Privacy Policy
Last updated: 16 June 2026
This Privacy Policy explains how DueDelta collects, uses and protects personal data when you visit our website, contact us or engage with us in relation to our services.
1. Who we are
DueDelta is a specialist advisory firm focused on technology due diligence, exit readiness and post-deal value creation.
For the purposes of this Privacy Policy, “DueDelta”, “we”, “us” and “our” refers to:
- DueDelta - FZCO
- Registered in the United Arab Emirates
- Registered office: IFZA Business Park, DDP, PO Box 342001, Dubai, United Arab Emirates
- Email:contact@duedelta.com
2. Personal data we collect
We collect limited personal data in the following situations.
When you contact us
If you email us, contact us through LinkedIn or otherwise get in touch, we may collect:
- your name
- your email address
- your job title and organisation
- your phone number, if you provide it
- the content of your message
- any deal, company or engagement context you choose to share with us
Please avoid sending confidential, sensitive or highly restricted information unless we have agreed an appropriate basis for receiving it, such as an NDA or engagement terms.
When you use our website
We may process limited technical information needed to operate, secure and improve the website. This may include information such as:
- pages visited
- referrer information
- browser and device information
- approximate location information
- website performance data
- technical logs and security events
We use Cloudflare Web Analytics to understand aggregate website traffic and performance. Cloudflare Web Analytics is designed not to collect or use visitors’ personal data and does not track individual users across Cloudflare customers’ websites. The analytics data helps us understand page views, referrers, device and browser information and website performance at an aggregate level.
We also use Cloudflare and other service providers to host, deliver and protect the website. These providers may process technical data such as IP addresses, request metadata and security logs where necessary to provide the website and protect it from misuse.
3. How we use personal data
We use personal data for the following purposes:
- to respond to enquiries
- to understand the context of a potential mandate
- to scope, discuss and provide our services
- to manage client, supplier and professional relationships
- to operate, secure and improve the website
- to maintain business records
- to comply with legal, regulatory, accounting and tax obligations
- to establish, exercise or defend legal rights
We do not sell personal data.
4. Legal basis for processing
Where UK or EU data protection law applies, we rely on one or more of the following legal bases:
- Legitimate interests: to respond to enquiries, develop business relationships, operate our website, secure our systems and manage our advisory business.
- Contract or steps before entering into a contract:to discuss, scope and deliver services.
- Legal obligation: to comply with applicable legal, accounting, tax or regulatory requirements.
- Consent: where we specifically ask for consent, such as for a future mailing list or optional communication.
You can object to processing based on legitimate interests in certain circumstances. You can also withdraw consent at any time where processing is based on consent.
5. Who we share personal data with
We may share personal data with trusted third parties where necessary for the purposes described in this policy, including:
- website hosting, analytics and security providers, including Cloudflare
- email, document management and productivity providers
- professional advisers, such as accountants, lawyers or compliance advisers
- clients, counterparties or advisers where relevant to a mandate and where appropriate
- public authorities or regulators where required by law
We require service providers to process personal data only for appropriate purposes and to protect it with suitable safeguards.
6. International transfers
DueDelta is based in the United Arab Emirates and may work with clients, service providers and advisers in other countries.
If personal data is transferred internationally, we will take steps designed to protect it in accordance with applicable data protection laws. Where required, this may include contractual safeguards or other lawful transfer mechanisms.
7. How long we keep personal data
We keep personal data only for as long as necessary for the purposes described in this policy.
As a general guide:
- enquiry and relationship records may be kept for up to 24 months after the last meaningful interaction, unless a longer period is appropriate
- client and engagement records may be kept for the duration of the relationship and afterwards as required for legal, tax, accounting, regulatory or professional purposes
- website analytics are used in aggregate form
- technical and security logs are retained for periods determined by operational and security requirements
We may retain information for longer where needed to establish, exercise or defend legal rights or comply with legal obligations.
8. Your rights
Depending on where you are located and which data protection laws apply, you may have rights in relation to your personal data, including the right to:
- access your personal data
- correct inaccurate or incomplete data
- request deletion of your personal data
- restrict or object to certain processing
- request portability of your data
- withdraw consent where processing is based on consent
- lodge a complaint with a data protection authority
To exercise your rights, contact us atcontact@duedelta.com.
We may need to verify your identity before responding to certain requests.
9. Security
We use appropriate technical and organisational measures designed to protect personal data against unauthorised access, loss, misuse or disclosure.
No website, email system or internet transmission is completely secure. Please take care when deciding what information to send to us electronically.
10. Third-party links
Our website may contain links to third-party websites, including LinkedIn. We are not responsible for the privacy practices, content or security of third-party websites. You should review their privacy notices before providing personal data to them.
11. Children
Our website and services are intended for business users. They are not directed at children, and we do not knowingly collect personal data from children.
12. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. The latest version will be published on this page with an updated “Last updated” date.
13. Contact
For questions about this Privacy Policy or how we handle personal data, contact: