Privacy Policy

Last Updated: 9th January 2026

This Privacy Policy aims to inform users clearly and transparently about the processing of personal data of those who access and use this website or our associated services. Data processing is carried out in accordance with Regulation (EU) 2016/679 (GDPR) and Organic Law 3/2018 on Personal Data Protection and guarantee of digital rights (LOPDGDD).

1. Data Controller

Controller: Noelia González Amado

VAT/Tax ID: Not shown due to security reasons

Address: Brentford, London, UK

Email:

Website: noeliaamado.com

The controller undertakes to process users' personal data in compliance with current regulations and applying appropriate technical and organizational security measures to ensure the confidentiality, integrity, and availability of the information.

2. Data We Collect

The personal data we may collect depends on how the user uses the website and the services offered. In general, they can be grouped into the following categories:

a) Data provided directly by the user

  • Name and surnames.
  • Email address.
  • Phone number.
  • Postal or billing address.
  • Account access data (username and password).
  • Payment and billing data, in case of service contracting.
  • Any other information voluntarily provided by the user through forms, communications, or support.

b) Data collected automatically

  • IP address and other device identifiers.
  • Browser information, operating system, and device type.
  • Pages visited, dwell time, and navigation patterns.
  • Approximate geolocation data, when enabled.
  • Information obtained through cookies and similar technologies.

c) Data from third parties

  • Payment or billing service providers.
  • External authentication platforms or social networks, when the user identifies through them.
  • Analytics, marketing, or customer service tools.

3. Processing Purposes

Users' personal data will be processed for the following purposes:

  • Manage user registration and account creation.
  • Enable access, use, and maintenance of the offered services.
  • Handle inquiries, requests, or incidents sent through contact channels.
  • Manage service contracting, billing, collections, and corresponding payments.
  • Send communications related to the service or relevant information for the user.
  • Improve the website's functionality and usability, as well as the user experience.
  • Conduct statistical analysis, measurements, and usage studies of the service.
  • Prevent fraudulent activities, abuses, or misuse of the platform.
  • Comply with applicable legal obligations at all times.

No automated decisions will be made based solely on data processing that produce significant legal effects for the user or affect them similarly.

4. Legal Basis for Processing

The legal basis that allows the processing of personal data depends on the nature of the relationship established with the user:

  • Contract performance: for the provision of requested services, registration management, and user account maintenance.
  • User consent: for sending commercial communications, newsletter subscriptions, installation of non-technical cookies, or other specific purposes.
  • Legitimate interest: to improve offered services, ensure website security, prevent fraud, and manage non-commercial communications related to incidents or improvements.
  • Compliance with legal obligations: arising from tax, accounting, data protection, information society services regulations, or any other applicable.

5. Data Retention

Personal data will be retained for the time strictly necessary to fulfill the purposes for which they were collected and, subsequently, during the legally established periods for compliance with obligations or addressing possible liabilities.

In particular:

  • Data linked to the user account will be retained while it remains active.
  • Data related to billing will be retained at least during the periods required by tax and accounting regulations.
  • Data processed based on consent will be retained until the user withdraws such consent.

6. Data Recipients and Transfers

In general, personal data will not be disclosed to third parties, except when necessary for the provision of the service, there is a legal obligation, or the user has given express consent.

Certain data may be accessed by:

  • Technology service providers, web hosting, system maintenance, and support.
  • Payment platforms and financial entities for collection management.
  • Analytics, communication, or marketing service providers, when necessary.
  • Public administrations and competent authorities, when there is a legal obligation.

In case of international data transfers outside the European Economic Area, appropriate guarantees will be ensured, such as standard contractual clauses, adequacy decisions, or equivalent mechanisms recognized by current regulations.

7. User Rights

Users have the right to exercise, at any time and free of charge, the following rights regarding their personal

  • Right of access: to know what personal data is being processed and obtain a copy thereof.
  • Right to rectification: to request the correction of inaccurate or incomplete data.
  • Right to erasure: to request the deletion of data when, among other reasons, they are no longer necessary for the purposes for which they were collected.
  • Right to restriction of processing: to request that processing be restricted in certain cases.
  • Right to object: to object to the processing of data in certain circumstances and for reasons related to their particular situation.
  • Right to portability: to receive personal data in a structured, commonly used, and machine-readable format, and transmit it to another controller.
  • Right to withdraw consent: when processing is based on consent, without affecting the lawfulness of processing prior to its withdrawal.

To exercise these rights, the user may contact the data controller in writing, clearly indicating the right they wish to exercise, accompanied by a valid identification document.

Additionally, the user has the right to file a complaint with the competent supervisory authority if they consider that the processing of their data violates applicable personal data protection regulations.

8. Security Measures

The data controller applies technical and organizational measures designed to protect personal data against destruction, loss, alteration, disclosure, or unauthorized access, in accordance with the state of the art, the nature of the data, and the risks to which they are exposed.

Among others, measures such as access controls, information encryption, internal security policies, periodic backups, and incident management procedures may be applied.

However, no system is completely infallible, so absolute invulnerability of networks and systems against attacks or illegitimate access cannot be guaranteed.

9. Cookies Policy

This website may use its own and third-party cookies for technical, personalization, analytics, and, where applicable, advertising purposes. Cookies are small files stored on the user's device that allow remembering certain information about their navigation.

The user can configure their browser to accept or reject cookies, as well as delete those already installed. For more detailed information about the use of cookies on this website, it is recommended to consult the specific Cookies Policy, when available.

10. Processing of Minors' Data

The services offered through this website are not generally directed at minors under 14 years of age. If services specifically directed at minors are offered, the consent of their parents or legal guardians will be requested when necessary.

If it is discovered that personal data of a minor has been collected without proper authorization, it will be deleted immediately.

11. Modifications to the Privacy Policy

The controller reserves the right to modify this Privacy Policy to adapt it to legislative changes, jurisprudential criteria, or modifications in the provision of services. Updated versions will be published on this same page, indicating the date of the last update.

12. Contact

For any questions or inquiries related to this Privacy Policy or the processing of personal data, the user can contact the controller through the following means:

Email:

Address: Brentford, London, UK