This Privacy Policy explains how Northline Systems FZ-LLC, trading as Cevimo (“Cevimo,” “we,” “us,” or “our”), collects, uses, stores, shares, and protects personal information when you visit our website, contact us, book a Web Analysis, create an account, start a free trial, use the Cevimo System, communicate with our team, or otherwise interact with us.
This Privacy Policy also explains the rights that may be available to you under applicable data protection and privacy laws.
Cevimo provides a subscription-based business system primarily for contractors and local service businesses. The Cevimo System may include a website, lead management functionality, communications tools, business phone functionality, automated follow-up, review functionality, local SEO tools, and related features.
For questions about this Privacy Policy or how we handle personal information, contact us at:
1. Who We Are
The data controller responsible for the personal information described in this Privacy Policy is:
Northline Systems FZ-LLC
Trading as Cevimo
VAT: 104663755700003
License Number: 47013647
Address:
DCW2023
Compass Building
Al Shohada Road
Al Hamra Industrial Zone-FZ
Ras Al Khaimah
United Arab Emirates
Email: [email protected]
2. When This Privacy Policy Applies
This Privacy Policy applies when Cevimo determines why and how personal information is processed.
This includes information relating to:
Website visitors
Prospective Clients
People booking a Web Analysis
Clients
Client representatives and employees
Account users
Billing contacts
Support contacts
Business partners
People communicating directly with Cevimo
There is an important distinction when it comes to information about your own customers and leads.
When a Client uses the Cevimo System to collect, store, manage, communicate with, or otherwise process information about its own customers, prospects, or leads, the Client generally acts as the controller or business responsible for that information, and Cevimo processes that information on the Client's behalf.
That processing is governed by our Data Processing Addendum (“DPA”) in addition to these Terms and applicable law.
3. Quick Summary
In simple terms:
We collect the information needed to operate Cevimo, provide the Cevimo System, communicate with you, process payments, and support our Clients.
We collect information when you contact us, book a call, start a trial, become a Client, use the System, or visit our website.
We may receive customer and lead information when our Clients use the Cevimo System.
We use trusted third-party providers to help us operate our infrastructure, payments, communications, hosting, scheduling, analytics, and other technical functionality.
We do not sell personal information for money.
We do not currently share personal information with advertising networks for cross-context behavioural advertising.
We do not use your mobile opt-in information for third-party marketing.
We take reasonable steps to protect personal information.
Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or obtain a copy of your personal information.
4. Information We Collect
The personal information we collect depends on how you interact with Cevimo.
4.1 Contact Information
We may collect:
First and last name
Email address
Telephone number
Business address
Postal address
Job title or role
Business name
4.2 Business Information
We may collect information about your business including:
Company name
Industry or trade
Services offered
Service areas
Business hours
Website
Domain
Google Business Profile information
Business contact information
Branding
Logo
Images
Social media profiles
Business descriptions
Other information required to configure the Cevimo System
4.3 Account Information
When you use the Cevimo System, we may process:
Account username
Login information
Account permissions
User roles
Account activity
System settings
Communication preferences
Authentication information
Account configuration
Passwords and similar authentication credentials may be stored in encrypted, hashed, or otherwise protected form by Cevimo or our technology providers.
4.4 Subscription and Billing Information
We may collect:
Subscription status
Billing name
Billing address
Payment status
Invoice history
Transaction information
Subscription start and cancellation dates
Free-trial information
Payment card details are generally processed directly by our payment processor.
Cevimo does not need to store your full payment card number where payment processing is handled by a third-party payment provider.
