Privacy Policy

How Himilco collects, protects, and handles your data.

Last updated: June 7, 2026 · Version 1.4 · Compliance: GDPR, DIFC Data Protection Law · Jurisdiction: DIFC, Dubai UAE

Data encryption

AES-256

Third parties

Zero data sales

Retention

Contractually required only

Jurisdiction

DIFC, Dubai UAE

01. Data Controller

Himilco Technologies Ltd. is the data controller for personal information collected through the platform. Registered address: DIFC, Dubai UAE. Data Protection Officer: legal@himilco.com.

02. Data We Collect

Category A — operator only (encrypted vault)
  • ·Real full name
  • ·Government ID documents
  • ·Selfie verification
  • ·Bank account details
  • ·LinkedIn profile URL
  • ·Registration IP and device
Category B — anonymized (on platform)
  • ·Anonymous platform code (H-XXXX/MEA-XXXX)
  • ·Sector and geography selections
  • ·Performance statistics
  • ·Platform activity
  • ·Anonymous ratings received
Data typePurposeLegal basis
Identity documentsVerificationLegal obligation
Email addressAccount contactContract
Platform activitySecurity/monitoringLegitimate interest
Device informationSecurityLegitimate interest
IP addressesFraud preventionLegitimate interest

03. How We Use Your Data

04. Anonymity & Identity Protection

Your real identity is stored in encrypted vaults visible only to the platform operator under strict access controls. It is never shared with other parties or hunters. Only: Legal authorities with valid court orders, DIFC arbitration panels in disputes.

05. Data Sharing

Himilco DOES NOT sell, rent, or trade personal data to any third party. Data may be shared ONLY with:

06. Data Storage & Security

Server location: Hostinger KVM 1

Jurisdiction: UAE hosted infrastructure

MeasureImplementation
Encryption at restAES-256
Encryption in transitTLS 1.3
Access controlRole-based (RBAC)
Audit loggingAll operator actions
BackupDaily encrypted backups
Penetration testingQuarterly

07. Retention Periods

Data typeRetention period
Identity documents7 years (legal requirement)
Chamber messagesPermanent (legal evidence)
Call recordingsPermanent (legal evidence)
Payment recordsPermanent (legal requirement)
Account dataDuration of account + 5 years
IP logs90 days

08. Your Rights

Under DIFC Data Protection Law

Erasure requests cannot override legal retention requirements or active non-circumvention obligations.

09. Cookies

CookiePurposeDuration
session_tokenAuthentication7 days
csrf_tokenSecuritySession
preferencesConfiguration1 year
analyticsPerformance (anonymous)90 days

10. Children's Privacy

The platform is not directed to children. Himilco does not knowingly collect personal data from anyone under the age of 18.

11. Changes to Policy

Himilco may update this policy from time to time. Material changes will be reflected in the version number and last-updated date above.

12. Contact Us

Data Protection Inquiries

Response time: Within 72 hours
Postal address: DIFC, Dubai, UAE

Himilco Technologies Ltd. Registered: DIFC, Dubai, UAE [DIFC License: pending]. All rights reserved 2026.