Byto X
Legal

Data Protection & GDPR.

How Byto X protects personal data and honours your rights under the GDPR and comparable data-protection laws.

Last updated: August 2026

1. Our commitment

Byto X is committed to protecting personal data and processing it lawfully, fairly and transparently. This page explains how we comply with the EU/UK General Data Protection Regulation (GDPR) and comparable data-protection laws, and how you can exercise your rights. It complements our Privacy Policy.

2. Data controller

For personal data processed through this website, the data controller is Byto X (Business Bay, Dubai, United Arab Emirates). You can reach us for any data-protection matter at [email protected].

3. What we process and why

4. Lawful bases

5. Your rights

Subject to applicable law, you have the right to:

To exercise any of these rights, email [email protected]. We will respond within the timeframes required by law (generally within one month).

6. International transfers

Our infrastructure and service providers may process data outside your country. Where personal data is transferred internationally, we rely on appropriate safeguards (such as adequacy decisions or standard contractual clauses) as required by law.

7. Data retention

We keep personal data only for as long as necessary for the purposes described here and to meet legal or record-keeping obligations, after which it is deleted or anonymised.

8. Security

We apply appropriate technical and organisational measures to protect personal data against unauthorised access, loss or misuse. No system is perfectly secure, but we work to keep risk low.

9. Contact

For any data-protection request or question, contact [email protected].

Questions about this page? Email us at [email protected].