4.5 Web Analysis and Booking Information
When you book a Web Analysis or another meeting with us, we may collect:
Name
Email address
Telephone number
Business name
Website
Selected appointment date and time
Time zone
Information submitted through the booking form
Notes relating to your meeting
Information you provide during the call
4.6 Communications
If you contact Cevimo, we may process:
Emails
Support requests
Chat messages
SMS messages
Call information
Meeting notes
Feedback
Questions
Complaints
Other correspondence
4.7 Website and Technical Information
When you visit our website or use the Cevimo System, certain information may be collected automatically, including:
IP address
Device type
Browser type
Operating system
Approximate location derived from IP address
Pages viewed
Referring website
Links clicked
Date and time of access
Session information
Website interactions
Technical logs
Error logs
We do not intentionally collect precise GPS location through our public website unless a specific feature requires it and appropriate notice or permission is provided.
5. Information Processed on Behalf of Clients
The Cevimo System allows Clients to manage information relating to their own customers, prospects, leads, and website visitors.
Depending on how a Client uses the System, this information may include:
Names
Email addresses
Telephone numbers
Addresses
Enquiry information
Lead source
Messages
Form submissions
Appointment details
Call information
Customer status
Review requests
Communication history
Notes added by the Client
Other information submitted by an End Customer to the Client
When Cevimo processes this information solely on behalf of a Client, Cevimo generally acts as a processor or service provider, and the Client remains responsible for determining how and why that information is used.
Clients are responsible for providing their own customers and leads with any privacy notices required by applicable law and for obtaining any required permissions or consents.
Our processing of such information is further governed by the applicable Data Processing Addendum.
6. Where We Get Information From
We may receive personal information:
Directly from you when you contact us, complete a form, book a Web Analysis, create an Account, start a free trial, subscribe, or communicate with our team.
Through the Cevimo System when you or your authorized users use our software and functionality.
From our Clients when they upload or collect information about their customers and leads through the System.
From your device when you visit our website or access the System.
From service providers that help us provide payments, hosting, communications, scheduling, analytics, account functionality, and other technical services.
From integrations you authorize where you connect Cevimo with another supported platform or service.
From publicly available business sources where reasonably necessary to configure or support business information, local online presence, or similar functionality.
7. How We Use Personal Information
We use personal information where reasonably necessary to operate Cevimo and provide the Cevimo System.
This includes the following purposes.
7.1 Providing the Cevimo System
We use information to:
Create and maintain Accounts
Configure your System
Build and operate your Website
Provide lead management functionality
Operate communication features
Provide automated follow-up
Provide review functionality
Provide business phone functionality
Provide local SEO functionality
Maintain integrations
Provide technical functionality
Manage your Subscription
7.2 Web Analyses and Sales Enquiries
We may use your information to:
Schedule your Web Analysis
Understand your business
Review your current setup
Communicate before and after the meeting
Determine whether Cevimo is suitable for your business
Answer questions about Cevimo
Follow up regarding your enquiry
7.3 Customer Support and Onboarding
We use information to:
Complete onboarding
Configure your Account
Respond to support requests
Diagnose technical problems
Communicate about your Subscription
Provide instructions and assistance
Maintain records of support interactions
7.4 Billing
We use personal information to:
Process Subscription payments
Manage free trials
Generate invoices
Maintain billing records
Resolve failed payments
Prevent payment fraud
Handle billing disputes
7.5 Service Communications
We may contact you regarding:
Your Account
Your Subscription
Your free trial
Your Website
Your booking
Security matters
System updates
Billing
Technical issues
Support requests
Changes to our Terms or policies
These communications are generally necessary to provide the Cevimo System and manage our relationship with you.
7.6 Improving Cevimo
We may use information to:
Understand how the System is used
Improve functionality
Fix bugs
Develop new features
Measure website performance
Improve onboarding
Improve customer support
Improve user experience
Protect the reliability of our systems
Where appropriate, we may use aggregated or de-identified information for analytics and product development.
