Legal & Commercial · Legal
Privacy Policy.
Last updated 29 August 2026. This Privacy Policy explains how TARG Systems collects, uses, shares, and protects personal data in connection with this website and the TARG ONE platform.
Privacy Policy details
Scope of this policy
This Privacy Policy applies to personal data that TARG Systems (PT Targ Systems Indonesia) processes as a controller: data about visitors to this website, prospective customers, and the business contacts and account administrators of our customers. It also summarizes how we handle personal data inside the TARG ONE platform. The website Privacy Policy page published separately on this site describes specifically what the website contact form collects; this policy covers our Services and customer relationships more broadly.
TARG ONE is business software used by our customers to run their own operations. Personal data that a customer or its users submit to the platform, for example employee, supplier, or end-customer records, is controlled by that customer. We process such data as a processor on the customer's behalf, under our Data Processing Agreement. If you are an employee or business partner of one of our customers and have questions about data held in their TARG ONE environment, please contact that customer directly.
Personal data we collect
We collect the following categories of personal data:
- Contact and account data: name, business email address, phone number, company name, job title, and login credentials for account administrators and users, provided when you contact us, request a demonstration, or register for the Services.
- Commercial data: order details, billing contacts, invoicing records, and correspondence relating to contracts and support.
- Usage data: log data generated when you use this website or the platform, such as IP address, browser and device information, pages viewed, features used, timestamps, and diagnostic events.
- Support data: the content of support requests and related communications.
- Customer Data containing personal data: processed on behalf of our customers as described above and governed by the Data Processing Agreement.
We do not intentionally collect special categories of personal data through this website, and we ask that you do not submit such data through our contact channels.
How we use personal data
We use personal data to:
- provide, operate, secure, and support the Services and this website;
- create and administer accounts, authenticate users, and manage subscriptions and billing;
- respond to inquiries, demonstrations requests, and support tickets;
- monitor, troubleshoot, and improve the performance, reliability, and security of the Services;
- communicate service information, such as maintenance windows, security notices, and changes to terms;
- send business communications about our products where permitted, with the ability to opt out at any time;
- comply with legal obligations, enforce our agreements, and establish, exercise, or defend legal claims.
Legal bases for processing
Where applicable data protection law, including Indonesian Law No. 27 of 2022 on Personal Data Protection and, where relevant, the EU General Data Protection Regulation, requires a legal basis, we rely on:
- performance of a contract, for processing needed to deliver the Services and manage accounts;
- legitimate interests, for securing and improving the Services, preventing misuse, and communicating with business contacts, balanced against the rights of the individuals concerned;
- consent, where required, for example for certain marketing communications or non-essential cookies, which can be withdrawn at any time;
- legal obligation, for processing required to comply with applicable law, such as tax and accounting requirements.
Sharing of personal data
We do not sell personal data. We share personal data only with:
- service providers that support our operations, such as cloud infrastructure, communications, analytics, and payment processing providers, under contracts that restrict their use of the data to providing services to us;
- professional advisors, such as auditors, accountants, and lawyers, where necessary and under confidentiality obligations;
- public authorities, where required by applicable law, regulation, or a binding request, limited to what is legally required;
- a successor entity in connection with a merger, acquisition, or sale of assets, subject to this policy continuing to apply.
International transfers
Our service providers may process personal data in countries other than the country where you are located. Where personal data is transferred across borders, we take steps required by applicable law to protect it, such as transferring to jurisdictions with adequate protection, using appropriate contractual safeguards, or relying on another lawful transfer mechanism.
Security
We maintain administrative, technical, and physical safeguards designed to protect personal data against unauthorized access, loss, misuse, and alteration, including access controls, encryption of data in transit, logging, and segregation of customer environments. No system can be guaranteed to be completely secure, and we encourage users to protect their credentials and report suspected issues to us promptly.
Retention
We retain personal data for as long as needed for the purposes described in this policy: for the duration of the relevant contract and account relationship, and afterwards for the period required to comply with legal obligations, resolve disputes, and enforce agreements. Customer Data processed on behalf of a customer is retained and deleted in accordance with the Data Processing Agreement and the customer's instructions. When personal data is no longer needed, we delete it or anonymize it.
Your rights
Subject to applicable law, you may have the right to access the personal data we hold about you, request correction or deletion, object to or restrict certain processing, request portability of data you provided, and withdraw consent where processing is based on consent. You may also have the right to lodge a complaint with a supervisory authority in your jurisdiction.
To exercise these rights, contact us using the details in the Contact section below. We will verify your identity and respond within the timeframe required by applicable law. Where a request concerns data we process on behalf of a customer, we will refer the request to that customer and support them in responding, as required by the Data Processing Agreement.
Cookies and similar technologies
This website uses cookies and similar technologies that are necessary for it to function, such as session management and security. Where we use optional cookies, for example for analytics, we do so in accordance with applicable law, and you can manage preferences through your browser settings or, where offered, through a preference control on the website. Blocking necessary cookies may affect the operation of the website or the platform.
Children
Our website and Services are intended for business use by adults. We do not knowingly collect personal data from children. If you believe a child has provided personal data to us, please contact us and we will delete it.
Changes to this policy
We may update this Privacy Policy from time to time. The date of the latest revision is shown at the top of this page. For material changes, we will provide notice through this website or by contacting account administrators. Continued use of the website or Services after a change takes effect indicates acknowledgment of the updated policy.
Contact
For privacy questions or to exercise your rights, contact TARG Systems at hello@targsystems.com, marking your message for the attention of the privacy team. We will direct your request to the appropriate person.
