This policy explains what personal data DMARCS collects, why, and what rights you have. It applies to our website and to the DMARCS platform.
iConnect IT Business Solutions DMCC, Suite #504, Jumeirah Bay X2, Cluster X, JLT, Dubai, United Arab Emirates. For any privacy question, contact contact@dmarcs.com.
Account data. Name, work email, telephone number, organisation and role, provided when you register or contact us.
Domain and authentication data. The domains you add, the DNS records associated with them, and the DMARC aggregate and forensic reports sent to us by receiving mail providers on your behalf.
Usage data. Log records including IP address, browser type, pages viewed and timestamps, used to operate and secure the platform.
Enquiry data. Anything you submit through our contact or demo forms, including any file you attach.
DMARC aggregate reports contain sending IP addresses and authentication results. Forensic reports may contain message headers, which can include sender and recipient addresses and subject lines. We process this data solely to provide reporting and threat analysis to the domain owner. We do not sell it, and we do not use it to build profiles of individuals.
To provide and support the service, to authenticate users and secure the platform, to bill and administer accounts, to respond to enquiries, to meet legal obligations, and to improve the product. Where we rely on legitimate interests, we balance those against your rights.
Reporting and authentication data for DMARCS customers is hosted in the United Arab Emirates. Where a supplier processes data outside the UAE, we put appropriate safeguards in place.
We share personal data only with service providers acting on our instructions (hosting, email delivery, payment processing and support tooling), with professional advisers, and where required by law or to protect our rights. We do not sell personal data.
Account data is kept for the life of the account and for five years afterwards where required for legal and accounting purposes. Report data is retained according to your plan’s retention period. Enquiry submissions are kept for 24 months. Logs are kept for 12 months.
We apply access controls, encryption in transit, segregation of customer data, and monitoring. Please do not send DNS credentials, private keys or other secrets through our web forms; we will arrange a secure channel where sensitive material needs to be exchanged.
Subject to UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data, you may request access to your personal data, correction of inaccurate data, deletion, restriction of processing, a copy in portable form, or object to processing. Write to contact@dmarcs.com and we will respond within the period required by law.
Our website uses cookies necessary for it to function, and analytics cookies to understand how the site is used. You can control cookies through your browser settings. Blocking necessary cookies may prevent parts of the platform from working.
The service is intended for organisations. We do not knowingly collect personal data from anyone under 18.
We may update this policy. The date at the top of this page shows when it was last revised, and material changes will be notified before they take effect.
Tell us where your domains stand today and we will take it from there.