A blend of traditional and modern painting & decorating services in El Matarraña & Bajo Aragón

Privacy Policy

Who we are

Our website address is: https://pintura-adelante.es.

GDPR privacy etiquette

We are committed to safeguarding your personal information and ensuring that we go above and beyond applicable data protection laws, including GDPR. We follow the latest GDPR compliance rules for the EU. In brief:

  1. Consent: Before collecting personal data, we must inform users and obtain their explicit consent.
  2. Transparency: We explain in this privacy policy how we collect data, how it will be used, and how long it will be retained.
  3. User Rights: Users have rights under GDPR, including the right to access their data, the right to request deletion, and the right to withdraw consent.

Contact Form Submissions

When submitting a contact form, only the Message field is mandatory. You may use a pseudonym, an anonymous Nostr npub key, or your real name in the Name field.

Consent is required in order for us to keep your comment and log your IP. Please note however that your IP address is anonymized when you arrive on this website and deleted 2 minutes after you submit a comment or leave the site.

We prioritize your privacy and data security in the following ways:

  • No contact form information is stored on our server.
  • Your contact form input is encrypted and sent directly to our secure email service provider, ProtonMail, which prioritizes privacy and is based in Switzerland, known for strong data protection laws.
  • Encryption in Transit: All data submitted through our contact forms is encrypted during transmission, ensuring that your information is protected from unauthorized access while it travels over the internet.
  • Encrypted Storage: Once received, your contact form submissions are stored in an encrypted format within ProtonMail, providing an additional layer of security against potential data breaches.
  • No Data Retention: Since ProtonMail does not log IP addresses or track user activity, it also aligns with GDPR principles of data minimization and user privacy.

Comments

IP anonymization on arrival: When a user visits our site, their IP address is anonymized using a technique that replaces the last octet of the IP address with a fixed value (e.g., 0). This is done to comply with GDPR regulations.

WP Armour spam checking: When a user submits a comment, WP Armour checks the comment for spam using its algorithms and databases. If the comment is deemed spam, it is blocked and not stored in the database.

Comment submission and IP storage: If the comment is not blocked by WP Armour, it is stored in the WordPress database along with the anonymized IP address.

IP deletion after 2 minutes: Two minutes after the comment is submitted, the anonymized IP address is deleted from the database using the wp_schedule_single_event function and the close_session_function. This ensures that the IP address is not stored for an extended period, further complying with GDPR regulations.

Data Subject Rights

You have the following rights under GDPR:

  • Right to access: You can request access to your personal data at any time.
  • Right to rectification: You can request that we correct or update any inaccurate or incomplete personal data.
  • Right to erasure: You can request that we delete your personal data, and we will do so unless we have a legitimate reason to retain it.
  • Right to restriction of processing: You can request that we restrict the processing of your personal data, and we will do so unless we have a legitimate reason to continue processing it.
  • Right to object to processing: You can object to the processing of your personal data, and we will stop processing it unless we have a legitimate reason to continue.
  • Right to data portability: You can request that we transfer your personal data to another organization, and we will do so unless it is not technically feasible.

Exercising your rights

To exercise any of these rights, please contact us at

    We will respond to your request within 30 days.

    WP-Armour anti spam honey pot

    How we deal with spammers without use of captchas

    Visitor comments are first checked by the WP Armour automated spam detection service, which collects no user data. WP Armour’s anti-spam solution is designed with GDPR compliance in mind, allowing us to protect our online presence while ensuring user privacy and data security. The plugin prioritizes data protection and does not collect or store any user data, providing a secure experience without tracking, cookies, or external server calls. This technology requires no user interaction, making it compliant with GDPR regulations through honeypot anti-spam methods. WP Armour’s approach eliminates the risk of data breaches and unauthorized sharing by avoiding external API calls or subscriptions.

    Media

    If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.

    Cookies

    We do not use Cookies on this website.

    Analytics

    Pending…

    We use the Maromo WP plugin to analyze user behavior on our website. We anonymize all IP addresses of users and the Matomo plugin does not collect personally identifiable information. We do not use cookies to collect data. The anonymous data we collect is used to understand how visitors navigate our site, and to make improvements to our content and user experience.

    Embedded content from other websites

    Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.

    These websites (eg Youtube) may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.

    Who we share your data with

    ProtonMail: We use ProtonMail to send and receive emails. ProtonMail is a secure email service that prioritizes user privacy and security.
    WP Armour: We use WP Armour to protect our website from spam and malware. WP Armour is a security plugin that helps us keep our website safe and secure.

    How long we retain your data

    We retain your data for the following periods:

    Comments: We retain comments indefinitely, unless you request that we delete them.
    Contact form submissions: We retain contact form submissions for as long as necessary to fulfill the purpose of the submission, comply with legal and regulatory requirements, and maintain business records, including but not limited to tax purposes and other legitimate business interests – unless you request that we delete them.
    IP addresses: We retain IP addresses (all anonymised) for 2 minutes, unless you request that we delete them.

    Data breaches

    In the event of a data breach, we will notify you within 72 hours of becoming aware of the breach. We will also notify the relevant authorities and take steps to mitigate the breach.

    Changes to this policy

    We may update this policy from time to time. We will notify you of any changes by posting a notice on our website

    Contact us

    If you have any questions or concerns about this policy, please contact us at