🎉V3.1.0 is live — Faster snapshots, full Windows 11 24H2 support. See what's new

Privacy and Data Protection Policy

Last updated: June 2025

At Draft, we are committed to maintaining the highest standards of privacy and data protection for our users. We implement robust policies to ensure the confidentiality, integrity, and security of your personal information. This privacy notice explains how we collect, use, and safeguard your data. Please note that it does not apply to third-party websites, products, or services. Although Draft may rely on external platforms or tools to collect personal data, we neither control their handling of your information nor assume responsibility for their data practices.

Data We Collect

Draft may collect, use, and store various categories of personal data, including but not limited to:

  • Identifiers: First name, last name, and email address provided at checkout.
  • Transaction Data: Order reference numbers and purchase history (not payment card data — card payments are processed entirely by our third-party payment gateway and are never transmitted to or stored by Draft Services).
  • Technical Data: IP addresses and browser information collected automatically for fraud prevention and security purposes.
  • Communications Data: Messages you send to us via email or WhatsApp for support purposes.

Software-Driven Data Handling and Privacy

Draft's software tools, including our optimization drivers and monitoring utilities, prioritize user privacy by collecting only essential technical information necessary for diagnosing and improving system performance. During these processes, no personally identifiable user data is recorded or stored, ensuring that our software enhancements remain strictly focused on performance metrics without compromising your privacy.

Strict Non-Sharing Policy

At Draft, we maintain a strict non-sharing policy. Personal data collected—such as browsing history, personal identifiers, or payment information—will not be disclosed to external websites, third-party companies, or advertisers. We are dedicated to safeguarding your privacy and preventing any unauthorized access to your data.

Payment Security

Draft Services does not collect, process, or store payment card data. All card transactions are handled exclusively by our third-party payment gateway, which operates under Payment Card Industry Data Security Standards (PCI-DSS). Your card details are encrypted in transit using TLS and are never transmitted to or retained by Draft Services. We receive only a transaction confirmation and order reference upon successful payment.

Cookies and Data Usage

Draft may rely on authorised payment and ecommerce service providers required to fulfil orders. Those partners may deploy cookies strictly needed for checkout integrity or fraud screening. Draft does not rely on intrusive ad-tracking cookies—manage storage and deletion through your browser or device privacy controls wherever applicable.

Legal Compliance and Exceptions

While Draft follows a strict non-sharing principle, certain circumstances may require us to disclose personal information to comply with legal obligations. These scenarios could include:

  • Responding to court orders or other lawful processes.
  • Fulfilling law enforcement requests aligned with applicable laws.
  • Protecting the rights, property, or safety of Draft, its users, or the public.

In such cases, data is shared only when legally mandated and minimized to the essential information required.

Transparency and User Control

We believe in transparency and give users the option to access, correct, or delete their personal data. Requests to modify or remove data may be submitted directly to Draft. However, certain data may be retained if needed to meet legal obligations—such as tax regulations—or in the event of potential legal disputes.

Data Retention

We keep your personal data only for the minimal time needed to fulfill legal, regulatory, or operational requirements. Where longer storage is legally necessary, such as in relation to disputes or compliance, data retention is regularly evaluated to prevent holding information beyond its intended scope.

Secure Data Processing

All data processing at Draft utilizes rigorous security protocols—encryption, strict access controls, and safeguarded transmission methods—to prevent data breaches or unauthorized handling of personal information.

Continuous Privacy Enhancements

We regularly review and refine our privacy practices to ensure we meet and exceed current legal standards. Our primary obligation is compliance with the UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data (UAE PDPL), as well as the General Data Protection Regulation (GDPR) for users located in the European Economic Area. Our aim is to uphold a foundation of trust, proactively strengthening data protection measures and remaining transparent with all users.

Jurisdiction and Data Controller

Draft Services FZ-LLC (Trade Licence No. 47022146; Registration No. 0000004069488), incorporated in the Ras Al Khaimah Economic Zone (RAKEZ), is the data controller responsible for your personal information. Our registered address is: Compass Building, Al Shohada Road, AL Hamra Industrial Zone-FZ, Ras Al Khaimah, United Arab Emirates. For any data protection enquiries, please contact us at support@draftservices.com.