Privacy Policy

One Platform. Every Business Function. Infinite Possibilities.

Home / Privacy Policy

Privacy Policy

Last updated: 8 September 2016

1. Introduction

This Privacy Policy explains how BizOSOne (“BizOSOne”, “we”, “us” or “our”) collects, uses, stores, processes and protects personal data when you access or use the BizOSOne platform and related websites, applications, software, modules, APIs and services (collectively, the “Services”).

BizOSOne is designed for use by businesses and organisations globally. Accordingly, the personal data we process may be subject to different data protection and privacy laws depending on where you are located, where your organisation operates, and how the Services are used.

This Privacy Policy is intended to provide transparency regarding our privacy practices and is designed to operate consistently with applicable privacy and data protection laws, including, where applicable:

  • DIFC Data Protection Law 2020;
  • Applicable data protection and privacy laws in the jurisdictions where our Customers operate or where individuals are located;
  • Applicable GDPR requirements, where applicable to the processing activities; and
  • Other applicable local data protection and privacy regulations.

Where a specific law grants you additional rights or imposes additional obligations on BizOSOne, those requirements will apply to the extent required by law.

2. Who We Are

For the purposes of this Privacy Policy, BizOSOne refers to the provider of the BizOSOne Services.

Depending on how personal data is processed, BizOSOne may act as either a Data Controller or a Data Processor (or equivalent role under applicable law).

2.1 BizOSOne as Data Controller

BizOSOne may act as a Data Controller, or equivalent, in relation to personal data that we collect and process for purposes such as:

  • Creating and administering user accounts;
  • Managing subscriptions and customer relationships;
  • Providing customer support;
  • Billing and payment administration;
  • Platform security and fraud prevention;
  • Service analytics and performance monitoring;
  • Marketing and communications;
  • Legal and regulatory compliance; and
  • Managing our business operations.

2.2 BizOSOne as Data Processor

Where a Customer uses BizOSOne to store, manage or process personal data relating to its employees, customers, suppliers, contractors or other individuals, the Customer may determine the purposes and means of processing.

In those circumstances, BizOSOne generally acts as a Data Processor, or equivalent service provider, processing such personal data on behalf of the Customer.

The Customer remains responsible for ensuring that it has a lawful basis and appropriate authority to collect and provide such personal data to BizOSOne.

Where required, the parties may enter into a separate Data Processing Agreement (“DPA”) governing the processing of Customer Data.

 

3. Personal Data We Collect

The types of personal data we collect depend on how you interact with BizOSOne and which Services you use.

3.1 Information You Provide Directly

We may collect:

  • Name;
  • Business email address;
  • Telephone or mobile number;
  • Job title, designation or role;
  • Company or organisation name;
  • Country and business location;
  • Account username and authentication information;
  • Billing and subscription information;
  • Communications with our support team;
  • Information submitted through forms, enquiries or requests; and
  • Other information you voluntarily provide to us.

Passwords and authentication credentials are protected using appropriate security measures. Where technically applicable, sensitive authentication information is stored using secure hashing, encryption or equivalent security mechanisms rather than in plain text.

3.2 Customer Data Uploaded to BizOSOne

Customers may use BizOSOne to store, manage and process a wide range of business information.

This may include:

  • Employee and HR information;
  • Customer and client records;
  • Supplier and vendor information;
  • Contact information;
  • CRM records;
  • Financial and accounting information;
  • Payroll-related information;
  • Documents and files;
  • Messages and communications;
  • Transaction records;
  • Business and operational data;
  • Images and attachments; and
  • Other personal data that a Customer chooses to upload or process through the Services.

BizOSOne does not determine the content of Customer Data uploaded by Customers.

The Customer is responsible for ensuring that the collection, use, disclosure and transfer of Customer Data through BizOSOne is lawful and complies with applicable data protection and privacy laws.

4. Automatically Collected Information

When you access or use the Services, certain technical information may be collected automatically, including:

  • IP address;
  • Browser and device information;
  • Operating system;
  • Login and authentication activity;
  • Date and time of access;
  • Usage activity;
  • System logs;
  • Diagnostic information;
  • Security events; and
  • Performance and error information.

