Privacy Policy
How MAXYRA ERP handles personal data submitted through maxyra.net.
1. Who this policy applies to
This Privacy Policy applies to visitors to maxyra.net and people who contact MAXYRA ERP through website forms, email, telephone or WhatsApp links. The website operator can be identified in the Legal & Privacy settings in the CMS. For privacy questions, contact info@axyraglobal.com.
2. Personal data we may collect
When you submit an enquiry or privacy request, we may collect your name, work email address, telephone number, company name, message, request type, consent record and submission time. The web server and hosting provider may also process technical security information such as IP address, browser information, timestamps and request logs. CMS administrator accounts contain account details needed to secure and operate the website.
3. Why we use personal data
We use personal data to respond to enquiries and demo requests, provide requested information, administer and secure the website, prevent abuse, maintain records, comply with applicable legal obligations, and establish or defend legal claims where necessary. We do not sell personal data.
4. Legal basis and consent
Depending on the context and applicable law, processing may be based on your consent, steps requested before entering into a business relationship, legitimate operational and security interests where permitted, or compliance with legal obligations. Where consent is the appropriate basis, you may withdraw it subject to applicable law and any processing already lawfully completed.
5. Oman personal-data requirements
For processing subject to the Sultanate of Oman, MAXYRA ERP aims to handle personal data in line with the Personal Data Protection Law issued by Royal Decree 6/2022 and its Executive Regulation issued by Ministerial Decision 34/2024, including applicable requirements relating to transparency, consent, security and data-subject rights.
6. European visitors
Where the EU General Data Protection Regulation (GDPR) applies, individuals may have rights including access, rectification, erasure, restriction, objection, portability and the right to complain to a competent supervisory authority. The exact rights and lawful basis depend on the circumstances of the processing.
7. Cookies and similar technologies
The website is configured without advertising or behavioural-tracking cookies by default. It uses essential technical cookies for secure sessions, CSRF protection and recording your cookie-notice preference. See the Cookie Policy for details. If analytics or other non-essential technologies are introduced later, this policy and the consent mechanism should be updated before activation.
8. WhatsApp and third-party links
If you choose a WhatsApp button, your browser is directed to WhatsApp. Information you send through WhatsApp is handled under the terms and privacy practices of that service as well as any records maintained by the website operator. Other third-party links are governed by their own policies.
9. Hosting, service providers and transfers
The website may be hosted and supported by service providers that process technical or stored data on behalf of the website operator. Data may be processed in countries other than your own. Where applicable law requires safeguards for international transfers, appropriate contractual, organizational or legal safeguards should be used.
10. Retention
Website enquiries are configured for a default retention period of 24 months and closed privacy requests for 36 months, unless a longer period is reasonably required for an active business relationship, legal obligation, dispute or security investigation. These periods are configurable in the CMS. Server logs may be retained separately by the hosting provider under its own operational schedule.
11. Security
We use administrative and technical controls such as hashed passwords, optional administrator two-factor authentication, access control, CSRF protection, login throttling, session controls, security headers, protected data directories, restricted uploads, audit logging and backups. No internet service can guarantee absolute security.
12. Your choices and requests
You can submit a data-rights request through the Privacy Request page or email the privacy contact shown on this site. We may need to verify your identity before acting on a request. We will respond in accordance with applicable law.
13. Children
This corporate website is intended for business users and is not designed to collect information from children. Please do not submit children’s personal data through the website.
14. Changes
We may update this policy when our website, processing activities or legal requirements change. The current version and last-updated date will be published on this page.
Last updated: 22 August 2026.
