emran.io
/ Privacy Policy

Your data, in plain English.

This page explains what emran.io collects, why, and what your rights are. No dark patterns, no buried clauses.

Last updated: May 9, 2026

Who runs this site

emran.io is operated by Al Emran, an independent technology consultant based in Dhaka, Bangladesh. For questions about this policy, email [email protected].

What we collect

When you visit emran.io, your browser sends standard request data (IP address, user agent, page URL, referrer). This is used to serve the page and to keep aggregate analytics on which content is useful.

When you contact me (email, WhatsApp, LinkedIn, contact form), I receive the information you choose to send — your name, email address, message, and anything you attach. I never collect financial data on this site.

Why we use it

Three reasons: (1) to reply to your message, (2) to scope and deliver an engagement if we work together, and (3) to keep privacy-respecting analytics on which pages convert. That's it. No marketing automation, no data brokers.

Cookies & analytics

This site uses minimal first-party cookies for navigation state and, where enabled, a privacy-respecting analytics provider that doesn't fingerprint you across sites. You can disable cookies in your browser without breaking the site.

Who we share it with

Nobody, by default. If we sign an engagement, your business data is shared only with sub-contractors I've vetted and only to the extent the work requires — always under written confidentiality. I do not sell, rent, or trade personal data.

How long we keep it

Contact emails are kept for as long as the conversation is useful. Engagement records are retained for 7 years to satisfy tax and legal requirements, then deleted. Analytics are aggregated and anonymized within 26 months.

Your rights

You can ask me to confirm what personal data I hold about you, correct it, or delete it. Email [email protected] with the subject line "Privacy request" and I'll reply within 14 days.

Security

emran.io is served over HTTPS. Client data lives in reputable, encrypted-at-rest cloud services with two-factor authentication on every account I control. No system is perfect — if I ever discover a breach affecting you, I'll tell you within 72 hours.

Changes to this policy

If this policy changes materially, the "last updated" date at the top will change too. For active clients, I'll send the updated text by email — no surprises.