Corporate Privacy & Data Protection Policy
This Privacy Policy outlines how Apito Products collects, processes, stores, and protects commercial inquiries, corporate contact information, and technical data obtained through our global B2B agro export portal.
Information We Collect
When you interact with our export portal, request a bulk proforma quotation, or download product datasheets, we collect:
- Corporate & Contact Data: Full name, company/organization name, business email address, corporate telephone/WhatsApp number, country of registration, and job role.
- Commercial Procurement Specs: Product of interest (e.g. Cumin, Chili, Turmeric), required quantity (FCL/MT), destination seaport, Incoterm preference (FOB/CIF), target packaging, and industrial application.
- Technical & Browsing Data: IP address, browser type and version, language settings, geographic country location, and timestamp logs for anti-fraud and spam prevention.
Purpose & Legal Basis for Processing
Under Article 6 of the General Data Protection Regulation (GDPR), we process your data on the following lawful bases:
- Contractual & Pre-Contractual Steps (Art. 6(1)(b)): To calculate freight rates, formulate official CIF/FOB proforma quotations, generate specifications COAs, and coordinate ocean export shipments.
- Legitimate Commercial Interest (Art. 6(1)(f)): To communicate with wholesale buyers, prevent fraudulent inquiry submissions, and optimize container logistics workflows.
- Legal & Statutory Compliance (Art. 6(1)(c)): To satisfy customs declarations, APEDA / Spices Board export registrations, and banking AML/KYC anti-money laundering regulations.
Data Security & International Cross-Border Transfers
All transmitted RFQ data is protected with 256-bit TLS/SSL encryption. Data stored within our enterprise CRM systems is hosted in ISO 27001 certified data center environments with role-based access control (RBAC), multi-factor authentication, and encrypted backups.
Because international agro trade involves cross-border logistics, commercial data (such as company name and discharge port) is shared strictly on a need-to-know basis with:
- Contracted ocean liner carriers (e.g. Maersk, MSC, CMA CGM) for Bill of Lading generation.
- Authorized customs clearing agents and government inspection authorities for Phytosanitary and Certificate of Origin legalization.
- Authorized inspection agencies (e.g. SGS, Eurofins) when requested for third-party cargo testing.
Your Data Protection Rights (GDPR / CCPA)
Under applicable international data protection statutes, you are entitled to:
Data Controller Contact
To exercise any of your data protection rights or inquire regarding our corporate data management policies, please contact:
We will never sell, rent, or lease your corporate procurement information or email address to third-party marketing brokers.
