Last Updated: May 4, 2025 Compliance: GDPR (EU/UK), Libyan Law
1. Introduction
This Privacy Policy explains how Alsamiya LLC (“we,” “us,” or “our”) collects, uses, shares, and protects your personal data when you use our website al-samiya.com (the “Service”). It also outlines your rights under the GDPR and other applicable laws. By using the Service, you consent to the practices described here.
2. Key Definitions
Personal Data: Information that identifies you (e.g., name, email, phone number).
Processing: Any operation performed on Personal Data (e.g., collection, storage).
Data Controller: Alsamiya LLC (responsible for deciding how your data is used).
Data Subject: You, the individual whose data is processed.
Consent: Your clear, affirmative agreement to data processing.
3. Data We Collect
a. Personal Data You Provide
Email address
Phone number
Account registration details (if applicable)
b. Automatically Collected Data
Usage Data: IP address, browser type, device ID, pages visited, time/date of access.
Cookies & Tracking Technologies (see Section 4).
4. How We Use Cookies
Types of Cookies:
Essential Cookies: Necessary for website functionality (e.g., login sessions).
Analytics Cookies: Track usage patterns to improve the Service.
Marketing Cookies: Used for targeted ads (only with your consent).
Consent Management: You can accept or reject non-essential cookies via our banner. Adjust settings anytime through your browser.
5. Legal Basis For Processing (GDPR compliance)
We process your data only when we have a lawful basis:
Contractual Necessity: To fulfill services you request (e.g., account creation).
Consent: For marketing emails or non-essential cookies (you may withdraw consent anytime).
Legal Obligation: To comply with Libyan or EU/UK laws.
Legitimate Interests: To improve our Service, prevent fraud, or ensure security.
6. How we use your data
Provide and maintain the Service.
Communicate updates, offers, or security alerts.
Analyze trends to enhance user experience.
Comply with legal requests (e.g., court orders).
7. Data sharing
We only share your data with:
Service Providers: Trusted third parties (e.g., hosting providers) bound by GDPR-compliant contracts.
Legal Authorities: If required by law.
Business Transfers: In case of mergers/acquisitions, with prior notice.
8. International data transfers
Data may be transferred outside the EU/UK. We ensure safeguards such as:
Standard Contractual Clauses (SCCs).
Recipients in “adequate” jurisdictions (per EU/UK rulings).
9. Data Retention
We retain Personal Data only as long as necessary:
To fulfill the purposes outlined here.
To comply with legal obligations (e.g., tax records).
Usage Data is anonymized or deleted after 24 months.
10. Your Rights (GDPR & UK GDPR)
You may:
Access your data or request a copy.
Correct inaccurate information.
Delete your data (where no legal obligation exists).
Restrict or Object to processing.
Data Portability: Request a transferable copy of your data.
Withdraw Consent: For marketing or cookies.
To exercise these rights, contact us at [email protected]. We respond within 30 days.
11. Children’s privacy
Our Service is not intended for users under 16. We do not knowingly collect data from minors. If you believe a child has provided data, contact us immediately.
12. Security Measures
We use encryption, access controls, and regular audits to protect your data.
No system is 100% secure, but we comply with industry standards to minimize risks.
13. Data Breach Protocol
In case of a breach, we will:
Notify affected users and authorities (e.g., UK ICO) within 72 hours.
Take immediate steps to mitigate harm.
14. Update to this Policy
Changes will be posted on this page with a revised “Last Updated” date.
Significant changes will be communicated via email or website banners.