1. Data Collection & Stateless AI Processing
How our 200+ AI Agents interact with your data.
1.1 What We Collect
We collect only the absolute minimum information required to provide our enterprise services. This includes authentication credentials, billing information (processed securely via PCI-DSS compliant gateways), and necessary operational metadata for your specific SaaS environment (e.g., Clubium Biz dashboard configs).
1.2 Stateless AI Infrastructure
Our fleet of digital AI agents operating within the WhatsApp CRM and Customer Support modules functions on a stateless architecture. This means the AI processes conversational data, intent, and sentiment in real-time, generates the appropriate response, and instantly discards the contextual memory from our central servers. We do not use your private conversational data to train our foundational models.
2. Strict Prohibition on Data Commercialization
Your business intelligence remains exclusively yours.
Clubium explicitly guarantees that we DO NOT and WILL NEVER sell, rent, license, or broker your proprietary business data or your end-users' personal information to third parties, data brokers, or advertising networks.
- ✕ No Shadow Profiling
- ✕ No Cross-Site Tracking
- ✕ No Ad-Network Syncing
- ✕ No AI Model Scraping
3. Global Data Subject Rights
GDPR | CCPA | MENA PDPA
Regardless of your geographical location—whether operating in the US, Europe, or managing international business out of the MENA region—you maintain absolute sovereignty over your data.
Right to Erasure
Commonly known as the "Right to be Forgotten." You may request the instantaneous deletion of your account and all associated operational data across our servers.
Data Portability
You have the right to request a complete export of your CRM, POS, and platform data in a structured, commonly used, and machine-readable format (e.g., JSON or CSV).
🌍 MENA & Oman Compliance: For our clients operating within Muscat and the broader MENA region, we enforce strict adherence to regional Personal Data Protection Laws (PDPA), ensuring data processed through local businesses or tourism platforms is shielded against unauthorized extraterritorial transfers.
4. Enterprise Security & Encryption
Military-grade protection for your digital infrastructure.
We utilize industry-leading security protocols to protect your information against unauthorized access, alteration, disclosure, or destruction.
-
Data in Transit & At Rest All data transmissions are secured using TLS 1.3 encryption. Data stored within our isolated cloud VPCs is encrypted at rest using AES-256 block-level encryption.
-
ISO 27001 Certified Environment Our server architecture operates within ISO 27001, SOC 2 Type II, and PCI-DSS compliant data centers (AWS & GCP).
5. Transparent Cookie Policy
No hidden tracking. Absolute control.
We use cookies strictly for core functionality (e.g., keeping you logged into the Clubium Biz dashboard). We adhere to a "Deny by Default" mechanism for any non-essential analytics or tracking cookies. You will always be presented with a clear, unambiguous consent banner before any secondary script is executed. You can manage your preferences directly from your account settings at any time.