Policy details
Last updated: 17 September 2026
Athar365 does not sell personal data. We do not ask for card details, passwords, health information or other sensitive data through public forms.
1. Who is responsible for your data?
Athar365 determines the purposes and means of processing data collected through this website and its connected channels. You can contact us in Riyadh, Saudi Arabia using the details below.
2. Data we collect
The data depends on how you use the site and services.
- Identity and contact details, such as name, email, phone number and organisation.
- Project information, including sector, objective, budget, challenges, brief and submitted attachments.
- Account and permission data when using a client or administration dashboard.
- Ratings, feedback, support messages and correspondence.
- Limited technical data, such as pages and controls used, device type, network address and security logs.
- Payment reference and status. The payment provider processes card data; Athar365 does not retain the full card number or security code.
3. Sources
We receive data directly from you when you complete a form, contact us or engage us. Some data is created automatically while you use the site, and authentication or payment status may come from connected service providers.
4. Why we use data
We use data only as needed to:
- Understand requests, prepare proposals, deliver services and manage projects.
- Create and secure accounts and verify permissions.
- Process payments, invoices and order status.
- Respond to enquiries, feedback and complaints.
- Improve the website and measure content and campaign performance.
- Meet legal obligations, protect rights and prevent fraud or misuse.
- Send marketing communications where consent or another lawful basis exists, with an unsubscribe option.
5. Basis for processing
We process data with consent, to take requested steps or perform a contract, to meet legal duties, or to protect legitimate interests permitted by law. Where consent is the basis, it may be withdrawn for future processing without affecting past processing or legal retention duties.
7. Processing outside Saudi Arabia
Some technology providers may process data in operations outside Saudi Arabia. Where applicable, transfers are handled under legal requirements and suitable safeguards and are limited to what is needed to provide the service.
8. Security
We use reasonable organisational and technical measures to limit access and protect data from loss, alteration or unauthorised disclosure. No electronic method is entirely risk-free, so please do not send sensitive data through public channels.
9. Retention and deletion
Enquiry and feedback data is normally kept for no more than 24 months after the last interaction unless it becomes part of a client relationship or is needed for an open request. Project, contract and invoice records are kept for delivery and then for legally required periods or to establish rights. Data is deleted or de-identified when the purpose ends and no legal reason to retain it remains.
10. Your rights
Subject to applicable law, you may request information about processing, access your data, receive a copy, correct or complete it, request destruction where no retention basis remains, and withdraw consent where applicable. We may verify identity before acting and will explain any lawful restriction on a request.
12. Children's data
The services are intended for businesses and professionals and are not designed to collect children's data. If we learn that such data was collected without a proper basis, we will take appropriate steps to delete or otherwise handle it under applicable law.
13. Updates and requests
We may update this policy when services or legal requirements change. The latest date appears above. Send a data request or complaint by email or phone, and we will review and respond within a reasonable period under applicable requirements.
