This Privacy Policy explains how MyInfo.ae ("MyInfo", "we", "us") collects, uses, discloses, and protects personal data in connection with the MyInfo digital business card service (the "Service"), in line with the UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data ("PDPL") and other applicable UAE regulations.
On this page
- 1. The most important thing to know
- 2. Information we collect
- 3. How we use information
- 4. Legal basis for processing
- 5. Sharing of information
- 6. Cookies & analytics
- 7. Data retention
- 8. Security
- 9. Your rights
- 10. Children's privacy
- 11. International transfers
- 12. Changes to this policy
- 13. Contact us
1. The most important thing to know
Digital cards are public by design. MyInfo's core purpose is to let you share your own information openly. Any information you add to a Card that is not set to Private — such as your name, designation, company, bio, phone number, email address, social media links, website, and photos — is made publicly available on the internet to anyone who visits the Card's link, scans its QR code, or taps its NFC tag, at any time, without logging in. It may also be indexed or cached by third parties (such as search engines) outside our control. By adding this information to a public Card, you consent to this public display and confirm it is your own information or that you have the right to share it.
If you want to limit who can view a Card, set it to Private and protect it with a six-digit access code. You can edit or delete Card information, or change a Card to Private, at any time from your dashboard.
2. Information we collect
Account information
When you register, we collect your email address and a system-generated customer ID. We use short-lived, single-use email codes for authentication and do not ask new-frontend users to create a password. Each successful code verification also records the current policy version and acceptance time in your authenticated session.
Digital card information
Information you choose to add to a Card, such as your name, company, designation, bio, email, phone numbers, website, social media links, profile photo, and banner image. As explained above, this is publicly visible unless the Card is set to Private.
Media library
Images you upload to your media library for use on your Cards.
Leads (visitor-submitted data)
When a visitor to your public Card submits a contact-exchange form, we collect the name, phone number, email address, and message they choose to provide, and store it so you, as the Card owner, can view and export it.
Usage & analytics data
When a Card is viewed, we automatically record technical information about the visit, including IP address, browser user agent, referring page, a session/cookie identifier, and the time of access. This is used to show you visit analytics for your Cards and to help secure the Service.
Support & billing information
If you contact support or purchase a plan or licence PIN, we collect the details you provide in that request, and records of PIN assignment and activation linked to your customer ID.
3. How we use information
- To create, host, and display your Cards, including making public Card content available to visitors.
- To operate your account, dashboard, media library, and lead inbox.
- To provide visit analytics for your Cards.
- To respond to support requests and communicate service-related information.
- To detect, prevent, and investigate fraud, abuse, or security incidents.
- To comply with our legal obligations under UAE law.
We do not sell your personal data.
4. Legal basis for processing
We process personal data on the basis of: performance of our contract with you (providing the Service you signed up for); your explicit consent (for example, adding information to a public Card, or a visitor submitting a Lead form); our legitimate interests (such as securing and improving the Service); and compliance with legal obligations under UAE law.
5. Sharing of information
We do not sell personal data to third parties. We may share information with: service providers who host our infrastructure or help us operate the Service (under confidentiality obligations); the intended recipients of information you choose to make public (i.e., anyone viewing your public Card, by design); and law enforcement or regulators where required by UAE law.
6. Cookies & analytics
We use a session cookie to keep you signed in and a visitor identifier to measure Card visits, as described in our Cookie Policy.
7. Data retention
We retain account and Card data for as long as your account is active. If you delete a Card, its public page stops being served, and we retain the underlying data for a limited period thereafter to allow recovery and to meet legal, accounting, or security requirements, after which it is deleted or anonymised. Visit/analytics logs and Leads are retained for as long as reasonably necessary for the purposes described above, unless you request earlier deletion where legally possible.
8. Security
We use reasonable technical and organisational measures, including hashed one-time codes, short expiry periods, attempt limits, access controls, and session security, to protect personal data against unauthorised access, alteration, disclosure, or destruction. No method of transmission or storage is completely secure, and we cannot guarantee absolute security — this is particularly relevant for information you choose to make public on a Card.
9. Your rights
Subject to the PDPL and other applicable law, you may have the right to: request access to the personal data we hold about you; request correction of inaccurate data; request deletion of your data; object to or restrict certain processing; request a copy of your data in a portable format; and withdraw consent at any time (including by deleting a Card or your account). To exercise these rights, contact us using the details below. We may need to verify your identity before actioning a request.
10. Children's privacy
The Service is not directed at children under 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can remove it.
11. International transfers
Because Cards are publicly accessible over the internet, information on a public Card can be viewed from anywhere in the world by design. Where we transfer personal data to service providers located outside the UAE, we take steps intended to ensure an adequate level of protection consistent with the PDPL.
12. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be reflected by updating the "Last updated" date above.
13. Contact us
For privacy-related questions or to exercise your rights, contact us at smaacaad@gmail.com or via our Contact page.
