Privacy Policy
What we collect when you use starktechnology.net, why we collect it, how long we keep it, and the rights you have over it.
1. Who we are
Stark Technology (“Stark Technology”, “we”, “us”, “our”) is an information technology engineering company registered in the Arab Republic of Egypt.
| Registered address | Smart Village, B115, Kerdasa, Giza 12577, Egypt |
| Commercial Register No. | 9116 |
| Tax ID | 535-720-270 |
| Website | starktechnology.net |
| info@starktechnology.net | |
| Telephone | +20 2 3537 5791 |
For the purposes of the Egyptian Personal Data Protection Law No. 151 of 2020 and, where applicable, the EU General Data Protection Regulation (Regulation (EU) 2016/679), Stark Technology is the controller of the personal data described in this policy.
Data Protection Officer
Waleed Wageeh, Founder and Chief Executive Officer
2. What this policy covers
This policy explains what personal data we collect when you visit starktechnology.net or starktechnology.net/ar/, why we collect it, what we do with it, how long we keep it, and the rights you have over it.
It does not cover:
- personal data we process on behalf of our clients under a service agreement, where the client is the controller and we act as processor. That processing is governed by the agreement between us and that client;
- third-party websites we link to. Their own privacy policies apply.
3. What we collect, and why
3.1 When you contact us
If you complete a form on our website, email us or call us, we collect:
| Data | Source | Why we need it |
|---|---|---|
| Name | You | To reply to you and address you correctly |
| Email address | You | To reply to your enquiry |
| Telephone number | You | To call you back if that is faster |
| Company name, job title | You, if given | To understand the context of your enquiry |
| The content of your message | You | To answer it |
Legal basis: taking steps at your request prior to entering into a contract, and our legitimate interest in responding to business enquiries. Where required, your consent.
We do not sell this data. We do not share it with third parties for marketing.
3.2 When you simply browse
Our web server and our hosting provider automatically record your IP address, browser type and version, operating system and device type, and the pages you visited with the date, time and referring page.
Legal basis: our legitimate interest in keeping the website secure and operational. These records are technical logs and are not used to build a profile of you.
3.3 Analytics and advertising technologies
Subject to your consent, we use the following:
| Service | Provider | Purpose |
|---|---|---|
| Google Analytics 4 | Google Ireland Ltd | To count visits and understand which pages are useful |
| LinkedIn Insight Tag | LinkedIn Ireland Unlimited Company | To measure the performance of our LinkedIn advertising |
| Google reCAPTCHA | Google Ireland Ltd | To stop automated abuse of our contact form |
These technologies do not run until you consent. Before you make a choice on our cookie banner, no analytics or advertising cookie is set and Google Analytics is switched off. See our Cookie Policy for the full list.
Legal basis: your consent, which you may withdraw at any time. Google reCAPTCHA is treated as strictly necessary security tooling on the contact form only. It is not used for analytics or advertising by us.
3.4 What we do not collect
- Sensitive personal data as defined by Law No. 151 of 2020, or Article 9 GDPR special category data, through this website.
- Payment card details. We do not take payments online.
- Personal data from children. This website is directed at businesses and is not intended for anyone under 18.
If you send us sensitive data unprompted in a message, we will handle it under this policy and delete it when it is no longer needed for the enquiry.
4. Who we share data with
| Recipient | What they receive | Why |
|---|---|---|
| Our hosting provider | Server logs, anything stored on the site | To host the website |
| Analytics events, reCAPTCHA signals | Analytics and abuse prevention | |
| Advertising interaction data | Advertising measurement | |
| Our email provider | The contents of your enquiry | To deliver and store our email |
| Professional advisers, auditors | Only where legally necessary | Legal and regulatory obligations |
| Courts, regulators, law enforcement | Only where legally compelled | Compliance with the law |
We do not sell personal data. We do not trade or rent mailing lists.
5. Transfers outside Egypt
Some of the providers listed above process data outside the Arab Republic of Egypt, principally in the European Union and the United States.
Under Law No. 151 of 2020, transferring personal data outside Egypt requires a licence or permit from the Personal Data Protection Centre and a level of protection in the receiving country not lower than that provided by Egyptian law.
Where GDPR applies, transfers outside the European Economic Area are made under the European Commission’s Standard Contractual Clauses or an adequacy decision, together with any supplementary measures required.
6. How long we keep it
| Data | Retention |
|---|---|
| Contact form enquiries that do not become business | 24 months from last contact |
| Enquiries that become a client relationship | Duration of the relationship, plus 5 years, in line with Egyptian commercial record-keeping requirements |
| Server and security logs | 12 months |
| Analytics data | 14 months |
| Advertising audience data | Up to 180 days from the interaction |
| Consent records | 3 years from the date consent was given or withdrawn |
When a retention period ends we delete the data or irreversibly anonymise it.
7. How we protect it
Stark Technology is an information security practice as well as a data controller. The website and the systems behind it are protected by:
- encryption in transit on every page, with HTTP Strict Transport Security enforced;
- access control on the content management system, with accounts limited to named staff;
- a web application firewall and rate limiting;
- monitoring and logging of administrative access;
- staff confidentiality obligations in every employment contract;
- an internal incident response procedure.
No system is perfectly secure. If a breach occurs that is likely to cause harm, we will notify the Personal Data Protection Centre within 72 hours as required by Law No. 151 of 2020, and notify affected individuals where the risk to them is high. Where GDPR applies, we will notify the competent supervisory authority within the same 72 hours.
8. Your rights
| Right | What it means |
|---|---|
| Be informed | To know what we hold and why. This policy is part of that |
| Access | To obtain a copy of the personal data we hold about you |
| Rectification | To have inaccurate data corrected |
| Erasure | To have data deleted where there is no lawful reason to keep it |
| Restriction | To have processing paused while a dispute is resolved |
| Object | To object to processing carried out on the basis of legitimate interest |
| Withdraw consent | To withdraw consent at any time, without affecting processing already carried out |
| Portability | To receive your data in a structured, machine-readable format, where applicable |
| No automated decisions | We do not make automated decisions with legal effect |
To exercise any of these, email dpo@starktechnology.net with the subject line “Data request”. We will respond within 30 days. If a request is complex we may extend that once, and will tell you why. There is no charge unless a request is manifestly unfounded or repetitive.
We may ask you to confirm your identity before we act, so that we do not disclose your data to someone else.
9. Cookies
Cookies and similar technologies are covered separately in our Cookie Policy. You can change or withdraw your cookie choices at any time using the “Cookie settings” link in the footer of every page.
10. Complaints
If you are unhappy with how we have handled your personal data, contact us first at dpo@starktechnology.net. We would rather resolve it directly.
You also have the right to complain to a regulator:
- In Egypt: the Personal Data Protection Centre, established under Law No. 151 of 2020 and operating under the Ministry of Communications and Information Technology.
- In the European Union or EEA: the data protection supervisory authority of the country where you live or work.
- In the United Kingdom: the Information Commissioner’s Office.
11. Changes to this policy
We will update this policy when our processing changes or when the law requires it. The version number and the date at the top of this page will change. Where a change materially affects your rights, we will say so on the website and, where we hold your contact details and it is proportionate, tell you directly.
Questions about this page
Stark Technology, Smart Village, B115, Kerdasa, Giza 12577, Egypt
info@starktechnology.net · 02 3537 5791 · Sunday to Thursday, 9am to 6pm Egypt time
