Privacy policy
Legal terms governing the use of the SENZIB website and services.
1. General terms and legal framework
This Policy is based on the Law of the Republic of Uzbekistan “On Personal Data” No. ZRU-547, the Law “On Informatization” No. 560-II, the Law “On Electronic Commerce” No. ZRU-792, and other applicable legislation.
It applies to website visitors, applicants, client and partner representatives, job candidates, users of SENZIB solutions, and individuals whose data is processed in a client CRM or another connected system.
A contract, statement of work, data processing agreement, or third-party service terms may establish additional requirements and applies together with this Policy.
2. Controller and allocation of roles
ИП TURSUNOV BOBURJON XABIBULLAYEVICH, TIN 521791622, PINFL 32106910450025, state registration certificate No. 5077191 dated 15.10.2022, legal address: Тошкент шаҳри, Мирзо Улуғбек тумани, Паркент кўчаси, Турон МФЙ, 11-уй acts as controller for personal data received directly from website visitors, applicants, candidates, partners, and clients.
Where a client determines the purposes and fields processed in its amoCRM, Profitbase, Google, Meta, or another connected system, the client normally acts as controller and SENZIB processes the data as a software and service provider on the client’s documented instructions. In that case, a data subject should first contact the relevant client.
SENZIB does not sell personal data or disclose it to an unrestricted audience for independent use.
3. Sources and categories of data subjects
the data subject directly, through a form, call, email, CV, contract, or solution settings;
the subject’s employer, client, or business partner where it lawfully provides its representative’s business contact details;
amoCRM and other client systems to which the client grants a SENZIB solution access;
the browser, device, and security infrastructure when the website is requested;
public professional sources where the subject has published information for business interaction.
4. Data collected through the website
main request: name, phone, company, service, comment, website language, page, or product;
partnership request: name, company, position, phone, email, website, partnership type, and comment;
job application: name, phone, email, selected role, HH URL, portfolio URL, CV, and comment;
communications: messages, dates, channel, agreed next steps, and review outcome;
attribution: UTM parameters, page address, referring source, and referrer;
technical data: IP address, request time, browser and device type, language, security signals, and automated-request verification result.
5. Data processed by SENZIB solutions and widgets
The exact scope depends on the selected product and client configuration. A solution receives only permissions and fields required for its stated function and authorised by the client.
account, installation, user, lead, contact, company, pipeline, and status IDs; account domain or subdomain; timezone and employee access settings;
OAuth tokens, API keys, and integration credentials. Where stored by SENZIB infrastructure, sensitive credentials are encrypted and access-restricted;
Property Sales Toolkit: real estate projects and units, property parameters, calculation settings, linked leads, and required Profitbase data;
Profitbase Export: support contact details, Profitbase and Google connection details, spreadsheet and sheet identifiers, schedule, timezone, and export status;
Meta Conversions: account, lead, and data-source IDs; client-selected contact, company, and lead fields; conversion event, value, and currency. Identity values such as phone and email are normalised and hashed before transfer where required by the Meta Conversions API protocol;
service logs, operation dates, error codes, connected API responses, and diagnostic data without intentional collection of unrelated content.
6. Purposes of processing
responding to requests and arranging a consultation, demonstration, or trial;
preparing an audit, automation roadmap, specification, proposal, invoice, or contract;
implementing, configuring, supporting, and improving CRM, accounting, telephony, integrations, and custom software;
selling, activating, renewing, and supporting licences, subscriptions, and widgets;
reviewing partnership proposals and job applications;
authenticating integrations, executing user commands, synchronising and exporting data;
sending client-configured events to Meta Conversions API and performing other selected solution functions;
preventing abuse, securing systems, diagnosing faults, and monitoring quality;
meeting accounting, tax, legal, and rights-protection obligations.
7. Legal bases
the subject’s consent, captured by a form checkbox, written statement, or another verifiable method;
the subject’s request and steps necessary before entering a contract;
performance of a contract with the subject, client, partner, or subject’s employer;
compliance with a legal obligation;
legitimate rights and interests of the controller or third parties where the subject’s rights are not infringed;
another basis permitted by the laws of the Republic of Uzbekistan.
