This policy governs how NearSync responds when a government, law-enforcement body, or other public authority requests personal data that we hold. It applies to Near Sync FZ LLC (Ras Al Khaimah, United Arab Emirates) and NearSync Technologies Private Limited (Srinagar, India), and to all personal data we process, including data received from platform partners such as Meta.
As of the effective date above, NearSync has never received a request from any public authority for user personal data. This policy exists so that if one arrives, it is handled to a written standard rather than improvised.
Legality review
Every request is reviewed before any response is given. We verify that the request identifies a lawful basis, comes from an authority with jurisdiction over us or the data, is properly served on the correct legal entity, and is specific about the data sought. Requests are escalated to the founder and to external legal counsel where needed. Informal requests (an email or phone call without legal process) are declined and redirected to formal channels.
Challenging unlawful or overbroad requests
Where a request appears to lack a lawful basis, exceed the issuing authority’s jurisdiction, or be broader than necessary, we will challenge it: we seek narrowing from the issuing authority, and where that fails we contest the request through the available legal avenues before disclosing anything. Secrecy or non-disclosure obligations attached to a request are honoured only to the extent the law actually requires.
Data minimisation
If a request survives review, we disclose the minimum data necessary to satisfy it — scoped to the named individuals, the named services, and the stated time window. We do not provide bulk exports, and we do not volunteer categories of data that were not requested. Where the law permits, we notify the affected customer or user before disclosure so they can seek their own remedies.
Documentation
Every request — granted, narrowed, challenged, or refused — is logged: the request itself, the issuing authority, the legal reasoning applied, the people involved in the decision, our response, and the data disclosed (if any). Records are retained for at least five years.
Platform data
Where a request concerns data received from a platform partner (for example, data received from Meta through the WhatsApp Business Platform), we additionally honour the partner’s platform terms, including any obligation to notify the partner of the request where the law allows.
Contact
Public authorities should serve requests on Near Sync FZ LLC through the contact details on the Imprint. Questions about this policy: privacy@nearsynctech.com.
Questions about this document? Write to legal@nearsync.ai. Company details are on the Imprint.