This information may be used to operate, secure, monitor and improve the Services.

5. How We Use Personal Data

BizOSOne may process personal data for the following purposes:

  • Creating and administering accounts;
  • Providing and operating the Services;
  • Authenticating users;
  • Processing subscriptions and payments;
  • Providing customer and technical support;
  • Communicating service-related information;
  • Maintaining security and preventing fraud or abuse;
  • Monitoring system performance and reliability;
  • Detecting and investigating security incidents;
  • Complying with legal and regulatory obligations;
  • Managing our business relationship with Customers;
  • Improving and developing the Services;
  • Conducting aggregated and/or de-identified analytics;
  • Sending marketing communications where permitted by applicable law; and
  • Protecting the rights, property and security of BizOSOne, its Customers and users.

We will not use Customer Data for unrelated purposes merely because it is accessible through the Services.

6. Legal Bases for Processing

Depending on the applicable law and circumstances, BizOSOne may rely on one or more of the following legal bases:

Contractual Necessity

Where processing is necessary to provide the Services, establish or manage an account, fulfil a subscription or perform our contractual obligations.

Legitimate Interests

Where processing is necessary for legitimate business interests, such as:

  • Improving and securing the Services;
  • Preventing fraud and abuse;
  • Managing customer relationships;
  • Protecting our systems;
  • Analysing service performance; or
  • Operating and developing our business.

Where required by law, we will balance our legitimate interests against the rights and interests of affected individuals.

Legal Obligations

Where processing is necessary to comply with applicable laws, regulations, court orders, governmental requirements or other legal obligations.

Consent

Where applicable law requires consent, we may request your consent before processing personal data for the relevant purpose.

You may withdraw consent where permitted by applicable law, although withdrawal will not affect processing that occurred before withdrawal.

7. Data Security

BizOSOne takes reasonable and appropriate technical and organisational measures to protect personal data against unauthorised access, disclosure, alteration, loss, misuse or destruction.

Depending on the nature of the Services and the information involved, security measures may include:

  • Encryption in transit;
  • Encryption or other appropriate protection at rest;
  • Access controls;
  • Authentication mechanisms;
  • Role-based permissions;
  • Security monitoring;
  • Logging and audit mechanisms;
  • Infrastructure security controls;
  • Vulnerability management;
  • Backup and recovery measures where applicable;
  • Employee and contractor confidentiality obligations; and
  • Security incident response procedures.

However, no internet service, software platform, network or electronic transmission can be guaranteed to be completely secure.

You acknowledge that the use of digital and cloud-based services carries inherent security risks.

8. Data Storage and Hosting

BizOSOne may use reputable cloud infrastructure, hosting and technology providers to operate the Services.

Personal data may therefore be stored or processed in data centres or infrastructure located in different countries or regions.

The location of data storage may vary depending on:

  • The Services used;
  • Customer requirements;
  • Infrastructure availability;
  • Security and resilience requirements;
  • Applicable law; and
  • The location of third-party service providers.

Where applicable, BizOSOne may provide information regarding available hosting or data-location options through the relevant product documentation or commercial agreement.

9. International Data Transfers

Because BizOSOne is intended for global use, personal data may be transferred, stored or processed across national borders.

Where personal data is transferred internationally, BizOSOne will implement appropriate safeguards where required by applicable law.

Depending on the relevant jurisdiction, safeguards may include:

  • Adequacy decisions or recognised adequate protection mechanisms;
  • Standard Contractual Clauses (SCCs);
  • Data transfer agreements;
  • Contractual protections;
  • Appropriate technical and organisational safeguards; or
  • Other legally recognised transfer mechanisms.

The applicable transfer mechanism may vary depending on the countries involved and the applicable privacy law.

10. Data Sharing and Disclosure

BizOSOne may share personal data where reasonably necessary to provide and operate the Services.

Recipients may include:

Service Providers

Cloud hosting, infrastructure, payment processing, communications, analytics, security, monitoring, customer support and other technology providers.

