systems

Data We Collect and Store

We only collect and process data essential for ERP functionality and customer service, including:

  • Business profile and user contact details
  • Transactional and financial records
  • Inventory and HR-related data
  • Login, usage, and device information (for security)

How We Use Your Data

We use collected data strictly for:

  • Providing and improving ERP functionality
  • Customer support
  • Invoicing and account management
  • Compliance with legal and regulatory obligations

We never sell or share your data with third parties for marketing or non-operational purposes.

Data Access and Control

As our customer, you have full access and control over your data:

  • View, update, or export your records
  • Request data deletion or correction
  • Define user roles and access levels within your ERP system

GDPR Compliance for EU Clients

If you are an EU-based client, the following CGPR Principles apply:

    a) Lawful Processing:

    We only collect and process data with explicit user consent or for contract fulfillment.

    b) Right to Access:

    You may request a full copy of all personal data we store about your organization or employees.

    c) Right to Erasure (Right to Be Forgotten):

    Upon your request, we will permanently delete your data from our servers unless legally required to retain it.

    d) Data Portability

    We support structured, machine-readable exports of your data on request.

    e) Data Breach Notification

    In the event of a breach, we will notify affected clients and regulators within 72 hours, as required by GDPR.

Third-Party Integrations

Where we use third-party services (e.g., payment gateways, SMS gateways), we ensure:

  • Compliance with GDPR (if EU-based)
  • Strict data processing agreements are in place
  • Minimal and secure data transmission

User Responsibility

Users are responsible for:

  • Creating strong passwords
  • Managing internal user roles and permissions
  • Not sharing login credentials

Policy Updates

This policy may be updated periodically. Users will be notified via email or platform notifications.

Continued use of our ERP after changes means you accept the revised terms.

Data Hosting

All ERP data is hosted on secure cloud servers with restricted physical access.

  • Hosting locations may vary by client region to comply with data localization laws.

Contact Information

If you have any questions about our Data Security & Compliance Policy or wish to exercise your rights under GDPR: