Effective Date: 28 January 2025
Introduction
Welcome to Vucaworks (“we,” “our,” or “us”). Protecting your privacy is of utmost importance to us. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, platform, and services (collectively, the “Services”). This policy has been designed to align with the requirements of ISO/IEC 27701:2019, the General Data Protection Regulation (GDPR), and other relevant privacy laws to ensure the highest standards of privacy management.
By accessing or using our Services, you agree to the terms outlined in this Privacy Policy.
1. Information We Collect
1.1 Personal Information:
We collect information that identifies you as an individual, such as:
- Name
- Email address
- Phone number
- Billing details
- Any other information you voluntarily provide
1.2 Usage Data: We collect technical information about your interactions with our Services, including:
- IP address
- Browser type
- Device information
- Log data and interaction details
1.3 Cookies and Tracking Technologies: We use cookies, web beacons, and similar technologies to collect information for enhancing your experience, analyzing usage patterns, and delivering tailored content.
2. Purpose of Processing Personal Data
We process personal data for the following purposes:
- To provide and improve our Services.
- To process transactions and send related communications.
- To ensure security and prevent fraudulent activity.
- To comply with legal obligations and regulatory requirements.
- To personalize your experience on our platform.
- For internal reporting and data analytics.
3. Lawful Basis for Processing
Our lawful basis for collecting and processing personal data includes:
- Consent: When you provide explicit consent for specific uses.
- Contractual Necessity: To perform a contract or provide requested services.
- Legal Obligation: To comply with applicable laws and regulations, including GDPR.
- Legitimate Interests: To improve our Services and enhance user experience.
4. Data Subject Rights
Under ISO/IEC 27701:2019, GDPR, and other relevant laws, you have the following rights:
- Access: Request a copy of your personal data.
- Rectification: Correct inaccurate or incomplete data.
- Erasure: Request the deletion of your personal data, subject to legal obligations.
- Restriction: Request limited processing of your data.
- Data Portability: Obtain and reuse your data for your own purposes.
- Objection: Object to the processing of your personal data.
- Withdraw Consent: Withdraw consent where applicable, without affecting the lawfulness of prior processing.
To exercise these rights, contact us at the details provided below.
5. Data Sharing and Disclosure
We may share your data with:
- Service Providers: Trusted third parties that assist in delivering our Services.
- Regulatory Authorities: To comply with legal obligations or respond to lawful requests.
- Business Transfers: In the event of mergers, acquisitions, or asset sales.
- Others: With your explicit consent or as required by law.
6. Data Retention
We retain personal data only as long as necessary for the purposes stated in this policy or as required by law. Retention periods are periodically reviewed to ensure compliance with our data minimization and storage limitation principles.
7. Data Security
We have implemented robust technical and organizational measures to protect your data against unauthorized access, alteration, disclosure, or destruction, in line with ISO/IEC 27701:2019, GDPR, and other relevant laws. These measures include:
- Encryption of sensitive data.
- Regular security audits and risk assessments.
- Access controls and staff training.
Despite these measures, no system is completely secure. We encourage you to take precautions to protect your own information.
8. International Data Transfers
If your data is transferred outside of your jurisdiction, we ensure adequate safeguards are in place, such as Standard Contractual Clauses (SCCs) or equivalent mechanisms, to comply with GDPR and other international data protection standards.
9. Privacy Impact Assessments (PIAs)
When processing activities involve high-risk data, we conduct Privacy Impact Assessments (PIAs) to evaluate and mitigate risks to individuals’ privacy.
10. Roles and Responsibilities
As a data controller, Vucaworks determines the purposes and means of processing personal data. Where applicable, we engage data processors under binding agreements to ensure compliance with ISO/IEC 27701:2019, GDPR, and other relevant privacy laws.
11. Monitoring and Updates
We regularly review this Privacy Policy to ensure it remains aligned with legal, regulatory, and operational requirements. Any significant updates will be communicated via our website and other appropriate channels.
12. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Vucaworks
Email: hello@vucaworks.com
Phone: +92 328 1984083
Address: 4th floor, HKB Tower, Precinct 10A Commercial, Bahria Town Karachi
Thank you for trusting Vucaworks with your personal data. We are committed to maintaining your privacy and upholding the principles of ISO/IEC 27701:2019, GDPR, and other relevant privacy laws.