Last updated: 2026-07-19
Introduction
This document describes how Embals processes its users' data.
Data controller
Embals — marcosnovo@gmail.com
Legal basis and applicable frameworks
- GDPR (Reglamento UE 2016/679)
- Directiva ePrivacy
- EU AI Act
- Data Act (Reglamento UE 2023/2854)
- CCPA/CPRA (California)
- VCDPA (Virginia)
- Leyes estatales de privacidad en vigor (Colorado CPA, Connecticut CTDPA, Texas TDPSA, Utah UCPA, Oregon OCPA, Montana MCDPA, entre otras)
- COPPA (menores)
What data we collect
- Basic technical and usage data (IP address, device and browser type, server logs) required to operate and secure the service.
How we use it
We use the data to provide and improve the service, communicate with you, ensure security and comply with legal obligations. Where the GDPR applies, each purpose relies on a legal basis under Article 6: performance of a contract, legitimate interest, consent or a legal obligation.
Data retention
We keep each category of data only as long as necessary for its purpose or as required by law; after that, we delete or anonymize it.
Third parties and processors
Hosting, email, analytics and AI act as data processors.
International transfers
If we transfer data outside your region, we do so with appropriate safeguards (Standard Contractual Clauses or an adequacy decision).
Security
We apply reasonable technical and organizational measures (encryption in transit, access control) and notify breaches in accordance with applicable law.
Your rights
Access, rectification, erasure, objection, restriction and portability.
Complaints
You may lodge a complaint with the competent supervisory authority in your country.
Contact
Embals — marcosnovo@gmail.com
⚖️ This document was generated from a standard template and is not yet AI-personalized for this application. It has not been reviewed by a human lawyer and does not constitute legal advice; for specific cases, consult a qualified lawyer.