Privacy Policy

How we collect, use, and protect your personal information

Last updated: April 19, 2026

1. Information We Collect

We collect only the minimum data required to deliver services. This includes contact data (name, email, phone), business/project details, and communication records submitted through forms, email, and WhatsApp. For active projects, we may process technical data such as access credentials, analytics events, logs, and deployment metadata strictly required to deliver the service.

2. Legal Basis and Purpose of Processing

Data is processed for contract performance, pre-contract communication, legitimate business operations, invoicing, support, and legal compliance. We do not use your data for unrelated marketing without consent.

3. Sharing and Processors

We do not sell personal data. Information may be shared only with necessary service providers (hosting, domain, analytics, communication, payment rails) or when legally required. Third-party providers process only data needed for their service function. We are not responsible for the independent policies of third-party providers.

4. Security Controls

We apply practical safeguards including access limitation, password manager usage, 2FA where available, secure backups, and role-based handling. While no system is risk-free, reasonable technical and organizational controls are maintained to reduce exposure.

5. Retention and Deletion

Client records are retained only for operational, contractual, and legal needs. Credentials and sensitive access data can be revoked or deleted on request after handoff, unless retention is required by active support obligations or law.

6. Your Rights

You may request access, correction, deletion, restriction, or clarification of the personal data you submitted. We may request verification before fulfilling requests and will respond within a reasonable timeframe (typically within 7-14 business days).

7. Cross-Service Coverage

This policy applies to both COWebs.lb web services and software division services unless a signed project agreement provides stricter privacy terms.

8. Contact and Complaints

For privacy requests or concerns, contact cowebs.lb@gmail.com or WhatsApp +961 81 796 383. If unresolved, parties may seek remedies under applicable Lebanese law.

Additional Privacy and Data Handling Details

We collect only the information required to evaluate requests, estimate project scope, and deliver contracted services. Contact form submissions are reviewed to understand business objectives, timelines, and technical constraints so we can provide accurate recommendations and structured next steps.

Access to project communication records is limited to authorized handling for delivery, support, and legal compliance. When third-party services are used for hosting, analytics, or communication, data usage remains bound to service execution and platform-level security controls. We are not responsible for the independent policies of third-party providers.

You may request data clarification, correction, or deletion at any time for information submitted through our website channels. We respond to privacy requests within a reasonable timeframe (typically within 7-14 business days) and maintain documentation where required to ensure transparent, accountable processing.

Practical Data Governance Commitments

Our privacy approach combines legal compliance with operational discipline. We define where project data enters the workflow, who has access, how long records are retained, and which safeguards apply across communication, development, and deployment phases. This improves accountability and reduces avoidable exposure throughout the service lifecycle.

When clients request updates, deletions, or clarification, we process requests through a documented review path so outcomes are auditable and consistent. Where third-party processors are involved, we evaluate necessity and usage boundaries before activation, and we avoid over-collection that does not directly support service delivery.

These commitments support trustworthy collaboration for organizations that require transparent handling of operational and contact data while maintaining speed of execution for active projects.

Privacy Implementation in Day-to-Day Service Operations

We operationalize privacy through practical controls: minimum necessary collection, bounded processing purpose, and access segmentation across service delivery steps. This supports compliant execution while preserving the speed needed for active project collaboration and technical support workflows.