Therinds Privacy Policy

Effective Date:September 7, 2026Last Updated:September 7, 2026

This policy explains how Therinds handles personal data when you visit therinds.com, use the website assistant, or send a project enquiry. It describes the website as it operates today and should be read with our Cookie Policy and Terms and Conditions.

1. Who is responsible

Therinds is the trade name responsible for the website and the personal data described in this policy. Our stated business location is Ajman, United Arab Emirates.

2. Data we collect

We limit collection to what is reasonably needed for the feature you choose to use.

Project enquiries

The project form asks only for your full name, email address, project type, and project message. It also records that you accepted the form privacy notice.

Do not include passwords, payment-card details, health information, identity documents, confidential trade secrets, or other unnecessary sensitive data in your message.

Website assistant

When you use Obaid, our website assistant, the message you enter and up to the eight most recent messages in that open conversation are sent to our AI provider so it can generate a reply. The conversation is kept in page memory while the page remains open. Therinds does not intentionally save the conversation to browser storage or a separate conversation database.

Do not enter sensitive personal data, confidential business information, credentials, or payment information. Assistant replies can be wrong and are not professional, medical, legal, or financial advice.

Technical and security data

When your browser requests the website, our hosting and security provider may process ordinary request information such as IP address, date and time, requested page, browser or device information, referring page, security signals, and error or diagnostic events. We use this information to deliver, secure, diagnose, and protect the site. Sampled server logs and traces are enabled for operational monitoring; they are not used for advertising or behavioural profiling.

3. What we do not collect on this website

The current website code does not:

  • use Google Analytics, Meta Pixel, Hotjar, advertising pixels, or cross-site behavioural trackers;
  • sell or rent personal data;
  • create website user accounts;
  • process payment-card details;
  • collect precise device location; or
  • subscribe project-form users to marketing.

YallaFit is available through the Apple App Store and Google Play. This website does not create a YallaFit account or collect health or fitness data on the app's behalf. The app and its store listings provide separate privacy and data-safety disclosures for information used by app features.

4. Why we use personal data

We use personal data to assess and respond to a project enquiry you asked us to handle; generate a response when you choose to use the assistant; operate, secure, troubleshoot, and prevent abuse of the website; keep necessary business correspondence and records; and meet applicable legal obligations.

Depending on the circumstances and applicable law, processing may be based on your consent, steps taken at your request, our legitimate interests in operating and protecting the website, or a legal obligation. Where we rely on consent, you may withdraw it for future processing by contacting us.

5. Service providers and disclosures

We disclose data only as needed to operate the selected feature, protect the site, or comply with law:

  • Cloudflare provides website delivery, network security, rate limiting, operational logging, and Workers AI for the assistant. Cloudflare receives the data needed to provide those functions.
  • Email service providers deliver project enquiries to our business inbox. The enquiry content becomes ordinary business correspondence in that inbox.

We may also disclose information where required by a valid legal process, or where reasonably necessary to protect users, the website, or our legal rights. We do not represent that every provider is located in the UAE.

6. Cookies and similar technology

The site's own code does not currently set cookies or use persistent browser storage, and it does not use non-essential analytics, advertising, or personalisation cookies. Cloudflare may use strictly necessary security storage if a network-level challenge is triggered for suspicious or abusive traffic. See our Cookie Policy for details and for when a consent banner would be required.

7. Retention

We keep personal data only for as long as reasonably needed for the purpose described above, including responding to enquiries, maintaining necessary business records, resolving disputes, securing the service, and meeting legal duties. Retention can vary by record and legal context.

Assistant conversation content is not intentionally persisted in a Therinds conversation database. Infrastructure providers may retain limited security and diagnostic information under their applicable terms and retention settings. Project enquiries remain in business email records only as long as needed for the enquiry and related legal or operational purposes.

8. International processing

Cloudflare operates a global network, and email or AI processing may occur outside the UAE. Where required, we use service arrangements and safeguards appropriate to the transfer. No internet service can guarantee that data stays in a single country while in transit.

9. Your choices and rights

Depending on the law that applies to you, you may have rights to request access, correction, deletion, restriction, objection, portability, or information about how your personal data is used. You may also withdraw consent where consent is the basis for processing and complain to the relevant authority.

Email privacy@therinds.com with the subject “Privacy request.” We may need to verify your identity before acting. We will respond within the period required by applicable law; we do not promise a shorter period that the law does not require.

10. Security

We use proportionate technical and organisational safeguards, including encrypted web transport, access controls, input validation, a hidden spam trap, rate limits, and restrictive browser security policies. No system is completely secure, and this policy does not promise absolute security.

11. Children

This business website is not directed to children, and project enquiries are intended for people who can enter a business relationship. If you believe a child submitted personal data, contact privacy@therinds.com so we can review and delete it where appropriate.

12. Changes and contact

We may update this policy when the site, our providers, or applicable requirements change. The date above identifies the current version. Material changes will be presented in a reasonable way before or when they take effect.

Questions or complaints may be sent to privacy@therinds.com or legal@therinds.com.