Privacy Policy
Last updated: August 2026. This policy describes the intended production privacy model for Bangali Enterprise public services and the Bangali Business application. It should be reviewed with qualified legal counsel before being treated as jurisdiction-specific legal advice.
1. Scope
This policy covers visitors to Bangali Enterprise public pages and registered Bangali Business users. Bangali Business is designed as a multi-tenant system in which each business workspace is logically isolated from other businesses.
2. Data We Process
Depending on the enabled features, data may include account identity, login/security events, business profile information, products, customers, suppliers, sales, purchases, inventory movements, wallet/expense records, employees, documents, preferences, support tickets and audit history.
3. Business Data Ownership and Isolation
Business records are scoped to the authorized business. Staff access is controlled by membership, role, permission and enabled-module rules. A user who belongs to one business must not receive another business's private records unless a separately designed inter-company/shared workflow explicitly authorizes a narrow resource.
4. Security
Production design includes HTTPS, password hashing, server-side authorization, protected configuration, private file delivery, rate limiting, audit events, session controls and backup/recovery procedures. No system can guarantee absolute security, so operational monitoring and patching remain necessary.
5. Retention, Backup and Deletion
Operational records, financial history, audit history, temporary exports and backups can have different retention rules. Backup retention does not replace live-data retention. A subscription expiry must not silently delete business records. Deletion requests may be limited by contractual, legal, accounting, security or fraud-prevention obligations.
6. Access, Export, Correction and Deletion Requests
Where applicable, users may request access, export, correction, restriction or deletion through supported account/support workflows. Identity verification may be required before sensitive requests are processed.
7. Contact
Use the verified contact information published on the Bangali Enterprise Contact page for privacy or data-related requests.
