WEBSITE INFORMATION NOTICE

Privacy Policy

This policy explains how personal data may be collected, used, stored, shared and protected when someone visits this informational website, uses its public tools, or sends a message through a user-initiated communication channel.

Last updated: 9 September 2026

1. Data Controller and Contact Information

The website brand is Oman Verified. The legal operator and data controller is Pro Mandate Verified SPC, Commercial Registration No. 1647003, Sultanate of Oman.

  • Address: Elite Tower, Unit 21, Mall of Oman Area, Bowsher, Muscat, Sultanate of Oman
  • Privacy email: [email protected]

2. Scope of This Policy

This policy covers the public website, its informational pages, embedded search or estimation tools, website forms, analytics technologies and messages initiated through the communication methods identified on the site. Independent websites linked from a guide operate under their own privacy policies.

3. Personal Data That May Be Collected

The categories depend on how the website is used. They may include:

  • Identity and communication data: name, email address, telephone number, preferred language and information included in a message.
  • Business context: company name, Commercial Registration number, activity code, planned activity or other information voluntarily entered into a form or public tool.
  • Technical data: IP address, browser, device, operating system, referring page, timestamps, security logs and similar connection information.
  • Usage data: pages viewed, tool interactions, search terms, button or link interactions and cookie or analytics identifiers where enabled.
  • Advertising data: campaign, referral and lead-form information where an advertising platform is used and the user chooses to submit a form.

4. Data Not Intended for General Website Forms

General website forms are not intended for passport copies, bank statements, medical information, biometric data, criminal records, religious or political information, or other highly sensitive material. Such information should not be placed in a general message or advertising form. If a legal or security requirement later makes specific documentation necessary, the purpose, channel and access conditions should be identified separately.

5. How Data May Be Collected

  • Information entered into a website or advertising form.
  • Messages initiated by email, telephone, messaging platform or another listed channel.
  • Public-tool inputs and interactions needed to return a requested result.
  • Cookies, analytics, security monitoring, hosting logs and similar website technologies.
  • Information supplied by an authorised representative or obtained from a lawful public source.

6. Purposes of Processing

  • Operate, maintain and secure the website and its public tools.
  • Return results requested through a search, calculator or other interactive feature.
  • Respond to a message initiated by the user.
  • Detect abuse, fraud, technical faults and security incidents.
  • Measure website use, improve navigation and understand which informational content is useful.
  • Maintain records and comply with applicable legal, accounting, regulatory or dispute-related obligations.
  • Send marketing material only where a lawful basis and any required consent exist.

Personal data is not sold. When consent is the applicable basis for processing, it may be withdrawn subject to applicable law and without affecting processing that occurred before withdrawal.

7. Sharing and External Processing

Data may be disclosed only where relevant to the stated purpose or required by law, including to:

  • Website hosting, email, security, cloud, analytics and customer-record technology vendors.
  • Payment, accounting, audit or legal vendors where a relevant record or legal obligation exists.
  • Government, regulatory, judicial or law-enforcement authorities where disclosure is legally required.
  • Professional advisers where necessary for compliance, security, a dispute or the protection of legal rights.

Some technology vendors may process data outside Oman. Any cross-border handling remains subject to applicable transfer rules, contractual controls and the vendor’s own privacy terms.

8. Analytics, Advertising and Cookies

The website may use essential, preference, analytics and advertising cookies. Analytics and advertising tools may receive device, browser, page, campaign and interaction data. Names, passport details, telephone numbers and email addresses should not intentionally be placed in analytics URLs or tracking parameters.

Non-essential cookies may be managed through an available cookie control or browser settings. Blocking cookies can affect some website functions.

9. Data Retention

Personal data is retained only for as long as reasonably necessary for the stated purpose, security, recordkeeping, dispute management or a legal obligation. Routine and inactive message records may be retained for up to 24 months. Statutory, accounting, transaction or legal records may be retained for a longer period where required. Duplicate or unnecessary sensitive documents should be removed when no lawful retention need remains.

10. Marketing Communications

Sending a general message does not automatically create consent for unrelated marketing. Where consent is required, a separate choice should be presented. A recipient may withdraw marketing consent using the unsubscribe method in the message or the privacy email listed above.

11. Individual Rights

Subject to applicable conditions and exceptions, an individual may ask to:

  • Obtain information about processing and a copy of personal data.
  • Correct, update or block inaccurate data.
  • Erase data where no lawful reason requires its continued retention.
  • Withdraw consent where processing depends on consent.
  • Request portability where the applicable conditions are met.
  • Object to or stop certain marketing communications.

Identity may need to be verified before a privacy request is processed. A request may be limited where retention or processing is required by law, necessary for legal claims, or otherwise permitted under the applicable framework.

12. Security and Data Breaches

Reasonable administrative and technical measures may include access controls, password protection, encrypted connections, restricted document sharing, backups, monitoring and confidentiality controls. No internet transmission or storage method is completely secure. Relevant individuals and authorities will be notified of a breach where applicable law requires notification.

13. Children’s Data

The website is directed to adults and is not designed to collect children’s personal data. If processing involving a child becomes necessary, the applicable guardian-consent and protection requirements must be followed.

14. Third-Party Websites

Informational pages may link to government portals, banks, economic zones, developers or other independent websites. The operator does not control their privacy or security practices. Their current privacy policies should be checked before personal data is submitted.

15. Oman Data-Protection Framework

Oman’s Personal Data Protection Law was issued by Royal Decree No. 6/2022, with Executive Regulations issued under Ministerial Decision No. 34/2024. The official framework and individual-rights information are available through the Personal Data Protection Law and the MTCIT personal-data protection portal.

16. Changes to This Policy

This policy may be updated when website functions, data practices, technology or legal obligations change. The current version and revision date will appear on this page.

17. Privacy Requests and Complaints

Privacy requests should identify the relevant email address or other identifier, describe the requested action, and be sent to [email protected] with “Privacy Request” in the subject line. The controller may verify identity before acting on a request. Complaints may also be submitted to the competent personal-data protection authority in Oman through its current official procedures.