7.7 Security and Fraud Prevention
We use information where reasonably necessary to:
Protect Accounts
Prevent unauthorized access
Investigate suspicious activity
Prevent fraud
Protect our infrastructure
Enforce our Terms
Prevent misuse of the Cevimo System
7.8 Legal and Business Operations
We may process information to:
Maintain accounting records
Meet tax requirements
Respond to lawful requests
Establish or defend legal claims
Enforce agreements
Conduct audits
Manage corporate transactions
Meet regulatory obligations
8. Legal Bases for Processing
Where the GDPR, UK GDPR, or another law requires us to identify a legal basis for processing, we rely on one or more of the following as appropriate.
8.1 Contract
We process information where necessary to enter into or perform our agreement with you.
For example, we need certain information to create your Account, provide your Website, operate your Subscription, and process billing.
8.2 Legitimate Interests
We may process information where necessary for our legitimate business interests, provided those interests are not overridden by your rights and interests.
These interests may include:
Operating and improving Cevimo
Providing customer support
Securing our systems
Preventing fraud
Responding to business enquiries
Managing our relationship with Clients
Understanding how our website and System are used
8.3 Consent
Where required, we may rely on your consent.
For example, consent may be used for certain cookies, optional communications, call recording, or other processing where applicable law requires consent.
You may withdraw consent at any time, although withdrawal does not affect processing that was lawful before your withdrawal.
8.4 Legal Obligations
We may process information where necessary to comply with tax, accounting, regulatory, court, law-enforcement, or other legal requirements.
9. Mobile and SMS Communications
If you provide your mobile telephone number directly to Cevimo, we may use it for communications relating to:
Your Web Analysis
Appointment reminders
Your Account
Your Subscription
Onboarding
Customer support
System notifications
Other communications you have requested or consented to receive
Where an SMS includes an applicable opt-out mechanism, you may reply STOP to stop eligible messages.
For assistance, you may contact:
Standard message and data rates may apply depending on your mobile provider.
We do not sell mobile telephone numbers.
We do not share mobile opt-in information with unrelated third parties for their own marketing purposes.
Telephone numbers may be processed by telecommunications, CRM, or messaging providers where necessary to deliver communications on our behalf.
10. Client SMS, Email and Phone Communications
The Cevimo System may allow our Clients to send or automate communications to their own customers and leads.
In these circumstances, the communication is sent by or on behalf of the Client, not independently by Cevimo.
The Client is responsible for:
Determining who should receive communications
Obtaining any required consent
Providing required privacy notices
Honouring opt-outs
Complying with applicable telecommunications and marketing laws
If you receive a communication from one of our Clients and want to exercise privacy or communication rights relating to that business, you should normally contact the Client directly.
11. Call and Meeting Recordings
We may record certain Web Analysis, onboarding, training, sales, or support calls where appropriate.
Where a call is recorded, we will provide notice and, where required by applicable law, obtain consent before recording.
Recordings may be used for:
Quality assurance
Training
Recordkeeping
Improving our processes
Resolving disputes
Protecting our legal rights
If you do not want a call to be recorded, tell us when you are informed about the recording.
12. Cookies and Similar Technologies
Our website and System may use cookies and similar technologies.
These technologies may be used for:
Essential website functionality
Account login and authentication
Security
Remembering preferences
Website analytics
Performance measurement
Embedded video functionality
Booking and calendar functionality
Customer support functionality
Where required by applicable law, non-essential cookies will only be used after obtaining your consent.
You may be able to manage cookies through our cookie settings tool or through your browser.
Blocking certain essential cookies may prevent parts of our website or System from functioning correctly.
Third-party services embedded into our website, such as video players, scheduling systems, or other integrations, may also process technical information according to their own privacy policies.
13. No Sale of Personal Information
Cevimo does not sell personal information for money.
We also do not currently share personal information with advertising networks for cross-context behavioural advertising or targeted advertising.
We do not sell Client customer lists, leads, telephone numbers, email addresses, or other Client data.
If our practices materially change in the future, we will update this Privacy Policy and implement any notices, consent mechanisms, or opt-out rights required by applicable law before the new processing begins.
14. How We Share Personal Information
We may disclose personal information to trusted recipients where reasonably necessary.
