agentic red
Services Approach Reporting Request a scope call
Legal

Privacy policy

Last updated 25 September 2026

Who we are

Agentic Red is a security testing service of Agentic Systems - F.Z.C, a company registered in the Ajman Free Zone, United Arab Emirates ("we", "us", "our"). We are responsible for the personal data described in this policy. Questions? Contact us at info@agenticlabs.ae.

This policy covers two kinds of data

  • Data about you as a visitor or client contact: what you share when you contact us, book a scope call or work with us.
  • Data we encounter while testing: personal data held in a client's systems that we may see or access during an authorised security test.

What we collect from visitors and client contacts

  • Contact details such as your name, email address, phone or WhatsApp number, job title and company, when you message us or book a call.
  • Enquiry and engagement details: what you tell us about your systems, scope and requirements.
  • Technical data: this website does not use analytics or advertising cookies. Fonts are loaded from Google Fonts, which means your browser shares your IP address with Google when the page loads.

How we use it

  • To respond to your enquiry, scope your test and send you a quote.
  • To deliver the engagement, including status updates, reports and retests.
  • To invoice you and keep business records.
  • To meet our legal and regulatory obligations.

We do not sell your personal data, and we do not share it with third parties for their marketing.

Data we encounter during testing

Security testing can expose personal data held in a client's systems, for example customer records. For that data, the client stays in control and we act only on their written instructions. The engagement agreement governs how we handle it, and our standard practice is:

  • Only authorised access. We test only systems the owner has authorised in writing, within the agreed scope.
  • Minimum necessary. We access only what's needed to prove a finding, and stop once impact is shown.
  • Redacted reports. Personal data in reports and evidence is masked or redacted.
  • Stored in the UAE. Engagement data and evidence are stored and processed in the UAE.
  • Deleted afterwards. Test data and evidence are securely deleted at the end of the engagement, unless the client asks us in writing to keep them for a set period.
  • Confidential. Findings are shared only with the client's named contacts and never published.

Who we share data with

We use a small number of service providers to run our business, such as email, secure file storage and communication tools, and only to the extent they need to provide those services. When you message us on WhatsApp, those messages are also processed by WhatsApp (Meta) under its own privacy policy. We may disclose data where UAE law requires it.

How long we keep it

We keep contact and business records for as long as needed for the purposes above and to meet legal and accounting obligations. Testing data follows the engagement retention rules described above.

Security

We protect data with access controls, encryption in storage and transit, and restricted access for engagement staff only.

Your rights

You can ask us to access, correct or delete the personal data we hold about you, or to stop contacting you. Email info@agenticlabs.ae and we will respond within a reasonable time. If your data was encountered during a test of a client's systems, we will pass your request to that client, since they control that data.

Changes to this policy

We may update this policy from time to time. Changes will be posted on this page with a new "last updated" date.

agentic red Agentic Red is a service of Agentic Systems - F.Z.C, Ajman Free Zone, UAE.
Privacy Terms Agentic Labs © 2026