What Data We Collect
Contact information, service details, uploaded documentation, and necessary technical analytics required for secure form submission.
This policy outlines transparently how ACTA collects, handles, protects, and stores personal data submitted through our digital platforms and service forms.
Contact information, service details, uploaded documentation, and necessary technical analytics required for secure form submission.
To evaluate your request, communicate with you, verify legal requirements, complete transactions, and fulfill regulatory compliance.
You have the right to request access to, correction of, or deletion of your personal data subject to statutory records retention laws.
This policy explains how ACTA handles personal data when you visit the website, use the Contact Us form, submit a service request, upload documents, or communicate through channels linked to the website.
This policy applies to data processed by ACTA where ACTA determines the purpose or means of processing through the website. External websites and platforms you choose to visit are governed by the privacy policies of their respective operators.
We take into account the provisions of UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data to the extent applicable. Where a specific processing activity is subject to an independent regime in the Dubai International Financial Centre (DIFC) or Abu Dhabi Global Market (ADGM), the requirements of that regime are considered within its applicable scope.
The type of data we collect depends on how you use the website and the service you request. It may include the following categories:
Your name, telephone number, email address, message subject, and the communication channel you choose.
The type of service, relevant emirate, description of the transaction or enquiry, and any information you enter in free-text fields.
Files you choose to upload, such as PDFs, images, or Word documents. Depending on your transaction, these files may contain identity, legal, or financial information.
IP address, country where available from the network provider, time zone, browser language, page URL, submission time, and, for some requests, the referring page.
Please do not send data or documents that are unrelated to your request. If a document contains information about other people, make sure you have a lawful basis to share it for the relevant transaction.
Depending on the processing activity, the legal basis may be taking steps at your request before entering into a contract, performing the service, complying with a legal obligation, pursuing a legitimate interest related to the security and operation of the service, or obtaining your consent where consent is required. We do not treat mere use of the website as blanket consent to every type of processing.
We treat information and documents submitted through website forms as information that requires protection appropriate to its nature and sensitivity. We apply technical and organisational controls designed to reduce unauthorised access and unlawful use.
Restricted access: Service-request attachments are stored in a dedicated area that is not intended for public display, and downloads from the administration area are restricted to authorised users.
Data minimisation: We request only what is needed to understand and follow up on your request, and we encourage you not to upload unnecessary documents.
Operational safeguards: Website forms use validation mechanisms, WordPress permissions, and file and field checks before information is saved.
No electronic transmission or storage method can guarantee absolute security. We therefore review safeguards according to the available risks and the nature of the data and service.
We share data only to the extent connected with the purpose of the service, operation of the website, or legal compliance. Depending on the circumstances, recipients may include:
The website includes links to or resources from external services such as WhatsApp وGoogle Maps and web-font services. Using these services or loading their resources may result in some technical data being processed by their providers under their own policies.
The website may use cookies or similar technologies that are necessary for WordPress operation, security, remembering certain settings, or providing technical functionality. If non-essential analytics or marketing tools are enabled in the future, appropriate notice and consent choices should be provided where required.
Website hosting, email, or external services may rely on providers that process data in other countries. Where an international transfer takes place, applicable legal requirements and safeguards are considered according to the relevant regulatory jurisdiction.
We retain data for as long as necessary to handle your request, follow up on the service, protect records, and meet legal, accounting, or dispute-related obligations, depending on the nature of the transaction. Retention periods may vary from one case to another.
When a service-request record is permanently deleted from the website system, its related attachments are deleted from the website storage. Some information may need to be retained for longer where required by law or necessary to establish a transaction or right.
We may ask for information to verify your identity before acting on a data-related request, in order to protect your information from disclosure to an unauthorised person.
If you have a question about this policy or wish to exercise a right relating to your data, you may contact us through the official email address below or through the Contact Us page. We will review the request according to the nature of the data and the applicable legal rules.
We may update this policy when website functions, services, or legal requirements change. The date of the latest update appears at the top of the page, and we recommend reviewing the policy when submitting a new request or documents of a sensitive nature.
Connect with us today and place your transactions in certified expert hands.