8. Processing operations and methods
Processing may be automated, manual, or mixed, including transmission over information and telecommunications networks.
collection, receipt, recording, organisation, accumulation, and storage;
verification, correction, updating, modification, and matching;
use, retrieval, and access by authorised employees and contractors;
transfer between agreed systems, anonymisation, and hashing;
access restriction, blocking, archiving, and deletion.
9. Recipients and service providers
Access is limited to what is necessary for the relevant purpose and is subject to confidentiality and security obligations.
authorised SENZIB sales, analysis, implementation, support, development, and recruitment personnel;
amoCRM for website requests and client communications;
hosting, database, backup, monitoring, and security providers;
Cloudflare Turnstile where form protection is enabled;
Profitbase, Google, and Meta only when the client enables the relevant integration;
software vendors and authorised distributors for licence activation and support;
banks, payment, and accounting providers for settlement and mandatory records;
public authorities or other persons where disclosure is required by law or a valid request.
10. Cross-border transfers
CRM, cloud infrastructure, security, file, Google, Meta, and other software providers may process information outside Uzbekistan.
Before a transfer, SENZIB assesses the applicable basis and uses safeguards required by law, such as adequate protection in the destination, contractual obligations, the subject’s consent, or another permitted basis. The transferred scope is limited to the enabled function.
A client that independently connects Meta, Google, Profitbase, or another service and selects fields is responsible for having a lawful basis concerning its customers and employees.
11. Retention and deletion
form data is sent to amoCRM immediately. After confirmed delivery, the website database does not retain names, phone numbers, email addresses, comments, or CV content;
the technical website log—language, page, product, UTM, source, status, and amoCRM technical IDs—is retained for no more than 30 days;
requests and business communications in amoCRM are retained until the purpose, contractual relationship, and applicable claim periods end, then deleted or anonymised unless law requires further retention;
unsuccessful candidate CVs are retained for up to 12 months unless the candidate requests earlier deletion or another lawful basis applies;
contract, payment, accounting, and tax records are retained for statutory periods;
widget data is retained while the connection is active and for the technically and legally required period after termination; a contract or product documentation may specify exact periods;
backups are deleted through rotation and are access-restricted until deletion.
12. Security and incident response
No transmission or storage method is absolutely secure. SENZIB applies safeguards proportionate to risk, while users must protect their devices, accounts, and communication channels.
role-based access and least-privilege permissions;
secure transport, secrets management, encryption of sensitive tokens, and backups;
administrative and integration logs, fault monitoring, and request rate limits;
component updates, vulnerability review, confidentiality procedures, and staff awareness;
incident investigation, containment, and notices where required by law.
13. Data subject rights
obtain information about the existence, scope, source, purpose, method, and period of processing;
access personal data and information about recipients;
request correction of inaccurate, incomplete, or outdated information;
withdraw consent where consent is the basis;
request suspension, blocking, or deletion where provided by law;
object to unlawful processing and complain to the competent authority or a court;
exercise other rights granted by applicable law.
14. How to submit a request
Personal data requests may be sent to privacy@senzib.uz. General enquiries: hello@senzib.uz, +998 55 513 22 02. A request should identify the requester, provide a reply contact, describe the right being exercised, and include information sufficient to locate the record.
SENZIB may request reasonable proof of identity or representative authority to prevent unauthorised disclosure. Requests are handled within statutory periods. Where SENZIB acts for a client, the request may be referred to that client.
15. Third-party and children’s data
A user providing another person’s data confirms lawful authority and must inform that person of the relevant processing.
The website and solutions are intended for business use and are not directed at young children. If a child’s data has been provided without required representative consent, please notify SENZIB.
16. Policy changes and details
SENZIB may update this Policy following legal, service, or processing changes. Material changes are implemented subject to notice and renewed-consent requirements. Document version: 2.0. Effective date: 26.07.2026.
ИП TURSUNOV BOBURJON XABIBULLAYEVICH, TIN 521791622, PINFL 32106910450025, state registration certificate No. 5077191 dated 15.10.2022, legal address: Тошкент шаҳри, Мирзо Улуғбек тумани, Паркент кўчаси, Турон МФЙ, 11-уй. Personal data requests may be sent to privacy@senzib.uz. General enquiries: hello@senzib.uz, +998 55 513 22 02.