Privacy Policy

Last updated: March 8, 2026

Aenoxa ("Aenoxa", "we", "us", or "our") operates the Aenoxa Pulse point-of-sale platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. We are committed to protecting your privacy in accordance with Indonesian data protection regulations, including UU PDP (Undang-Undang Pelindungan Data Pribadi).

1. Information We Collect

We collect information you provide directly: account registration details (name, email address, phone number, business name, business address), payment information processed through our payment partners, business data entered into the Service (product catalogs, inventory records, transaction data, customer records), and staff account information. We also collect information automatically: device information (browser type, operating system, device identifiers), usage data (features accessed, actions performed, session duration), IP addresses and approximate location data, and cookies and similar tracking technologies.

2. How We Use Your Information

We use your information to: provide, maintain, and improve the Service; process transactions and manage your subscription; send you service-related communications (account notifications, billing updates, security alerts); provide customer support; generate aggregated, anonymized analytics to improve our products; comply with legal obligations and enforce our Terms of Service; and protect against fraud and unauthorized access. We do not sell your personal information to third parties.

3. Information Sharing

We may share your information with: payment processing partners (Midtrans, QRIS network providers) to process transactions; cloud infrastructure providers who host our Service; analytics providers who help us understand Service usage; professional advisors (legal, accounting) as necessary; and law enforcement or government authorities when required by Indonesian law. All third-party service providers are contractually obligated to protect your data and use it only for the purposes we specify.

4. Data Security

We implement industry-standard security measures to protect your information, including: encryption of data in transit (TLS 1.2+) and at rest (AES-256); role-based access controls for our internal systems; regular security audits and vulnerability assessments; automated backups with encrypted storage; and monitoring for unauthorized access attempts. While we strive to protect your data, no method of electronic transmission or storage is completely secure, and we cannot guarantee absolute security.

5. Data Retention

We retain your data for as long as your account is active or as needed to provide the Service. Transaction records are retained for a minimum of 5 years to comply with Indonesian tax and accounting regulations. After account termination, we retain your data for 30 days to allow for data export, after which it is securely deleted from our active systems. Backup copies may persist for up to 90 days before automatic deletion.

6. Your Rights

Under Indonesian data protection law, you have the right to: access and obtain a copy of your personal data; correct inaccurate or incomplete data; request deletion of your personal data (subject to legal retention requirements); withdraw consent for data processing; request restriction of processing; data portability (export your data in a structured format); and object to certain processing activities. To exercise these rights, contact us at christopher@aenoxa.com. We will respond to your request within 30 days.

7. Cookies and Tracking

We use essential cookies required for the Service to function (session management, authentication, security). We also use analytics cookies to understand how the Service is used and to improve performance. You can control cookie preferences through your browser settings. Disabling essential cookies may impair Service functionality.

8. Third-Party Services

The Service may integrate with third-party payment gateways and other services. These third parties have their own privacy policies, and we encourage you to review them. We are not responsible for the privacy practices of third-party services. Our integration with payment providers (such as Midtrans) is limited to processing transactions on your behalf.

9. Children's Privacy

The Service is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children. If we learn that we have collected information from a child under 18, we will take steps to delete that information promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Service at least 14 days before the changes take effect. The updated policy will indicate the revision date at the top of this page.

11. Contact Us

For questions or concerns about this Privacy Policy or our data practices, please contact us at: Aenoxa. Email: christopher@aenoxa.com. Phone: +62 817 712 289.