SINAD WholesaleERP is provided by the service operator identified in the contact details below. This policy covers the public website, the ERP workspace, mobile experiences, onboarding, support, messaging, document sharing, and related business operations.
Last updatedApril 10, 2026
Controller and scope
This policy applies whenever we collect or use personal data through account creation, sign-in, support, commercial communication, WhatsApp or phone workflows, uploaded documents, image attachments, and day-to-day use of the ERP.
Operator: LARATEKS GIYIM IC VE DIS TIC. SAN. LTD. STI.
We collect only the data reasonably needed to provide, secure, and improve the service.
Identity and account data such as name, work e-mail, role, company, password-related security events, and language or theme preferences.
Business records that users enter into the ERP, including customer, supplier, invoice, accounting, warehouse, notification, collection, and support data.
Communication data such as phone numbers, WhatsApp numbers, e-mail messages, call notes, support tickets, and message delivery status.
Files and media such as uploaded images, attachments, notification proofs, and shared business documents.
Technical and usage data such as session logs, device/browser information, IP-related security signals, cookies, local storage preferences, and diagnostics.
Why we use data
We use personal data to operate the ERP and the surrounding service relationship.
To authenticate users, maintain secure sessions, and enforce company security policies.
To create, store, print, share, and reconcile commercial and accounting records inside the platform.
To send operational notices, support responses, password resets, reminders, and workflow communications through approved channels.
To manage onboarding, demos, billing, compliance, auditing, fraud prevention, and service continuity.
To improve reliability, usability, and support quality through product analytics and diagnostics that are appropriate to the legal basis in use.
Legal bases and consent
Depending on the context, we process data because it is necessary to perform a contract, meet a legal obligation, protect legitimate business interests, establish or defend legal claims, or because a user has given an optional consent.
Operational ERP processing generally relies on contract, legal obligation, security, accounting, and legitimate-interest grounds.
Optional promotional communication, optional personalization, or optional analytics should rely on a separate consent where the law requires it.
For Turkish users, KVKK clarification and explicit consent are presented separately and are not merged into one blanket statement.
Sharing, service providers, and transfers
We may share personal data only with parties that need it for the relevant purpose and under appropriate safeguards.
Authorized personnel, implementation teams, and support staff acting on behalf of the operator.
Infrastructure and business processors such as hosting, database, authentication, e-mail, messaging, support, payment, and communication providers.
Professional advisers, auditors, or public authorities when disclosure is legally required or necessary to protect rights and security.
Corporate counterparties in a merger, acquisition, financing, or reorganization scenario, subject to lawful confidentiality and transition controls.
If a transfer outside the relevant jurisdiction requires an additional legal mechanism or explicit consent, we rely on that mechanism separately rather than assuming a general acceptance.
Retention and security
We retain data only for as long as needed for the stated purpose, the contract, support obligations, security review, and legal or accounting retention duties. We use access controls, least-privilege practices, authentication safeguards, logging, and provider-level security measures to reduce unauthorized access, misuse, or loss.
Your choices and rights
You may ask to access, correct, update, delete, restrict, or object to relevant processing where the law gives you that right. You may also withdraw any optional consent previously given. Requests can be sent to our contact channels described in the Privacy Rights page and the Turkish KVKK request flow, where applicable.