Professional Advisers

Lawyers, accountants, auditors, insurers and other professional advisers where reasonably necessary.

Government and Regulatory Authorities

Where disclosure is required by applicable law, regulation, court order, governmental authority or lawful request.

Corporate Transactions

In connection with a merger, acquisition, restructuring, financing, sale of assets or similar corporate transaction, subject to appropriate confidentiality and data protection requirements.

BizOSOne does not sell Customer Data as a commercial product.

Third-party service providers processing personal data on behalf of BizOSOne will be subject to appropriate contractual, confidentiality and security obligations.

11. Customer Responsibility for Personal Data

Customers are responsible for:

  • Ensuring they have a lawful basis for processing personal data;
  • Providing appropriate privacy notices to individuals;
  • Obtaining consent where consent is legally required;
  • Ensuring the accuracy and relevance of Customer Data;
  • Complying with applicable data protection laws;
  • Configuring user permissions appropriately;
  • Protecting their account credentials;
  • Responding appropriately to requests from individuals whose data they control; and
  • Exporting and retaining Customer Data where required for their business or legal obligations.

BizOSOne does not independently determine the purposes for which Customers process personal data uploaded to the platform.

12. Data Retention

BizOSOne retains personal data only for as long as reasonably necessary for the purposes described in this Privacy Policy, the provision of the Services, applicable contractual requirements or legal obligations.

Retention periods may vary depending on:

  • The type of information;
  • The purpose for which it was collected;
  • The Customer’s subscription;
  • Applicable legal requirements;
  • Security and fraud-prevention requirements;
  • Dispute resolution requirements; and
  • Business and operational needs.

Following termination of a Customer account, Customer Data may be deleted, anonymised or otherwise handled in accordance with applicable retention policies, contractual terms and legal requirements.

Customers are responsible for exporting or downloading their data before termination where they require continued access to it.

13. Your Privacy Rights

Depending on your location and applicable law, you may have certain rights relating to your personal data.

These may include the right to:

  • Request access to personal data;
  • Request correction of inaccurate or incomplete information;
  • Request deletion or erasure;
  • Request restriction of processing;
  • Object to certain processing;
  • Request data portability;
  • Withdraw consent where processing is based on consent;
  • Object to direct marketing; and
  • Lodge a complaint with the applicable data protection authority.

The availability and scope of these rights may vary depending on the applicable jurisdiction and circumstances.

If BizOSOne processes your personal data on behalf of a Customer, you may need to exercise certain rights through that Customer, as the relevant Data Controller.

BizOSOne will reasonably assist Customers with data subject requests where required under applicable law and contractual arrangements.

14. How to Exercise Your Rights

Privacy-related requests may be submitted to:

srimathi@bizosone.com

When submitting a request, please provide sufficient information for us to identify you and understand the nature of your request.

We may take reasonable steps to verify your identity before providing access to or modifying personal data.

We will respond to valid requests within the period required by applicable law.

15. Cookies and Similar Technologies

 

BizOSOne may use cookies and similar technologies for purposes including:

  • User authentication;
  • Session management;
  • Security;
  • Remembering preferences;
  • Platform functionality;
  • Performance monitoring;
  • Usage analytics; and
  • Improving the Services.

Where required by applicable law, we will request consent before placing non-essential cookies or similar technologies on your device.

You may also control or disable cookies through your browser settings, although disabling certain cookies may affect the functionality of the Services.

16. Marketing Communications

BizOSOne may send service-related communications that are necessary for the operation of your account, including:

  • Account notifications;
  • Security alerts;
  • Billing notifications;
  • Service announcements;
  • Product updates; and
  • Important changes to the Services.

Where permitted by applicable law, BizOSOne may also send promotional or marketing communications.

You may unsubscribe from marketing communications at any time using the unsubscribe mechanism provided in the relevant communication or by contacting us.

Service and security communications may continue where they are necessary to operate or protect your account.

17. Children's Privacy

The Services are intended primarily for businesses and business users and are not directed toward children.

BizOSOne does not knowingly seek to collect personal data from children where such collection is prohibited by applicable law.

