Privacy & data
Last updated: June 2026
1. Scope
This policy covers the GET1 suite websites and applications (1LIST, 1PARTNER, 1TALENT and, when released, 1RFP), operated by CEDAR INNOVATIONS DECORATION DESIGN L.L.C, licence No. 1398458, United Arab Emirates. It applies in addition to any in-app notices.
2. What we collect
(a) Account data: name, professional email, company, role. (b) Briefs and queries: the requests you type into the suite. (c) Activity: results viewed, samples and quotes requested, profiles unlocked. (d) Technical data: anonymous, cookie-less audience measurement (pages viewed, country, device type) via Vercel Analytics. We do not use advertising trackers.
3. How we use data
We use data to operate the suite: understand your brief, rank relevant results, maintain your account and library, and bill paid features. Briefs and activity are also aggregated and anonymised to produce demand intelligence (e.g. "sage green contract velvets are trending"); this aggregated intelligence never identifies you or your projects.
4. AI processing
Your briefs are processed by AI models to be understood and matched. Processing may rely on trusted infrastructure and AI providers acting as our processors under contract. We do not allow third-party providers to use your briefs to train their own public models.
5. Partner access
As accepted at registration: (a) partner Maisons, firms and brands receive aggregated, anonymised demand intelligence; (b) when you actively request a sample, a quote, an expert input, an introduction or a profile unlock, your request, brief and professional contact details are transmitted to the relevant partner so they can respond; (c) when you engage with a partner's references or services, that partner may access your professional profile and the relevant brief context.
We also use service providers (hosting, analytics, email, payments) bound by data protection obligations. Outside the partner access described above, we do not sell personal data to data brokers or unrelated third parties.
6. International transfers
We operate from the United Arab Emirates and use providers in the European Union and the United States. Where personal data of EEA or UK users is transferred, we rely on appropriate safeguards such as standard contractual clauses.
7. Retention
Account data is kept for the life of the account and deleted or anonymised within 36 months of closure. Aggregated, non-identifying statistics may be kept without time limit.
8. Your rights
Under UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data (PDPL), and under the GDPR if you are in the EEA or UK, you may request access, rectification, erasure, restriction, portability of your personal data, and object to certain processing. Write to contact@get1list.com; we answer within the time limits set by applicable law. EEA users may also lodge a complaint with their local supervisory authority.
9. Security
Data is stored with audited cloud providers, encrypted in transit, with access limited to what each role requires. No system is perfectly secure; we notify affected users and authorities of breaches as required by applicable law.
10. Updates
We may update this policy as the suite evolves; the date above reflects the latest version. Material changes will be announced on this page.