14.1 Technology and Service Providers
We use third-party providers that may help us with:
Software infrastructure
CRM functionality
Website hosting
Cloud storage
Telecommunications
SMS
Email
Payment processing
Scheduling
Video hosting
Analytics
Customer support
Authentication
Domain services
Security
Technical infrastructure
These providers may process information only as necessary to provide their services to us and subject to applicable contractual and legal requirements.
14.2 Professional Advisors
We may provide information to lawyers, accountants, auditors, insurers, and other professional advisors where reasonably necessary.
14.3 Government and Legal Authorities
We may disclose information if required by:
Applicable law
Court order
Subpoena
Regulatory authority
Law enforcement request
Other legally binding process
We may also disclose information where reasonably necessary to protect the rights, safety, property, or security of Cevimo, our Clients, users, or others.
14.4 Corporate Transactions
Information may be disclosed or transferred in connection with a:
Merger
Acquisition
Investment
Financing
Reorganization
Sale of assets
Sale of the company
Similar corporate transaction
Where appropriate, the recipient will remain subject to applicable confidentiality and data protection obligations.
15. Third-Party Integrations
The Cevimo System may connect with third-party platforms at your request.
Depending on the functionality you use, this may include services relating to:
Google
Social platforms
Domains
Telephone services
Email
Calendars
Payment processing
Business communications
Other supported applications
When you authorize an integration, information may be exchanged between Cevimo and that third party as necessary to provide the requested functionality.
Your use of the third-party service remains subject to the third party's own terms and privacy practices.
16. Data Retention
We retain personal information only for as long as reasonably necessary for the purposes for which it was collected and to meet applicable legal, accounting, tax, security, and contractual requirements.
Retention periods depend on the nature of the information.
As a general guideline:
Client Account and Subscription Records
Retained while the Subscription is active and for a reasonable
period afterwards where required for legal, accounting, contractual,
security, or dispute-resolution purposes.
Billing and Tax Records
Generally retained for the period required by applicable
accounting and tax laws.
Web Analysis and Prospective Client Information
Retained for a reasonable period following your enquiry so
that we can follow up, maintain business records, and understand
previous communications.
Support and Communication Records
Retained for as long as reasonably necessary to provide
support, maintain records, resolve disputes, and improve the System.
Call Recordings
Where calls are recorded, recordings are retained only for as
long as reasonably necessary for the purpose for which the recording was
made, unless a longer period is required for a dispute, legal
requirement, or legitimate business need.
Website and Analytics Information
Retained according to the configuration of the relevant
analytics or technical provider and our business requirements.
Client End Customer Data
Retained according to the Client's instructions, the applicable
Subscription relationship, our Data Processing Addendum, and applicable
legal requirements.
When information is no longer reasonably required, we may delete, anonymize, or securely archive it.
17. Data Security
We take reasonable administrative, organizational, and technical measures designed to protect personal information against:
Unauthorized access
Unauthorized disclosure
Loss
Destruction
Alteration
Misuse
Accidental disclosure
Measures may include access controls, authentication, encryption where appropriate, vendor security review, technical safeguards, monitoring, and internal access restrictions.
However, no Internet transmission, software system, or electronic storage method can be guaranteed to be completely secure.
You are also responsible for protecting your Account credentials and restricting Account access to authorized users.
18. International Data Transfers
Cevimo is established in the United Arab Emirates, and we work with Clients and technology providers in multiple countries.
As a result, personal information may be processed in the UAE and in other countries where Cevimo or our service providers operate.
These countries may have privacy laws that differ from those in your country.
Where applicable law requires specific safeguards for an international transfer, we will use an appropriate legal mechanism.
Depending on the circumstances, these may include:
Adequacy decisions
Standard contractual clauses
The UK International Data Transfer Addendum or other UK-approved mechanism
Contractual safeguards
Consent where legally appropriate
Another transfer mechanism permitted by applicable law
Where Cevimo processes Client personal data as a processor, international transfer requirements may also be addressed in our Data Processing Addendum.
