Privacy policy
In force since September 8, 2026 · Version 1.0
This policy explains what personal data Noltra Trading L.L.C collects when you visit noltrasoft.com or buy from us, why we collect it, how long we keep it, and what you can ask us to do with it. It is written to be read; if anything in it is unclear, legal@noltrasoft.com will answer a plain question with a plain answer.
1. Who is responsible for your data
Noltra Trading L.L.C, a company registered in the United Arab Emirates under number 1530987, with its registered office at Office 204-E-08, R118 Building, Al Suq Al Kabeer, Bur Dubai, Dubai, United Arab Emirates, is the controller of the personal data described here. Contact us at legal@noltrasoft.com, or by post at that address.
2. The short version
We collect the least we can. When you buy, we keep your email address and what you ordered, because we cannot deliver a licence or handle a refund without them. When you write to us, we keep the correspondence. Our website sets no analytics, advertising or cross-site tracking cookies at all. We do not sell personal data, we do not build profiles, and we do not send marketing to customers who have not asked for it.
The rest of this policy is the detail behind those sentences.
3. What we collect and why
When you buy. Your email address, the products and quantities you ordered, the price, the currency, the date, the country your payment was made from, the last four digits and brand of the card, and any order or invoice number. We need these to form the contract, deliver the licence, comply with tax and accounting law, and handle refunds and chargebacks. Legal basis: performance of a contract, and compliance with a legal obligation.
When you contact us. Your name if you give it, your email address, and the content of your message, including any order number. Legal basis: performance of a contract, or our legitimate interest in answering enquiries.
When you use a product. Each product page describes what that product processes. Our subscription system holds an account identifier, the entitlement state, and a count of active devices. Connect does not record what you connect to. DNS keeps counters of blocked categories, not a query log tied to you. Vault holds an encrypted blob we cannot read. Backup holds files encrypted on your device with a key we do not have.
When you visit the website. Our web server writes a standard access log — IP address, timestamp, requested path, response code, user agent — which we use to keep the site running and to detect abuse, and which is deleted after 14 days. Legal basis: our legitimate interest in operating and securing the site.
When you apply to partner with us. Your name, company, role and contact details, and what you send us about your product. Legal basis: steps taken at your request before entering a contract.
4. What we deliberately do not collect
We do not receive or store card numbers. We do not run analytics, advertising, heat-mapping, session-recording or cross-site tracking on this website. We do not buy data about you from anyone. We do not fingerprint your device. We do not ask for a date of birth, a government identifier or a home address for a consumer purchase, because a digital licence does not need one.
5. Cookies
This website sets one cookie, which holds a cart identifier so the store can remember your selections. It expires after 24 hours and it carries no information about you beyond that identifier. It is strictly necessary for the store to work, so it does not require consent.
Your language choice and light or dark preference are stored in your browser's local storage on your own device and are never sent to us. Our Cookie Policy sets all of this out with the names and lifetimes.
6. Who else sees your data
Our payment processor receives what it needs to take the payment: the amount, the currency, your card details entered directly on its page, and your email address for the receipt. It acts as an independent controller for fraud prevention and as our processor for the transaction, under its own privacy notice.
Our email provider transmits your licence and our replies to you.
Our hosting and infrastructure providers store the order database and run the website, under contracts that oblige them to process data only on our instructions.
A publisher whose software we distribute receives what is needed to issue and validate the licence — typically the licence key and the email address it was issued to. Its own privacy notice governs what it does with that, and we link to it on the product page.
Our accountants and auditors, and a tax authority or a court where the law requires it.
We do not share personal data with anyone else, and we never sell it.
7. Where your data is held
Our primary systems are hosted in the United Arab Emirates and in the European Union. Some processors operate outside those places. Where personal data is transferred out of a country whose law restricts such transfers, we rely on the transfer mechanisms that law provides — standard contractual clauses, or a determination that the destination provides adequate protection. You may ask legal@noltrasoft.com which mechanism applies to a given processor.
8. How long we keep it
Order and invoice records: for as long as the tax and accounting law of the United Arab Emirates requires, currently the year of the transaction plus a statutory retention period, after which they are deleted or anonymised.
Support correspondence: 24 months from the last message, so that we can understand a returning customer's history.
Web server access logs: 14 days.
Partnership enquiries that do not lead to a contract: 12 months.
Marketing consent records, where given: for as long as the consent is live, plus 24 months after it is withdrawn, as evidence that it was withdrawn.
9. Your rights
Depending on where you live, you may have the right to ask us for a copy of the personal data we hold about you, to correct it, to delete it, to restrict or object to how we use it, to receive it in a portable form, and to withdraw a consent you have given.
Write to legal@noltrasoft.com. We answer within 30 days and we do not charge. We will ask you to confirm control of the email address the data is attached to, because that is the only identifier we hold — we will not ask you for a copy of an identity document to answer an access request.
Some data we cannot delete on request: an invoice we are required by tax law to retain, and the record of a chargeback. We will tell you plainly if that applies and what remains.
If you believe we have handled your data wrongly, tell us first at legal@noltrasoft.com. You also have the right to complain to the data protection authority of the country you live in.
10. Security
Traffic to this site and to our systems is encrypted in transit. Access to the order database is limited to the people who need it, is individually authenticated, and is logged. Backups are encrypted. We review who has access quarterly and remove what is no longer needed.
If a breach occurs that is likely to affect you, we will notify you and the relevant authority within the time the law requires, and we will tell you what we know rather than waiting until we know everything.
11. Children
Our store is not intended for children and we do not knowingly sell to one. Noltra Family is bought by a parent or guardian and is configured by them; the data it processes about a child is processed on the parent's instructions and is visible to the child by design. If you believe a child has given us personal data directly, write to legal@noltrasoft.com and we will delete it.
12. Marketing
We send transactional email — order confirmations, licence keys, renewal notices, service notices — because they are part of the contract, and you cannot unsubscribe from them while a subscription is live.
We send marketing email only to people who asked for it. Every marketing message carries a one-click unsubscribe that works immediately.
13. Automated decisions
Our payment processor runs automated fraud checks that may decline a transaction. If a decision of that kind affects you, write to support@noltrasoft.com and a person will review it.
14. Changes
We update this policy when what we do changes. The date of the current version is at the top of this page, and we keep previous versions available from legal@noltrasoft.com. If a change materially reduces your protection, we notify customers by email before it takes effect.
15. Contact
Noltra Trading L.L.C, Office 204-E-08, R118 Building, Al Suq Al Kabeer, Bur Dubai, Dubai, United Arab Emirates. Data protection enquiries: legal@noltrasoft.com. General enquiries: support@noltrasoft.com.
Noltra Trading L.L.C
Office 204-E-08, R118 Building, Al Suq Al Kabeer, Bur Dubai, Dubai, United Arab Emirates
support@noltrasoft.com · +971 50 853 5404