Information you send
Names, work email, company, country, project details, documents and correspondence that you choose to provide.
Website policy
How IndoGateway collects, uses, stores and shares personal data when you use this website or contact us.
At a glance
The theme does not add marketing analytics or transmit Licence Checker answers to IndoGateway by default. Website hosting, email delivery, WordPress, Google Fonts and any plugins activated by the site owner may process limited technical or personal data.
Names, work email, company, country, project details, documents and correspondence that you choose to provide.
Licence Checker answers and Entry Plan summaries can be stored locally in your browser so you can continue or email the result.
Hosting providers may record IP address, browser, device, requested pages, timestamps and security logs.
You may request access, correction or deletion where applicable, subject to legal and record-keeping requirements.
This Privacy Policy applies to indogateway.id, associated website pages, the Indonesia Licence Checker, email-based enquiry functions and other online interactions controlled by IndoGateway. “IndoGateway”, “we”, “us” and “our” refer to the operator of this website. The legal entity responsible for a paid engagement will be identified in the relevant proposal, engagement letter or invoice.
This policy is intended to support transparent handling of personal data under applicable privacy laws, including Indonesia’s Personal Data Protection Law, Law No. 27 of 2022. It is not a substitute for legal advice, and the policy should be reviewed when the website’s plugins, hosting, forms or business processes change.
Contact and identity information. Your name, work email, company, job title, country or region and any other details you choose to provide.
Project information. Business activities, ownership, products, sites, employees, target timing, licence status, uploaded or emailed documents and other information needed to understand a potential or active project.
Correspondence. Emails, attachments, meeting notes, questions, feedback and records of our responses.
Technical and usage information. Hosting or security systems may collect IP address, browser and device type, operating system, referring URL, pages requested, timestamps, error logs and security events.
Account or comment information. If WordPress accounts, comments or other interactive features are enabled, WordPress and relevant plugins may process the information associated with those features.
We collect information directly when you email us, complete an enquiry or Entry Plan, use the Licence Checker and choose to email a result, send documents, communicate with our team or enter into an engagement. Technical information may be collected automatically by the hosting environment, WordPress core, security tools or other services necessary to deliver and protect the website.
The theme’s email forms prepare a message in your email application. The theme itself does not operate a server-side enquiry database. Once you send the message, your email provider, our email provider and their infrastructure process the communication.
We may use personal data to respond to enquiries; identify likely corporate, licensing, product, import, workforce, tax, legal or operational workstreams; prepare proposals and scopes; conduct conflict, eligibility or document checks; coordinate meetings and professional services; administer client relationships; maintain project and compliance records; secure and troubleshoot the website; prevent misuse; comply with legal or regulatory duties; establish or defend legal claims; and improve the clarity and usefulness of our services.
We do not sell personal data.
Depending on the context and applicable law, processing may be necessary to take steps at your request before entering into a contract, perform a contract, comply with a legal obligation, protect legitimate business and security interests, establish or defend legal claims, or act on consent. Where processing relies on consent, you may withdraw that consent prospectively, although withdrawal does not affect processing already carried out lawfully.
The IndoGateway theme does not add advertising or marketing cookies by default. WordPress may use essential cookies for administrators or logged-in users. Hosting providers and plugins may add their own cookies or similar technologies and should be disclosed separately by the site owner.
The Licence Checker and Entry Plan use browser local storage to retain answers or summaries on the device. The current keys are indogateway_checker_answers, indogateway_checker_summary and indogateway_entry_plan. This information remains on the device until it is overwritten or cleared through browser settings. It is not automatically transmitted to IndoGateway.
Figtree is loaded from Google Fonts by default to preserve the website design. When a browser requests the font stylesheet or files, Google may receive technical information such as the visitor’s IP address, browser and request details under Google’s own terms and privacy practices. The site administrator can disable external font loading in the WordPress Customizer, in which case the website uses a system sans-serif fallback.
Other plugins or embedded services added after theme installation may make separate external requests. Those services should be reviewed and disclosed before activation.
We may share information with website hosting, security, backup and email providers; professional advisers; notaries; accountants; auditors; engineers; laboratories; certification bodies; translation or document-processing providers; project partners and subcontractors; government authorities; banks; and other parties reasonably required for the requested service. Sharing is limited to what is relevant for the purpose and subject to appropriate contractual, professional or legal obligations where available.
We may also disclose information where required by law, legal process, an authority request, or to protect rights, safety, systems or users.
IndoGateway supports cross-border projects. Personal data may therefore be accessed or processed in Indonesia and in other countries where clients, shareholders, service providers, email systems, cloud infrastructure or professional partners are located. Data-protection rules can differ between countries. Where required, we use contractual, organisational or other lawful safeguards appropriate to the transfer and the service.
We retain personal data only for as long as reasonably necessary for the purpose collected, including enquiry follow-up, project administration, compliance, accounting, dispute management and legal obligations. As a general operational guideline, inactive pre-engagement enquiries may be reviewed for deletion after 24 months. Client and transaction records may be retained for at least seven years after the end of an engagement, or longer where law, professional obligations, an authority process or a dispute requires it.
Hosting, backup, email and plugin providers may apply different retention periods. Local browser storage remains on the user’s device until cleared or overwritten.
We use reasonable administrative, technical and organisational measures appropriate to the nature of the information, including controlled access, account security, reputable hosting and service providers, backups and process controls. No internet transmission, email account, cloud service or storage system can be guaranteed completely secure. Users should avoid sending unnecessary sensitive information and should use secure channels agreed for confidential project documents.
Subject to applicable law and relevant exceptions, you may have the right to ask whether we process your personal data; request access or a copy; correct inaccurate information; request deletion; withdraw consent; object to or restrict certain processing; and raise a concern with the relevant data-protection authority. We may need to verify your identity and may retain information where required for contracts, legal obligations, security, fraud prevention or legal claims.
Requests can be sent to info@indogateway.id. Please identify the relevant interaction and the right you wish to exercise.
The website is intended for business users and is not directed to children. We do not knowingly request personal data from children. If you believe a child has provided information, contact us so it can be reviewed and handled appropriately.
The website may link to government portals, professional bodies, hosting services or other third-party sites. Their privacy practices are controlled by those parties. IndoGateway is not responsible for the privacy, security or content of an external service, and visitors should review the relevant notice before submitting information.
We may update this policy when website functionality, service providers, business processes or legal requirements change. The updated version will be posted on this page with a revised date. Material changes may also be communicated through an appropriate website notice or direct communication where required.
Questions, requests or concerns about personal data can be sent to info@indogateway.id. For project-specific legal entity and address details, refer to the applicable proposal, engagement letter or invoice.
Privacy question or request
Include the email address or interaction concerned and describe the access, correction, deletion or other request you would like us to review.