19. Your Privacy Rights
Depending on where you live and which privacy law applies, you may have some or all of the following rights.
19.1 Right to Access
You may have the right to request confirmation of whether we process your personal information and obtain access to information we hold about you.
19.2 Right to Correction
You may request correction of inaccurate or incomplete personal information.
19.3 Right to Deletion
You may request deletion of your personal information in circumstances provided by applicable law.
This right is not absolute, and we may need to retain certain information for legal, tax, accounting, fraud-prevention, security, contractual, or dispute-resolution purposes.
19.4 Right to Restriction
Where applicable, you may request that we restrict how certain personal information is processed.
19.5 Right to Object
You may have the right to object to certain processing based on legitimate interests or other grounds permitted by applicable law.
19.6 Right to Data Portability
Where applicable, you may request certain personal information in a structured, commonly used, machine-readable format.
19.7 Right to Withdraw Consent
Where processing is based on your consent, you may withdraw that consent at any time.
19.8 Rights Relating to Automated Decisions
Where applicable law provides such a right, you may have protections relating to decisions based solely on automated processing that produce legal or similarly significant effects.
Cevimo does not currently use solely automated decision-making about website visitors or Clients to make decisions producing legal or similarly significant effects.
19.9 Right to Complain
Depending on where you live, you may have the right to complain to an applicable data protection or privacy regulator.
20. How to Exercise Your Privacy Rights
To exercise a privacy right relating to information for which Cevimo acts as controller, contact us at:
Please include enough information for us to understand and process your request.
We may need to verify your identity before completing certain requests.
Verification may involve confirming information already associated with your Account or communications.
We will respond within the period required by the privacy law applicable to your request.
Where legally permitted, we may refuse or charge a reasonable fee for requests that are manifestly unfounded, excessive, repetitive, fraudulent, or otherwise exempt from applicable legal requirements.
21. Requests Relating to a Cevimo Client
If your personal information was collected by a contractor or local service business that uses the Cevimo System, that business may be the controller responsible for your information.
For example, if you submitted a quote request through one of our Client's websites, the Client generally determines why your information was collected and how it will be used.
In those circumstances, privacy requests should normally be directed to the relevant Client.
If you contact Cevimo about data processed solely on behalf of a Client, we may:
Ask you to contact the Client directly
Forward your request to the relevant Client
Assist the Client in responding where required by our DPA or applicable law
We will not independently change or delete Client-controlled information where we are not authorized to do so.
22. UAE Privacy Rights
Cevimo is established in the United Arab Emirates and is subject to applicable UAE privacy and data protection requirements.
Where the UAE Federal Decree-Law No. 45 of 2021 Regarding the Protection of Personal Data applies, individuals may have rights concerning their personal information, subject to the conditions and exceptions provided by applicable law.
These may include rights relating to:
Information about processing
Access to personal information
Correction of inaccurate information
Deletion in applicable circumstances
Restriction or cessation of processing
Objection to certain automated processing
Transfer of personal information
Withdrawal of consent where processing relies on consent
Requests may be submitted to:
23. European Economic Area
If you are located in the European Economic Area and the GDPR applies to our processing, you may have the rights described in Section 19.
You may also have the right to lodge a complaint with the supervisory authority in the country where you live, work, or where you believe an infringement occurred.
Where required, we will process personal information on an appropriate legal basis and use appropriate safeguards for transfers outside the European Economic Area.
24. United Kingdom
If you are located in the United Kingdom and UK data protection law applies, you may have rights including access, correction, deletion, restriction, portability, objection, and protections relating to automated decision-making, subject to applicable conditions and exemptions.
You may also have the right to complain to the UK Information Commissioner's Office (“ICO”).
Where UK personal information is transferred internationally, we will use an appropriate transfer mechanism where required.
25. United States Privacy Rights
Certain US states provide privacy rights to eligible residents where the relevant law applies to the business and processing involved.
