Core principles
- Purpose limitation: process data for legitimate service, security, support, billing and legal purposes.
- Data minimization: seek to process only information reasonably needed for enabled features.
- Accuracy: provide methods for account users to update relevant information.
- Retention limitation: avoid keeping personal data longer than reasonably necessary.
- Security: use proportionate controls designed to reduce unauthorized access, disclosure, alteration or loss.
Customer and service roles
For business data uploaded by a customer, the customer commonly determines who is contacted, why data is used and what content is sent. SawariyaChat processes that data to provide the requested platform functions, subject to the applicable commercial relationship and law.
International and third-party processing
Connected providers may process data in different regions according to their infrastructure. Where required, appropriate contractual or legal safeguards should be used for cross-border processing.
Rights requests
Requests for access, correction, deletion, restriction or other applicable privacy rights can be sent through the DPO / Privacy Contact page. We may verify identity and the relevant account before acting.
Incident handling
Suspected security incidents are assessed based on their nature and impact. Where legally required, affected parties or authorities may be notified in accordance with applicable requirements.
