Skip to content
MECOREX Smart Technology Core
HOMEABOUTLET'S TALK
HOME ABOUT LET'S TALK

Privacy Policy

Privacy Policy

Effective date: June 3, 2026

This Privacy Policy explains how MECOREX TRADING - FZCO, a company incorporated in the United Arab Emirates under Trade Licence No. 88410, with its registered office at IFZA Business Park, DDP, PO Box 342001, Dubai, UAE (the Company), collects, uses, stores, discloses, and otherwise processes personal data through its website and in connection with its business operations. This Policy is intended for a corporate, business-to-business environment and should be read together with any applicable website terms, commercial terms, and contractual data protection clauses.

The Company is committed to processing personal data in accordance with applicable laws of the United Arab Emirates, including the UAE Personal Data Protection Law, Federal Decree-Law No. 45 of 2021, which establishes a general framework for confidentiality, lawful processing, data subject rights, and protection of personal information.

1. Company Details

Company name

MECOREX TRADING - FZCO

Trade Licence No.

88410

Registered office IFZA Business Park, DDP, PO Box 342001, Dubai, UAE

General contact email

sales@mecorex.ae

Privacy contact email

info@mecorex.ae

2. Scope of This Policy

This Privacy Policy applies to personal data collected or processed by the Company:

  • through the website;
  • through contact forms, email correspondence, phone calls, messaging channels, and meeting requests;
  • when responding to requests for quotations, catalogues, product specifications, commercial proposals, or partnership opportunities;
  • during supplier, distributor, agent, logistics partner, or customer onboarding;
  • in connection with contract negotiation, execution, performance, invoicing, compliance reviews, and account management; and
  • through cookies, analytics tools, and similar technologies used on the website, where applicable.

Although the website and services are intended primarily for legal entities and business representatives, certain information relating to identified or identifiable individuals may constitute personal data under applicable law.

3. Categories of Personal Data Collected

Depending on the nature of the relationship or interaction, the Company may collect and process the following categories of personal data:

3.1 Information provided directly

  • full name;
  • job title or role;
  • employer or company name;
  • business email address;
  • business telephone number;
  • country, city, and business address;
  • content of inquiries, requests, correspondence, and meeting notes;
  • documents or information submitted through forms or by email.

3.2 Information collected automatically

  • IP address;
  • browser type and version;
  • device identifiers and operating system information;
  • date and time of access;
  • pages visited and navigation behaviour;
  • referral source and website interaction data; and
  • cookie identifiers and similar technical data.

3.3 Business relationship and compliance data

  • customer or supplier account details;
  • transaction history and order information;
  • billing and invoicing information;
  • payment-related business information;
  • records of communications;
  • Due diligence, KYC, sanctions-screening, or compliance-related information where required by law or legitimate business need.

4. Purposes of Processing

The Company may process personal data for the following purposes:

  • to operate, administer, maintain, and secure the website and related systems;
  • to respond to business inquiries and communicate with users, counterparties, and representatives;
  • to prepare and provide quotations, offers, proposals, catalogues, and requested business information;
  • to assess and onboard customers, suppliers, contractors, distributors, logistics providers, and other commercial counterparties;
  • to negotiate, conclude, perform, and administer contracts and related transactions;
  • to issue invoices, maintain records, and manage finance, audit, tax, and internal reporting obligations;
  • to comply with applicable laws, regulations, court orders, regulatory requests, compliance requirements, and internal risk controls;
  • to carry out anti-fraud, sanctions, export control, AML, KYC, and reputational risk checks where relevant;
  • to improve website functionality, security, user experience, and business operations; and
  • to establish, exercise, or defend legal claims.

The PDPL framework recognizes lawful processing tied to consent, contractual necessity, legal obligations, protection of rights, and other grounds recognized by UAE law.

5. Legal Bases for Processing

Where the PDPL applies, the Company may rely on one or more lawful bases for processing personal data, including:

  • the data subject's consent;
  • necessity for the performance of a contract or steps requested prior to entering into a contract;
  • compliance with legal or regulatory obligations;
  • protection of the public interest, where recognized by law;
  • necessity to establish, exercise, or defend legal rights or claims; and
  • Any other lawful basis available under applicable UAE law.

Where consent is used as the legal basis, it may be withdrawn at any time, subject to legal, regulatory, or contractual limitations and subject to the lawfulness of processing carried out before withdrawal.

6. Cookies and Similar Technologies

The website may use cookies and similar technologies for essential operation, performance monitoring, analytics, security, and functional improvement. Depending on the configuration of the website, such technologies may include:

  • strictly necessary cookies;
  • analytics cookies;
  • functional preference cookies; and
  • communication or marketing cookies, where used.