Depending on your state and applicable law, these rights may include:
Access
Correction
Deletion
Data portability
Opting out of certain sales of personal information
Opting out of targeted advertising
Opting out of certain profiling
Appealing a denied privacy request
Non-discrimination for exercising your privacy rights
Cevimo does not sell personal information for monetary consideration and does not currently share personal information for cross-context behavioural advertising.
If an applicable US state privacy law provides you with rights, you may submit a request to:
We will process eligible requests in accordance with the applicable law.
26. California Privacy Disclosure
Where the California Consumer Privacy Act, as amended by the California Privacy Rights Act (“CCPA/CPRA”), applies to our processing, California residents may have rights provided by that law.
Depending on applicability, these may include rights to:
Know what categories of personal information are collected
Access personal information
Correct inaccurate personal information
Request deletion
Receive information about disclosures
Opt out of certain sales or sharing
Receive equal service when exercising privacy rights
During the preceding 12 months, Cevimo may have collected the categories of information described in Section 4 for the purposes described in Section 7.
We do not sell personal information for money.
We do not currently share personal information for cross-context behavioural advertising.
We do not knowingly sell or share the personal information of children under 16.
27. Sensitive Personal Information
Cevimo does not intentionally request highly sensitive personal information unless necessary for a specific lawful business purpose.
Please do not upload unnecessary sensitive information through the Cevimo System.
Depending on applicable law, sensitive personal information may include information relating to:
Health
Racial or ethnic origin
Religious beliefs
Sexual orientation
Biometric identifiers
Genetic information
Precise geolocation
Government identification
Financial account credentials
If a Client chooses to process sensitive personal information through the Cevimo System, that Client remains responsible for ensuring that it has a lawful basis and complies with additional legal requirements applicable to that information.
28. Children's Privacy
Cevimo is designed for businesses and is not directed to children.
We do not knowingly collect personal information directly from children under the age of 18 for the purpose of creating a Cevimo Client Account.
If you believe a child has provided personal information directly to Cevimo without appropriate authorization, contact:
If appropriate and legally required, we will take reasonable steps to delete the information.
Client businesses remain responsible for determining whether they are permitted to collect information relating to minors through their own use of the Cevimo System.
29. Third-Party Websites and Services
Our website and Cevimo System may contain links to third-party websites, services, applications, or platforms.
Cevimo does not control the privacy practices of those third parties.
This Privacy Policy does not apply to personal information processed independently by those third parties.
We recommend reviewing the applicable third party's privacy policy before providing personal information.
30. Business Transfers
If Northline Systems FZ-LLC or Cevimo becomes involved in a merger, acquisition, restructuring, financing, sale of assets, insolvency proceeding, or similar business transaction, personal information may be transferred as part of that transaction.
Where required, we will take reasonable steps to ensure that personal information remains protected and that affected individuals receive appropriate notice.
31. Changes to This Privacy Policy
We may update this Privacy Policy from time to time.
Changes may be made to reflect:
New Cevimo functionality
Changes to how we process information
New service providers
Changes to applicable law
New regulatory requirements
Changes to our business operations
The Last Updated date at the top of this Privacy Policy indicates when the most recent version became effective.
If we make a material change affecting how we process personal information, we may provide additional notice through our website, the Cevimo System, or by email where appropriate.
We recommend reviewing this Privacy Policy periodically.
32. Contact Us
If you have questions about this Privacy Policy, our privacy practices, or want to exercise an applicable privacy right, contact:
Northline Systems FZ-LLC
Trading as Cevimo
VAT: 104663755700003
License Number: 47013647
Address:
DCW2023
Compass Building
Al Shohada Road
Al Hamra Industrial Zone-FZ
Ras Al Khaimah
United Arab Emirates
Email: [email protected]
For privacy-related requests, please include “Privacy Request” in the subject line so we can identify and handle your request appropriately.




