Privacy Policy

Last updated: September 1, 2025

This Privacy Policy explains how QGM – Qtada GM LLC (“QGM”, “we”, “us”, “our”) collects, uses, discloses, and safeguards personal information. It applies to our websites, apps, products, services, and communications that link to or reference this Policy (collectively, the “Services”).

Company (Controller)

QGM – Qtada GM LLC
Registered address: 8206 Lousiana BLVD NE, Albouqrequy, NM 87113
Operating address : Doha, Qatar
Registration/CR No.: 0008011861

Contact

Email: privacy@qtadagm.com
DPO/Privacy Officer: Gasim Ghazi
Phone (optional): +974 3047 6226

Quick Navigation

1) Summary

We collect personal information that you provide directly, information we obtain automatically (e.g., via cookies and similar technologies), and information from third parties. We use it to provide and improve the Services, communicate with you, personalize experiences, for security and fraud prevention, to comply with law, and—where permitted and with your choices—for marketing/advertising.

We share information with service providers and partners under contracts that require them to protect it, with corporate affiliates, in connection with corporate transactions, to comply with law, and otherwise with your consent or at your direction. You have rights and choices described below, including how to opt out of certain processing, access/correct/delete your data, or object where applicable.

2) Scope & Definitions

This Policy applies when QGM determines the purposes and means of processing personal information (“Controller”). Where we process personal information on behalf of a customer (e.g., providing hosted services), we act as a “Processor.” In those cases, our processing is governed by our Data Processing Addendum (“DPA”) with that customer.

Personal information means information that identifies, relates to, describes, or could reasonably be linked to an identified or identifiable person. Definitions may vary by jurisdiction.

3) Information We Collect

A. Information You Provide

B. Information Collected Automatically

C. Information from Third Parties

D. Sensitive Information

We do not seek to collect sensitive categories (e.g., government IDs, precise geolocation, health/biometric data) unless you provide it or we clearly request it for a lawful purpose and with required notices/consents. Do not share sensitive data unless necessary.

E. Data Map (Illustrative)

Category Examples Purposes Retention (typical)
Identifiers Name, email, phone, IP Account, support, security, marketing (with choices) Account life + 3 years
Commercial data Orders, invoices Provide Services, accounting, compliance 7–10 years (tax/audit)
Usage data Events, logs Improve Services, analytics, security 30–540 days (rolling)
Device data Browser, OS, device ID Performance, security, personalization Session to 24 months

Note: Actual retention depends on your settings, applicable law, and our legitimate business needs.

4) How We Use Information

6) Cookies & Tracking

We use cookies, SDKs, pixels, and similar technologies to operate and improve the Services, remember settings, measure performance, and (where permitted) personalize and advertise. You can manage preferences via our Cookie Settings and your browser/device settings. Where required, we display a consent banner.

Cookie/SDK Overview (Illustrative)

Type Examples Purpose Typical Lifespan
Strictly Necessary Session ID, auth token Login, security, load balancing Session
Performance/Analytics Event, A/B testing Measure usage, improve features 1–24 months
Functional Language, preferences Personalization and settings 6–24 months
Advertising Ad ID, attribution Deliver/measure ads, limit frequency 1–24 months

Open Cookie Settings Do Not Sell/Share (US)

7) How We Share Information

We do not sell personal information for money. Where “sale” or “sharing” includes cross-context behavioral advertising under certain U.S. laws, you can opt out via the links above.

8) International Transfers

We may transfer personal information to countries with different data protection laws. Where required, we use appropriate safeguards, such as Standard Contractual Clauses, and implement additional measures as needed. You can request a copy by contacting us.

9) Data Retention

We retain personal information only as long as necessary for the purposes described, including to meet legal, accounting, or reporting requirements, resolve disputes, and enforce our agreements. When no longer needed, we delete or de-identify information unless retention is required by law.

10) Security

We employ organizational, technical, and physical safeguards designed to protect personal information, including encryption in transit, access controls, least-privilege practices, logging/monitoring, and vendor due diligence. No method is 100% secure; please use strong passwords and safeguard your account.

Incident Reporting: If you suspect a security issue, contact us immediately at security@qtadagm.com.

11) Your Rights & Choices

Depending on your location, you may have some or all of the following rights, subject to legal limits:

To exercise rights, submit a request at /privacy/requests or email privacy@qtadagm.com. We may verify your identity and ask for information to process your request. Authorized agents may submit requests as permitted by law with valid proof of authorization.

Marketing emails: click “unsubscribe” in any email or adjust Account Settings. Cookie/advertising choices: see Cookie Settings and device/system controls.

12) Regional Addenda

12.1 EEA/UK Addendum

Applies to individuals in the EEA/UK.

12.2 United States Addendum (CPRA/Other State Laws)

Applies to residents of California, Colorado, Connecticut, Virginia, Utah, and other similar U.S. state laws.

12.3 Other Regions (Template)

If your local law provides specific rights or imposes additional obligations (e.g., data localization, registration, breach notification timelines), they will be listed here.

13) Children’s Privacy

Our Services are not directed to children, and we do not knowingly collect personal information from children without appropriate consent where required by law. If you believe a child has provided personal information to us, contact us and we will take appropriate steps to delete such information.

14) Changes to This Policy

We may update this Policy to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes, we will provide prominent notice (e.g., by email or through the Services) and indicate the “Last updated” date above. Your continued use of the Services after the effective date constitutes acceptance of the revised Policy.

15) How to Contact Us

If you have questions or complaints about this Policy or our privacy practices, contact us at:

QGM – Qtada GM LLC
Doha, Qatar
Email: privacy@qtadagm.com
For security issues: security@qtadagm.com

Annexes

Annex A — Sub-Processors & Service Providers

Publish and keep this list current; include purpose and data categories.

VendorLocationRole/PurposeData CategoriesTransfer Mechanism
[Cloud Provider] [e.g., EU/US] Hosting & storage All data stored in the service SCCs/adequacy as applicable
[Payments Processor] [Region] Payments & fraud prevention Identifiers, commercial, device, risk signals SCCs/adequacy as applicable

Annex B — Data Processing Addendum (Processor Role)

Where QGM acts as a Processor for a customer, our DPA (incorporating the EU/UK Standard Contractual Clauses as applicable) governs such processing. The DPA is available at /legal/dpa and forms part of our customer agreements.

Annex C — Records of Processing Activities (RoPA) Summary

Maintain internally; include systems of record, purposes, recipients, retention, and transfer safeguards.