Last updated: August 2026
Effective: August 2026 · written to align with the Saudi Personal Data Protection Law (PDPL). For your specific circumstances, we recommend confirming with your own legal counsel.
DEIM Global is an engineering-intelligence provider. This policy explains how we handle personal data in line with the Saudi Personal Data Protection Law (PDPL) and its regulations.
Contact details you send us, and project data you choose to share for an engagement (documents, models, quantities, schedules, correspondence). We process only what is needed to deliver the service.
DEIM is offline-first. For sensitive engagements we offer a Local-Only / on-premise mode where processing happens on your own infrastructure and data does not leave it.
We use data to provide decision-support and delivery services, on the basis of the agreement with you and your consent. We do not sell personal data.
Under PDPL you may request access, correction or deletion of your personal data, and withdraw consent. Contact [email protected].
We apply access controls, encryption and audit logging, and retain data only as long as needed for the engagement or as required by law.
For our website and our correspondence with you, DEIM acts as the data controller. For project data we process under an engagement, we typically act as a processor on your behalf and on your documented instructions, set out in the service agreement or a separate data-processing agreement.
Depending on the case we rely on: performance of our contract with you, legal obligation, legitimate interest (for example service security), and consent where required (for example certain marketing messages). You may withdraw consent at any time, without retroactive effect.
We may rely on trusted service providers (for example hosting, business email, and AI-model providers when the cloud mode is used). In Local-Only / on-premise mode, no cloud AI providers are used. A list of sub-processors is available on request under an engagement.
We prefer to keep sensitive project data within the client environment or inside the Kingdom. Where any transfer outside the Kingdom is necessary, it is done in line with PDPL and its regulations and the appropriate safeguards agreed with you.
We keep contact data for as long as there is an active relationship and a reasonable period after. We keep project data for the duration of the engagement and as required by contract or law, then delete or return it to you as agreed. Periods vary by data type and project nature.
If you are unhappy with how we handle your data, contact us first at [email protected] and we will try to resolve it. You also have the right to complain to the competent data-protection authority in the Kingdom.
This website loads fonts from Google Fonts, which means your browser connects to Google's servers to fetch them; this may log your IP address with Google. We use no advertising and no marketing trackers. Any future analytics tools will be listed here before they are enabled.
We do not use tracking or advertising cookies. The site stores only your language preference in your browser's local storage. External fonts are covered under "Third-party providers".
Our services are intended for businesses and professionals, not children. We do not knowingly collect data from anyone under 18.
We may update this policy from time to time; the effective date above will change and we will highlight material updates.
Questions about this policy or your data: [email protected].