Legal

Legal Documentation

datadefensesphere — Carrer de Sants 20, 08014 Barcelona, Spain

Section 01

Privacy Policy

§1.1

Data Controller

datadefensesphere, registered at Carrer de Sants 20, 08014 Barcelona, Spain, acts as the data controller for all personal information collected through this website and associated services.

§1.2

Data Collected

We collect personal data necessary for service delivery: name, email address, phone number, organization details, and security assessment requirements. All data is collected with explicit consent under GDPR Article 6(1)(a).

§1.3

Purpose of Processing

Personal data is processed solely for: delivering requested cyber security services, communicating about security assessments, maintaining service records, and complying with legal obligations under EU GDPR regulations.

§1.4

Data Retention

Personal data is retained for the duration of the service relationship plus 24 months for audit compliance. Security assessment reports are retained for 36 months as required by industry standards.

§1.5

Your Rights

Under GDPR, you have the right to: access your personal data (Art. 15), rectification (Art. 16), erasure (Art. 17), restrict processing (Art. 18), data portability (Art. 20), and object to processing (Art. 21). Contact [email protected] to exercise these rights.

§1.6

Security Measures

datadefensesphere implements state-of-the-art encryption (AES-256), secure socket layer (TLS 1.3), access controls, and regular security audits to protect personal data against unauthorized access, alteration, or destruction.

Section 02

Terms of Service

§2.1

Service Agreement

By engaging datadefensesphere for cyber security services, you agree to these terms. All services are provided from Carrer de Sants 20, 08014 Barcelona, Spain, under applicable Spanish and EU law.

§2.2

Scope of Services

Service scope is defined in individual project agreements. datadefensesphere provides enterprise-grade cyber defense strategies, network monitoring, and security awareness training. Modifications to scope require written agreement.

§2.3

Payment Terms

Invoices are due within 14 days of issue. Late payments incur 1.5% monthly interest. Recurring services (e.g., 24/7 Network Monitoring) are billed monthly in advance. All prices exclude applicable VAT.

§2.4

Confidentiality

Both parties agree to maintain strict confidentiality regarding security vulnerabilities, assessment findings, and infrastructure details. This obligation survives termination for 36 months.

§2.5

Limitation of Liability

datadefensesphere's liability is limited to the value of services rendered. We are not liable for breaches resulting from client actions, third-party vulnerabilities outside our scope, or force majeure events.

§2.6

Termination

Either party may terminate with 30 days written notice. Immediate termination is permitted for material breach. Upon termination, all confidential data is securely deleted within 30 days.

Section 03

Cookie Policy

§3.1

Essential Cookies

datadefensesphere uses strictly necessary cookies for website functionality: session management, security tokens, and cookie consent preferences. These cookies do not require consent under EU ePrivacy Directive.

§3.2

No Tracking Cookies

We do not use analytics, advertising, or third-party tracking cookies. Our cookie consent banner allows you to accept only essential cookies. No invasive tracking is performed.

§3.3

Cookie Management

Cookie preferences are stored in your browser's localStorage. You may clear these at any time through your browser settings. Clearing cookies will prompt the consent banner to reappear.

§3.4

Third-Party Services

External content (e.g., Google Maps on our contact page) may set their own cookies. datadefensesphere has no control over these third-party cookies. Please refer to Google's privacy policy for details.

Section 04

Refund Policy

§4.1

Service Cancellation

One-time services (audits, assessments, training) may be cancelled within 48 hours of purchase for a full refund. Cancellations after work has commenced are prorated based on completion percentage.

§4.2

Recurring Services

Monthly recurring services (e.g., 24/7 Network Monitoring) may be cancelled with 30 days notice. The current billing period is non-refundable. No early termination fees apply.

§4.3

Refund Processing

Approved refunds are processed within 10 business days to the original payment method. Refund requests must be submitted to [email protected] with the original invoice reference.

§4.4

Exceptions

Refunds are not available for: completed security assessments, delivered training materials, or services where confidential data has been disclosed. Custom project work is non-refundable after specification approval.

§4.5

Dispute Resolution

Refund disputes are governed by Spanish consumer protection law. Clients may contact the Catalan Consumer Agency (Agencia Catalana del Consum) for mediation. EU consumers may use the Online Dispute Resolution platform.

Secure

Protect Your Organization

Every day without proactive defense is a day of exposure. Contact us to schedule a comprehensive security assessment.