Dubai RoyalMembership

Legal

Privacy Policy

How we handle the personal information and photographs you submit to this organisation.

Who processes your information

We are the controller of the personal information you submit through this website.

What we collect

Membership application: full name, email address, WhatsApp number, gender, date of birth, country of residence, nationality, residential address, a personal headshot photograph, your stated reasons for applying, and — where you choose to provide them — profession, company, LinkedIn profile, cultural interests and philanthropic interests.

Contact form: your name, email address, subject, enquiry type and message.

Technical data: we record a truncated network identifier solely to apply submission rate limits and reduce automated abuse.

Why we process it

To review your membership application on its individual merits, to contact you about that application, to respond to enquiries you send us, and to protect our forms from spam and abuse. We do not use your information for advertising, and we do not sell or rent it.

We process this information on the basis of the consent you give when submitting a form. You may withdraw that consent at any time.

Photographs and private storage

Applicant photographs are stored in a private storage bucket that is not publicly readable. No public URL exists for your photograph. Authorised members of our membership team can view it only through short-lived signed links generated on our server, which expire automatically after a few minutes.

Where an application is declined, the photograph is scheduled for deletion after the retention period configured by our administrators (30 days by default) and is then removed from storage.

Retention

Application records are retained for as long as necessary to administer the membership programme and to keep a record of decisions. Photographs attached to declined applications are deleted after the configured retention period. Contact messages are retained until the enquiry is resolved and for a reasonable record-keeping period thereafter.

Who can access your data

Access is limited to authenticated administrators of this organisation. Application data is protected by row-level security policies that permit reads only to accounts holding an administrator role. We use a reputable cloud database, storage and email provider to operate the service; those providers process data only on our instructions.

We do not share your information with any government body, authority or private family, and we do not submit applications to any third party on your behalf.

Your rights

You may request access to the personal information we hold about you, ask us to correct inaccurate information, withdraw your consent, or request deletion of your application and photograph. Contact us using the details on our contact page and we will action reasonable requests.

Security

Data is transmitted over encrypted connections, stored in an access-controlled database with row-level security, and photographs are held in private storage. Server-side credentials are never exposed to the browser. No system is perfectly secure, so please submit only the information requested.

Cookies

The public pages of this website do not use advertising or analytics cookies. Our administrator area stores an authentication session in your browser so that signed-in administrators remain signed in.

Changes

We may update this policy as our programme develops. Material changes will be reflected on this page.

See also our Terms of Use.