Skip to content
BrayLeaf

Legal

Privacy Policy

Last updated: 17 August 2026

How BrayLeaf collects, uses and protects the business contact data entrusted to us across brayleaf.com, email and WhatsApp.

01Who We Are

BrayLeaf Hospitality & Print Solutions (“BrayLeaf”, “we”, “us”) is a UAE-based B2B manufacturer of bespoke hotel collateral, operating brayleaf.com. This policy explains what personal data we collect through the website and our communication channels, why we collect it, and the choices available to you. It is written for our business audience — hotel procurement, brand and operations teams. For any privacy matter, contact operations@brayleaf.com.

02Information We Collect

We collect only what we need to respond to and fulfil enquiries:

  • Quote & contact details — name, hotel or organization, work email, phone/WhatsApp number, property location, products of interest and requirement details you submit through our forms.
  • Uploaded files — hotel logos and brand guideline documents you optionally attach to a quote request.
  • Preferences stored on your device — your light/dark theme choice and any specification you build in the Customization Matrix are stored locally in your browser (localStorage/sessionStorage) and are not transmitted to us until you submit a form.
  • Technical basics — standard server logs (IP address, user agent, timestamps) generated when the site is served, used for security and troubleshooting.

We do not run advertising trackers and we do not knowingly collect data from consumers or minors.

03How We Use Your Data

  • To prepare quotations, proofs, samples and order documentation.
  • To respond to your enquiry by email, phone or WhatsApp — our stated goal is a reply within 4 business hours.
  • To fulfil, deliver and support confirmed orders.
  • To meet legal, tax and accounting obligations.

The legal bases we rely on are performance of (or steps prior to) a contract and our legitimate interest in responding to business enquiries. We do not sell personal data, and we do not use your data for third-party marketing.

04Email Delivery (Resend)

When you submit a quote request, the form data — including any uploaded brand files — is transmitted to our team, and a confirmation email is sent to you, via Resend (Resend, Inc.), our transactional email provider. Resend processes the message content and recipient address on our behalf to deliver these emails and provides short-term delivery logs. Resend’s own privacy practices are described at resend.com/legal/privacy-policy.

05WhatsApp Communications

Our site offers click-to-chat links to our business WhatsApp line. Tapping one opens WhatsApp with a pre-filled message that you can edit before sending; nothing is sent until you press send in WhatsApp. Conversations held on WhatsApp are processed by WhatsApp LLC / Meta Platforms under their own terms and privacy policy, including WhatsApp’s end-to-end encryption. We retain chat history with clients as part of our business records for as long as the relationship requires.

06Third-Party Services

We keep our stack deliberately small:

  • Resend — transactional email delivery (quote notifications and confirmations).
  • WhatsApp / Meta — optional client-initiated chat.
  • Hosting & fonts — the site and its typefaces are served from our hosting infrastructure; we do not embed third-party analytics, advertising pixels or social widgets.

Providers act as processors on our documented instructions, limited to the purpose described.

07Brand Files You Upload

Logos and brand guidelines are used solely to assess and produce your collateral. They are shared internally on a need-to-know basis, with production partners only as required to manufacture your order, and are treated as confidential — consistent with our white-label practice of never publicising client work without written consent.

08Data Retention

Enquiry data that does not lead to an order is retained for up to 24 months, then deleted. Order records, including associated correspondence and artwork approvals, are retained for the period required by UAE commercial and tax law. Device-stored preferences (theme, draft specifications) remain on your browser until you clear them.

09Your Rights

Subject to applicable law (including UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data and, where it applies, the GDPR), you may request access to, correction of, or deletion of your personal data, object to or restrict certain processing, and request a copy in portable form. Write to operations@brayleaf.com; we respond within 30 days. If you are unsatisfied, you may complain to your competent data-protection authority.

10Security

Data in transit is protected with TLS. Access to lead and order data is restricted to team members who need it, and service credentials are stored outside source code. No transmission or storage method is perfectly secure; if a breach affecting your data occurs, we will notify you and the relevant authorities as required by law.

11International Transfers

Our email and hosting providers may process data on servers outside the UAE (including the United States and the European Union). Where data crosses borders, we rely on the providers’ contractual safeguards and applicable transfer mechanisms.

12Changes to This Policy

We may update this policy as our services evolve; the “last updated” date above always reflects the current version. Material changes affecting active clients will be notified by email.