Privacy Policy

Privacy built around what this website actually does.

This policy explains the limited data involved when you visit arastera.com or choose to contact ARASTERA, along with the choices and rights available to you.

Effective date 29 August 2026

01

Local by default

The conversation brief is prepared in your browser and is not submitted to our server.

02

No behavioral tracking

The current website uses no analytics, advertising pixels, profiling, or cross-site tracking.

03

Contact remains your choice

You decide whether and when to send information through an official communication channel.

01

Scope and responsibility

This policy applies to the public ARASTERA corporate website. For personal data under our control, ARASTERA determines why and how it is processed for operating this site and handling related enquiries.

It does not govern client systems or services delivered under separate agreements, or external websites and services reached through links from this website.

02

Data involved

Technical access data

The web server or hosting provider may record an IP address, access time, requested page, response status, referring page, and browser or device information. This is standard connection data used to deliver, secure, and diagnose the website.

Conversation brief

Text entered on the Contact page is not submitted to or stored by the ARASTERA server. It stays in your browser and is copied to your clipboard only when you choose the copy action. If you later send it through email or another channel, that channel processes the transmission and ARASTERA receives only what you send.

Direct correspondence

When you contact us, we may receive your name, organization, role, contact details, message, attachments, and subsequent correspondence. Please do not include passwords, identity numbers, financial details, health data, biometrics, or other sensitive information in an initial enquiry.

Cookies and tracking

As of the effective date, this public website is configured without application cookies, analytics, advertising pixels, or cross-site tracking. If that changes, we will update this policy and request consent before using non-essential technologies where required.

03

How we use data

We process only what is reasonably necessary to:

  • deliver, protect, monitor the reliability of, and troubleshoot the website;
  • respond to an enquiry and take steps you request before a possible engagement;
  • maintain appropriate business records, prevent fraud or abuse, and protect legal rights; and
  • comply with applicable legal obligations.

Depending on the context, the legal basis is a step requested by you before an engagement, compliance with a legal obligation, or another legitimate interest balanced against your rights. ARASTERA does not use website data for automated decision-making or profiling.

04

Sharing and transfers

ARASTERA does not sell or rent personal data. Data may be disclosed only when necessary to:

  • hosting and infrastructure providers that operate and protect this website;
  • the email, telecommunications, or professional-network service you choose to contact us through;
  • professional advisers acting under confidentiality obligations; or
  • competent authorities when disclosure is required by law or necessary to protect legal rights.

A provider may process data outside Indonesia. Where a cross-border transfer is under ARASTERA’s control, we apply the safeguards required by applicable data-protection law.

05

Retention and security

  • Conversation-brief text entered on the website has no server-side retention because it is not submitted.
  • Where ARASTERA controls technical-log retention, raw access logs are kept for no more than 90 days unless a security event, legal obligation, or dispute requires longer. Hosting-provider operational copies may follow its documented log and backup schedule.
  • An enquiry that does not become an engagement is normally retained for up to 12 months after the last substantive interaction. Records connected to an engagement follow the applicable agreement and legal record-retention requirements.

We use reasonable technical and organizational safeguards appropriate to the limited data and associated risk. No method of internet transmission or storage can be guaranteed completely secure.

06

Your rights

Subject to applicable law, you may request information about processing, access to or a copy of your data, correction, withdrawal of consent, restriction, deletion, an end to processing, or data portability. You may also object to certain processing and seek available remedies for a violation.

Send a recorded request to hello@arastera.com with the subject “Privacy Request”. We may ask for proportionate information to verify your identity and will respond within the period required by applicable law.

07

Children and external services

This corporate website is not directed to children, and we do not knowingly request personal data from children through it. If such data is identified, contact us so it can be handled appropriately.

External links and communication services operate under their own privacy terms. Review those terms before providing information through a service outside arastera.com.

08

How to contact us

For a privacy question or request, use the details below. Please use email for a recorded privacy-rights request.

Address
Jl. Cihampelas No. 201A, RT 01/RW 02, Cipaganti, Kec. Coblong, Kota Bandung, Jawa Barat 40131
Go to the Contact page

09

Changes and applicable law

We may update this policy when the website, providers, or legal requirements change. The effective date above will be revised, and a material change will be presented prominently where appropriate.

This policy is designed to be read with applicable Indonesian law, including Law Number 27 of 2022 on Personal Data Protection and Government Regulation Number 71 of 2019 on Electronic Systems and Transactions.

If the English and Indonesian versions differ, the Indonesian version prevails to the extent permitted by law.