Data protection

Privacy policy

Last updated: 27 August 2026

This English text is a translation provided for convenience. In the event of any discrepancy, the Spanish version prevails.

This policy explains how the personal data of those who visit adilcotech.com or contact the owner is processed, in accordance with Regulation (EU) 2016/679 General Data Protection Regulation (GDPR) and Spanish Organic Act 3/2018, of 5 December, on the Protection of Personal Data and the guarantee of digital rights (LOPDGDD).

1. Data controller

Website owner · art. 10 LSSI-CE

Company name: ADILCO TECH CENTER, S.L. (single-member company)
Spanish tax ID (NIF): B85192490
Registered office: Boadilla del Monte, 28669 Madrid (Spain)
Email: jrubio@adilcotech.com
Activity: IT consulting and bespoke software development
Registry details: company registered at the Commercial Registry of Madrid, volume 24209, page 135, section 8, sheet M-435057. EUID: ES28065.080722945

No data protection officer has been appointed, as none of the circumstances set out in article 37 GDPR apply.

2. What data is processed and why

This site has no forms, uses no analytics or advertising tools and loads no third-party resources: the typefaces are served from our own domain. In practice, these are the only processing activities:

ProcessingDataPurposeLegal basisRetention
Technical server logsIP address, date and time, page requested, browser type To deliver the service, ensure the security of the site and detect incidents or abuse Legitimate interest of the controller in the security of its information system (art. 6.1.f GDPR, recital 49) The hosting provider's retention period, generally no longer than 30 days
Email correspondenceName, email address and any data included in the message To answer the enquiry and, where applicable, prepare a professional proposal Pre-contractual measures at the data subject's request (art. 6.1.b GDPR) For the duration of the relationship and thereafter for the statutory limitation periods (up to 6 years, art. 30 Spanish Commercial Code)
Visual theme preferenceA value stored in the browser (light / dark) To remember the appearance chosen by the user No personal data is involved and nothing leaves the browser; see the cookie policy Until the user clears their browsing data

No profiling is carried out and no automated decisions producing legal effects on individuals are taken.

3. Source of the data

Data always comes from the data subject. No data is obtained from third parties or from publicly accessible sources.

4. Recipients

Data is not disclosed to third parties, except where legally required. The following providers do act as processors under a contract entered into in accordance with article 28 GDPR:

ProviderServiceLocationTransfer safeguard
Vercel, Inc.Website hosting and deliveryUSA / global network European Commission Standard Contractual Clauses and the EU–US adequacy decision (Data Privacy Framework)
Cloudflare, Inc.Domain DNS serviceUSA / global network Standard Contractual Clauses and Data Privacy Framework
Google Ireland Ltd. / Google LLCCorporate email (Google Workspace)EU with possible access from the USA Standard Contractual Clauses and Data Privacy Framework

5. International transfers

As shown in the table above, some providers are established outside the European Economic Area. Those transfers rely on the European Commission's adequacy decision of 10 July 2023 on the EU–US Data Privacy Framework and, additionally, on the Standard Contractual Clauses approved by Implementing Decision (EU) 2021/914.

6. Rights of data subjects

Anyone may exercise the following rights by writing to jrubio@adilcotech.com, stating the right being exercised and attaching a copy of a document proving their identity:

A reply will be given within one month, extendable by a further two months in complex cases. Exercising these rights is free of charge.

If you consider that your rights have not been properly addressed, you may lodge a complaint with the Spanish Data Protection Agency (C/ Jorge Juan, 6, 28001 Madrid — www.aepd.es), without prejudice to contacting the controller first.

7. Security

The site is served entirely over an encrypted connection (HTTPS). The controller applies appropriate technical and organisational measures to ensure a level of security appropriate to the risk, in accordance with article 32 GDPR, bearing in mind that no data is collected through forms on this site.

8. Minors

This site is aimed at professionals and organisations. It is not intended for children under fourteen and their data is not knowingly collected.

9. Changes to this policy

This policy may be updated to reflect regulatory changes or changes in the services provided. The date of the last revision appears at the top of the document.