Legal
Privacy Policy
How Farqad Cloud collects, uses, shares, and protects personal information.
Who we are
This Privacy Policy explains how Farqad Cloud L.L.C. (trading as Farqad Cloud) ("we", "us") processes personal information when you use our website, contact us, request quotations, purchase service plans, or otherwise interact with us.
Controller contact: privacy@farqadcloud.com. Company identity details appear in our Legal Notice. We have not appointed a data protection officer or EU/UK representative unless one is identified in the Legal Notice or an engagement-specific notice.
Scope
This policy covers the public website, contact and quotation forms, Trust Center access requests, vulnerability reports, and customer engagement communications. Product-specific processing for a customer engagement may also be governed by a statement of work and our Data Processing Addendum.
Personal information we collect
Depending on how you interact with us, we may collect:
- Identity and contact data: name, email, phone, organization, role
- Commercial data: plan interest, quotation details, billing contact, invoices
- Communication content: messages you send via forms or email
- Technical data: IP address, browser type, pages visited, approximate location derived from IP, consent records
- Security reports: vulnerability details you voluntarily submit
We do not intentionally collect special-category data through the public website. Please do not submit sensitive personal data unless necessary for a security report and then only through the dedicated channel.
Sources and required information
We collect information directly from you, automatically from your browser and our security systems, and, where relevant, from your organization or an authorized business contact. Fields marked as required are needed to answer a request or enter or perform a contract. If you do not provide them, we may be unable to respond, quote, contract, or deliver the requested service.
Purposes and lawful bases
Where GDPR or similar laws apply, we rely on:
| Purpose | Examples | Lawful basis |
|---|---|---|
| Respond to enquiries and quotes | Contact form, sales email | Legitimate interests / steps prior to contract |
| Deliver purchased services | Plan fulfillment, SOW delivery | Contract |
| Operate and secure the website | Logs, CSRF, abuse prevention | Legitimate interests |
| Consent records for cookies | Preference storage | Consent (optional cookies); legitimate interests/essential for required cookies |
| Legal and compliance | Tax, accounting, dispute handling | Legal obligation / legitimate interests |
| Optional marketing updates | Newsletter-style updates if you opt in | Consent |
Our legitimate interests include responding to business enquiries, protecting the website and our customers, preventing fraud and abuse, keeping appropriate business records, and improving service delivery. We balance those interests against the rights and reasonable expectations of affected individuals.
We do not sell personal information or share it for cross-context behavioral advertising.
Cookies and tracking
See the Cookie Policy and Cookie Preferences. Optional analytics, functional, and advertising technologies do not load before valid consent where consent is required. The cookie inventory lists technologies actually deployed.
Sharing
We share personal information with:
- Service providers / subprocessors listed in our Subprocessor List (hosting, email delivery, payments)
- Professional advisers (legal, accounting) under confidentiality
- Authorities when required by law
- Payment providers (for example Stripe) when you choose online checkout. Card data is handled by the provider and is not stored by us as raw card numbers.
International transfers
Our subprocessors may process data in the United States and other regions. Where required, we use appropriate transfer mechanisms (such as Standard Contractual Clauses) with processors. Details are available on request for enterprise diligence. You may request information about the applicable safeguard or a copy of relevant terms, subject to necessary confidentiality redactions, by emailing privacy@farqadcloud.com.
Retention
Retention periods are described in the Data Retention and Deletion Policy. We keep information only as long as needed for the purposes above, then delete or anonymize it.
Security
We apply administrative, technical, and organizational measures described in our Security Policy and Trust Center. No method of transmission or storage is 100% secure.
Your rights
Depending on your location, you may have rights to access, correct, delete, restrict, object, port data, or withdraw consent. To exercise rights, email privacy@farqadcloud.com. You may also lodge a complaint with a supervisory authority.
We may need to verify your identity and authority before completing a request. You will not be discriminated against for exercising a right provided by applicable privacy law.
Automated decisions
We do not use website personal information to make decisions based solely on automated processing that produce legal or similarly significant effects. If this changes, we will update this notice before the processing begins.
Children
Our services are directed to businesses and are not intended for children under 16. We do not knowingly collect children’s data via this website.
AI processing
See the AI Use and Data Handling Notice for whether AI systems process customer information.
Changes
See the change-notification section on this page. Material updates receive a new version identifier and last-updated date.
Change notification
We may update this policy to reflect legal, operational, or service changes. Material changes will be communicated on this page or through another appropriate notice. Where required by law or contract, we will provide additional notice. Where affirmative consent or a contractual amendment is required, continued use alone will not replace that process.