If you believe that a child has provided personal data to BizOSOne in circumstances where such collection was not authorised, please contact us so that we can take appropriate action.

18. Third-Party Websites and Services

The Services may contain links to or integrations with third-party websites, applications or services.

BizOSOne is not responsible for the privacy practices, content or security of third-party services.

You should review the privacy policies of relevant third parties before providing personal data to them.

19. Data Breaches and Security Incidents

If BizOSOne becomes aware of a security incident involving personal data, we will assess the incident and take reasonable steps to contain, investigate and remediate it.

Where required by applicable law, BizOSOne will notify relevant Customers, regulators or affected individuals within the applicable legal timeframes.

Where BizOSOne acts as a Data Processor, notification to the relevant Customer may be made in accordance with the applicable Data Processing Agreement and applicable law.

20. Automated Processing and Artificial Intelligence

Certain BizOSOne features may use automation, machine learning, artificial intelligence or similar technologies to provide functionality, analytics, recommendations, categorisation, summarisation, workflow automation or other Services.

Where such technologies process personal data, BizOSOne will implement appropriate measures consistent with applicable law and the relevant contractual arrangements.

Customers remain responsible for determining whether their particular use of automated or AI-enabled functionality is appropriate and lawful for their intended purpose.

BizOSOne does not permit Customer Data to be used to train publicly available third-party artificial intelligence models unless expressly agreed or otherwise permitted under applicable contractual terms.

21. Sensitive and Special Category Data

Customers should avoid uploading highly sensitive personal information unless the relevant BizOSOne Service is specifically designed to support such information and the Customer has appropriate legal authority to process it.

Where Customers process sensitive or special-category personal data through the Services, they are responsible for ensuring that the processing complies with all applicable legal requirements and that appropriate safeguards are in place.

22. Limitation of Responsibility

This Privacy Policy describes BizOSOne’s privacy practices but does not create warranties beyond those expressly provided under the applicable Terms and Conditions or other written agreement.

To the maximum extent permitted by applicable law, BizOSOne shall not be responsible for privacy or security failures caused by:

  • Customer actions or instructions;
  • Incorrect or unauthorised configuration;
  • Compromised Customer credentials;
  • Customer-controlled systems;
  • Third-party services outside BizOSOne’s reasonable control;
  • Unlawful processing by the Customer; or
  • Other circumstances outside BizOSOne’s reasonable control.

Nothing in this Privacy Policy limits any rights or obligations that cannot lawfully be excluded or limited under applicable law.

23. Changes to This Privacy Policy

BizOSOne may update this Privacy Policy from time to time to reflect:

  • Changes to the Services;
  • Changes in technology;
  • Changes in our business practices;
  • Changes in applicable law or regulation; or
  • Changes to our data processing activities.

The updated Privacy Policy will be made available through the BizOSOne website or Services.

Where required by applicable law, BizOSOne will provide additional notice of material changes.

The “Last Updated” date at the top of this Privacy Policy indicates when it was most recently revised.

24. Complaints and Regulatory Authorities

If you have concerns about how BizOSOne processes your personal data, we encourage you to contact us first so that we can investigate and attempt to resolve your concern.

You may also have the right to lodge a complaint with the data protection or privacy supervisory authority applicable to your location or the relevant processing activity.

For Customers and individuals subject to the DIFC data protection framework, the relevant supervisory authority is the Commissioner of Data Protection of the Dubai International Financial Centre, where applicable.

25. Contact Us

For privacy, data protection or personal data requests, please contact:

Email: srimathi@bizosone.com

WhatsApp:+971 543 55 0008

BizOSOne will endeavour to respond to privacy-related enquiries within a reasonable period and in accordance with applicable legal requirements.

Last Updated: 8 September 2026

Empowering businesses to Run. Grow. Succeed.

ONE AI BUSINESS OPERATING SYSTEM

One Platform. One Experience. Infinite Possibilities.

More than Software. A Smarter Way to Run Your Business.

Get in touch

Founder & Chief Architect
BizOSOne Private Limited

© 2026 BizOSOne Private Limited. All rights reserved.