Privacy Policy
Last updated: 7 August 2026
This Privacy Policy explains how Sparda Tech ("we", "us", "our") collects, uses, shares, and protects personal data when you visit www.spardatech.com, purchase a digital product, or contact us.
1. Introduction and Scope
This policy applies to the website www.spardatech.com and every service offered through it, including the purchase and delivery of our digital products and our contact form. It does not apply to third-party websites you may reach through links on our Site — those have their own privacy policies.
We handle personal data in accordance with Law of the Republic of Indonesia No. 27 of 2022 on Personal Data Protection ("UU PDP") and Government Regulation No. 71 of 2019 on the Implementation of Electronic Systems and Transactions.
2. Information We Collect
2.1 Information you give us when you buy
Our checkout is a guest checkout — there is no account and no password. To complete a purchase we collect only:
- Your full name;
- Your email address (used to deliver your download link); and
- Your WhatsApp or mobile number (used for order support).
2.2 Information you give us when you contact us
If you use our contact form, we collect your name, email address, phone number (optional), and the content of your message. If you contact us by WhatsApp or email directly, we receive whatever information you choose to include.
2.3 Transaction information
We keep a record of your order number, the items purchased, the amount, the payment status reported by the payment gateway, and the relevant timestamps.
2.4 Information collected automatically
Like most websites, we and our analytics providers automatically receive certain technical information when you browse: your IP address, browser type and version, device type and operating system, the referring page, the pages you view, and interaction events such as clicks and scroll depth.
2.5 What we do not collect
We never collect or store your card number, CVV/CVC, expiry date, PIN, one-time password (OTP), or internet-banking credentials. Those are entered directly on the payment gateway's own secure page and are never transmitted to us. We also do not knowingly collect sensitive personal data such as health, biometric, religious or political information.
3. How We Use Your Information
We use personal data only for the following purposes:
- Fulfilling your order — creating the order, verifying payment, and sending your download link;
- Customer support — answering your questions, re-sending or restoring download access, and resolving problems;
- Refunds — verifying an order and processing a money-back request;
- Fraud prevention and security — detecting suspicious transactions and protecting our forms from automated abuse;
- Measurement and improvement — understanding which pages and campaigns work, in aggregate, so we can improve the Site;
- Legal compliance — meeting tax, accounting, and other obligations under Indonesian law.
We do not sell your personal data, and we do not rent or trade our customer list.
4. Legal Basis for Processing
- Performance of a contract — processing your name, email, phone number and transaction data is necessary to deliver the digital product you have paid for and to provide support and refunds.
- Consent — analytics, advertising measurement, and non-essential cookies are used on the basis of your consent, which you can withdraw at any time through your browser settings or by contacting us.
- Legitimate interest — securing the Site, preventing fraud, and keeping records of enquiries.
- Legal obligation — retaining transaction records where the law requires it.
5. Sharing With Third Parties
We share personal data only with the service providers we need in order to operate, and only to the extent necessary for the stated purpose. Each provider processes data under its own privacy policy.
| Provider | Data shared | Purpose |
|---|---|---|
| Midtrans (payment gateway) | Full name, email address, phone number, order number and amount | Processing your payment, issuing payment instructions, and confirming settlement |
| Google Analytics 4 | Pseudonymous identifiers, IP address, device and browser data, pages viewed, interaction events | Understanding how the Site is used and measuring conversions |
| Meta Pixel | Pseudonymous identifiers, browser data, and purchase/interaction events (production environment only) | Measuring advertising performance and audience reach |
| Google AdSense | Cookies and device identifiers | Serving advertisements on blog and content pages |
| Google reCAPTCHA | IP address, browser data, and interaction signals | Protecting the contact form from spam and automated abuse |
| Our email (SMTP) provider | Recipient email address and message content | Delivering order confirmations, download links, and replies to your enquiries |
We may also disclose personal data where we are required to do so by law, by a court order, or by a competent authority, or where disclosure is necessary to establish, exercise, or defend a legal claim. If our business is ever transferred or restructured, personal data may be transferred to the acquiring party, subject to this policy.
6. Cookies and Similar Technologies
Cookies are small text files stored on your device. We and our providers use them in three categories:
- Essential — required for the Site and checkout to function correctly. These cannot be switched off.
- Analytics — help us understand how the Site is used, in aggregate.
- Advertising — used to measure campaign performance and to serve advertisements on content pages.
You can block or delete cookies through your browser settings at any time. Please note that blocking essential cookies may prevent parts of the Site — including checkout — from working properly.
7. Data Retention
- Order and transaction records are retained for as long as needed to provide access to your purchase and to satisfy our accounting, tax, and legal obligations.
- Contact form messages are retained for as long as needed to handle your enquiry and to maintain a support history.
- Analytics data is retained according to the retention period configured in the relevant analytics platform.
When personal data is no longer required for any of these purposes, it is deleted or anonymised.
8. Security
We take reasonable technical and organisational measures to protect personal data, including encrypted transmission (HTTPS), restricted administrative access, and isolating payment handling at the licensed payment gateway so that payment credentials never reach our systems.
However, no method of transmission or storage on the internet is completely secure, and we cannot guarantee absolute security. If a personal data breach occurs that poses a risk to you, we will notify you and the relevant authority as required under UU PDP.
9. Your Rights
Under Law No. 27 of 2022 on Personal Data Protection, you have the right to:
- Obtain information about, and access, the personal data we hold about you;
- Have inaccurate or incomplete data corrected or updated;
- Request deletion of your personal data, subject to our legal retention obligations;
- Restrict or object to certain processing, including profiling for advertising;
- Withdraw consent you previously gave, without affecting processing carried out before the withdrawal;
- Receive your personal data in a commonly used electronic format, or have it transferred to another controller where technically feasible;
- Lodge a complaint with the competent supervisory authority.
To exercise any of these rights, email admin@spardatech.com from the email address you used at purchase, or contact us on WhatsApp. We may ask you for information to verify your identity before we act. We aim to respond to general enquiries within 1 business day, and to formal data requests within 14 (fourteen) days of verifying your identity.
Please note that deleting your order record may make it impossible for us to restore your download access or process a refund later.
10. Children's Privacy
Our Site and products are intended for adults and are not directed at children. We do not knowingly collect personal data from anyone under 18 years of age without the consent of a parent or legal guardian. If you believe a child has provided us with personal data, please contact us and we will delete it.
11. International Transfers
Some of the providers listed in section 5 — in particular analytics and advertising platforms — operate servers outside Indonesia. Where personal data is transferred abroad, we take reasonable steps to ensure it continues to receive a level of protection consistent with UU PDP, including relying on the provider's own contractual data-protection commitments.
12. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices, our providers, or applicable law. The revised version takes effect once published on this page, and the "Last updated" date above will change. Where a change is significant, we will take reasonable steps to inform you.
13. Contact Us
For any question about this policy, or to exercise your rights over your personal data:
- Email: admin@spardatech.com
- WhatsApp: +62 851-1131-4065
- Website: www.spardatech.com
- Business hours: Monday – Friday, 08.00 – 17.00 WIB
See also our Terms & Conditions and frequently asked questions.
