Privacy Policy
Last updated: July 11, 2026 · Plain-English summary of how Al Aminn handles your data.
What we collect
- Inquiry form: name, email, phone, organization, role, country/city, current challenge, desired outcome, timeline, and any notes you choose to share.
- Newsletter signup: email address only.
- Meeting requests: name, email, organization, selected meeting type, requested date and time, and an optional topic.
We do not collect payment card numbers, national IDs, or sensitive special-category data through this website.
Why we collect it
- To respond to your inquiry and provide the service you asked about.
- To schedule and confirm a requested meeting.
- To send the newsletter you explicitly opted into (you can unsubscribe anytime).
Legal basis
- Consent: you actively submit a form or subscribe to the newsletter.
- Legitimate interest: responding to inquiries and fulfilling meeting requests you initiated.
How long we keep it
- Inquiries: 24 months from submission, then automatically archived.
- Newsletter: until you unsubscribe, then removed within 30 days.
- Meetings: 12 months after the scheduled date.
Who has access
Al Aminn personally, plus a small number of authorized staff who have role-based access (RBAC) scoped to the specific records they need to do their work. Every access is logged for audit.
Third parties
We do not sell, rent or trade your data. Data is stored in our own CRM (the Alaminn.info Command Center). Newsletter delivery and meeting-link providers process data only as our processors under written agreement.
Your rights
- Access — see what we hold about you.
- Correction — fix anything that is wrong.
- Deletion — ask us to erase your records.
- Export — receive a copy of your data in a portable format.
- Withdrawal of consent — at any time, for any processing based on consent.
How to exercise your rights
Email privacy@alaminn.info (this address forwards to Al Aminn directly). We respond within 30 days.
Cookies
This site uses a small set of essential and preference cookies. See the Terms of Service for the related usage terms, and the in-footer Cookies notice for the full cookie list.
Privacy-friendly analytics
We built our own lightweight, first-party, cookie-less analytics system so we never have to load Google Analytics, Segment, Meta Pixel, or any other third-party script on this site. We collect only the page path, an anonymous daily-rotating session ID (stored inlocalStorage, not a cookie), a truncated sha256 hash of your IP (never the raw IP), and UTM parameters when present. We do not collect raw IPs, user IDs, emails, names, or device fingerprints, and we do not run cross-site tracking. The system respects Do Not Track — if you have it enabled, no analytics events are sent.
Data breach response
If a personal-data breach is confirmed, we will notify affected users without undue delay — and in any case within 72 hours of becoming aware of it — in line with good-practice incident response.