Privacy Policy – Manavate Ltd
Effective Date: September 28, 2025
Manavate Ltd ("Manavate", "we", "our" or "us") operates the website www.manavate.com, the Manavate ERP/CRM system, and the Manavate Mobile Application (collectively – “the Services”).
This Privacy Policy explains how we collect, use, store, share, and protect your personal information – in accordance with the Israeli Privacy Protection Law, 1981, and Amendment No. 14, effective as of August 2025.
1. Data Ownership
All data stored and processed within the system is owned exclusively by our clients (B2B entities – sole proprietors, companies, and corporations).
Manavate acts solely as a data processor, not as the data owner.
Each client determines which information to input, manage, or store. Manavate provides only the technological platform and infrastructure.
2. Types of Data Collected
Client and end-customer information:
- Name, phone number, email address, company registration number / ID, notes.
Financial data:
- Debts, payments, invoices, and collection statuses.
Files and documents:
- Images, attachments, and other business-related files uploaded by clients.
Operational data:
- Leads, projects, tasks, and reports.
Technical data (Usage Data):
- IP address, device type, browser, operating system, login times, and activity logs.
Data from external sources (APIs):
- Automatically imported data from third-party systems, as defined by the client.
Data transmitted via third-party integrations:
- Such as mailing systems, automation platforms, or external accounting software.
Leads and prospects:
- Information voluntarily provided by interested businesses – name, phone, email, company name, field of activity, and comments.
- Cookies (see Section 11): Used for marketing, advertising, analytics, and newsletters – with explicit consent.
3. Data Collection Methods
Data may be collected in the following ways:
By the client’s business:
- When entered manually or automatically through API integrations configured by the client.
- Via third-party systems (call centers, mailing services, payment gateways, etc.), without Manavate having access to sensitive content (e.g., call recordings or credit card data).
By Manavate directly:
- When a business submits details on our website or opens a trial account.
- Through Cookies used for security, preferences, and marketing purposes (with consent only).
4. Use of Information
Information is used solely for the following purposes:
- Operating and providing CRM and ERP services
- Customer service and technical support
- Maintaining uptime, backups, and system security
- Legal compliance and reporting
- Service improvement and maintenance
- Communication with clients regarding service operations
Note:
We do not use client data for marketing, analytics, or commercial purposes. Marketing activities are limited to information provided voluntarily by businesses interested in Manavate’s services.
5. Sharing Data with Third Parties
Information may be shared with:
- Server, hosting, backup, and security providers
- Software development and programming vendors
- Administrative and technical support contractors
- External email delivery systems (used when clients send emails via the platform)
All third parties are bound by confidentiality and data protection agreements and may use the information only for the specific purposes for which it was provided.
6. Data Security
- TLS 1.3 encrypted communication
- Firewall and DDoS protection
- User authentication with personal username and password
- Role-based access control
- Daily dual backups retained for up to 30 days
- Account management access restricted to authorized employees under confidentiality agreements
- Hosting providers comply with advanced security standards, some holding ISO certifications
Manavate maintains an internal record of data types, processing purposes, and involved parties in compliance with Amendment 14.
In case of a significant data breach, Manavate will notify the Israeli Privacy Protection Authority and affected clients, as required by law.
7. Data Retention and Deletion
Data is retained for as long as the client’s account is active.
After deactivation, data becomes inaccessible and remains stored until a formal deletion request is received.
There is no automatic deletion policy.
Upon request, data is permanently deleted from the system and from all backups within 30 days.
For deletion or privacy inquiries, contact: [email protected]
8. User Rights
In accordance with Amendment 14 to the Israeli Privacy Protection Law, users may:
- Access their personal information
- Request correction or updates
- Request deletion (“Right to be Forgotten”)
- Transfer information to another controller
- Withdraw consent to data processing
Requests may be made through the client interface or by contacting [email protected].
9. Artificial Intelligence (AI) Processing
Currently, Manavate does not process personal data using AI tools.
If such functionality is introduced, it will be activated only with the client’s explicit consent and governed by a dedicated AI Privacy Policy.
Upon enabling AI features, clients acknowledge full responsibility for data input and usage under their account.
10. Data Transfers Outside Israel
Although servers are currently located in Israel, data may be hosted abroad in the future.
In such cases, Manavate will ensure equal or higher levels of protection and full compliance with cross-border data transfer regulations.
11. Cookies and Consent Mechanisms
Cookies are used only after active consent by the visitor.
Before opening a trial account or submitting details, users must check a consent box confirming that they have read and accepted the Privacy Policy and the use of cookies.
12. Children
The Services are intended for business use (B2B) only and are not directed toward minors under 18.
13. Changes to This Policy
We may update this Privacy Policy from time to time.
Updates will be posted on our website with a new effective date. Continued use of our Services after publication constitutes acceptance of the updated policy.
14. Privacy Contact Person
At this time, no dedicated Data Protection Officer (DPO) has been appointed. For all privacy-related inquiries, please contact: [email protected]
15. Contact Information
For any questions, requests, or clarifications regarding privacy, please contact: [email protected]