Users may control cookies through browser settings and any cookie preference mechanism made available on the website. Restricting cookies may affect website performance or functionality.

7. Disclosure of Personal Data

The Company may disclose personal data, where necessary and legally permitted, to the following categories of recipients:

  • affiliated entities and corporate group members; website hosting, cloud infrastructure, CRM, ERP, email, cybersecurity, and IT service providers;
  • logistics, freight, customs, warehousing, payment, accounting, and administrative providers;
  • banks, payment institutions, insurers, auditors, legal advisers, consultants, and other professional advisers;
  • regulators, government authorities, law enforcement bodies, courts, tax authorities, and competent agencies;
  • sanctions, screening, due diligence, and compliance service providers; and
  • actual or prospective investors, lenders, acquirers, or transaction counterparties in connection with a corporate restructuring, merger, acquisition, financing, or sale of assets.

Applicable UAE privacy materials emphasize transparency, confidentiality, and the need for organizations to secure personal data and process it within a lawful framework.

8. International Data Transfers

Given the international nature of the Company's operations, personal data may be transferred to, stored in, or accessed from jurisdictions outside the United Arab Emirates, including where the Company uses international group entities, software platforms, cloud services, logistics providers, or professional advisers.

Where cross-border transfers occur, the Company will seek to implement appropriate legal, contractual, and organizational safeguards in accordance with applicable law. UAE data protection materials note that the legal framework addresses the handling and protection of personal data, including international processing arrangements.

9. Data Retention

Personal data will be retained only for as long as necessary for the purposes set out in this Privacy Policy, including to:

  • manage communications and commercial relationships;
  • perform contracts and fulfil transactions;
  • maintain accounting, tax, audit, and compliance records;
  • meet statutory retention obligations;
  • investigate disputes, incidents, or complaints; and
  • establish, exercise, or defend legal rights.

Retention periods may vary depending on the type of data, the nature of the business relationship, and applicable legal or regulatory requirements. When personal data is no longer required, it will be deleted, anonymised, archived, or securely restricted as appropriate.

10. Data Security

The Company implements reasonable and appropriate technical and organisational measures designed to protect personal data against unauthorised access, disclosure, loss, misuse, alteration, or destruction. Such measures may include:

  • role-based access controls;
  • system authentication and password controls;
  • secure hosting and network protection measures;
  • internal confidentiality obligations;
  • restricted access to compliance and transaction records;
  • vendor oversight; and
  • Incident response and business continuity procedures.

UAE government and specialist summaries of the PDPL describe the law as an integrated framework focused on confidentiality, protection of privacy, and safeguarding personal information processed by organisations.

11. Data Subject Rights

Subject to applicable law and any exceptions, restrictions, or verification requirements, an individual may have the right to:

  • request access to personal data;
  • request correction of inaccurate or incomplete personal data;
  • request erasure of personal data in certain circumstances;
  • request restriction of processing;
  • object to certain processing activities;
  • request cessation of processing in certain cases;
  • request transfer of personal data, where applicable; and
  • Withdraw consent where processing is based on consent.

Requests may be submitted using the contact details set out in this Privacy Policy. The Company may request sufficient information to verify identity and authority before taking action on a request.

12. Marketing Communications

Where permitted by applicable law, the Company may send business-related communications concerning products, services, market updates, events, or partnership opportunities. Where consent is required, such communications will be sent based on that consent.

Recipients may opt out of non-essential marketing communications at any time by using the unsubscribe facility, where available, or by contacting the Company using the details above. Operational, legal, compliance, and transaction-related communications may still be sent where necessary for the business relationship.

13. Third-Party Websites and Services

The website may contain links to third-party websites, platforms, software tools, or external resources. The company is not responsible for the content, privacy notices, security, or data handling practices of third parties.

Users should review the privacy terms of those third parties before submitting personal data to them.

14. Children

The website and services are intended for professional and business use and are not directed at children. The company does not knowingly collect personal data from children through the website in the ordinary course of its B2B operations.

15. Changes to This Privacy Policy

This Privacy Policy may be updated from time to time to reflect changes in applicable law, business operations, technology, website functionality, or internal compliance requirements. The revised version will be published on the website with an updated Last updated date.

MECOREX Smart Technology Core

LEGAL

Terms & Conditions Privacy Policy

CONTACT

Sales@Mecorex.ae
designed by TECHFOB
We use cookies to enhance your experience. By continuing to browse this site, you agree to our use of cookies. View Preferences

Cookie Preferences

Essential
Required for site functionality (cannot be disabled)
Analytics
Help us understand how you use our site
Marketing
Used for personalized ads and retargeting
Preferences
Remember your settings and choices
View Privacy Policy