Legal Documentation
datadefensesphere — Carrer de Sants 20, 08014 Barcelona, Spain
Privacy Policy
Data Controller
datadefensesphere, registered at Carrer de Sants 20, 08014 Barcelona, Spain, acts as the data controller for all personal information collected through this website and associated services.
Data Collected
We collect personal data necessary for service delivery: name, email address, phone number, organization details, and security assessment requirements. All data is collected with explicit consent under GDPR Article 6(1)(a).
Purpose of Processing
Personal data is processed solely for: delivering requested cyber security services, communicating about security assessments, maintaining service records, and complying with legal obligations under EU GDPR regulations.
Data Retention
Personal data is retained for the duration of the service relationship plus 24 months for audit compliance. Security assessment reports are retained for 36 months as required by industry standards.
Your Rights
Under GDPR, you have the right to: access your personal data (Art. 15), rectification (Art. 16), erasure (Art. 17), restrict processing (Art. 18), data portability (Art. 20), and object to processing (Art. 21). Contact [email protected] to exercise these rights.
Security Measures
datadefensesphere implements state-of-the-art encryption (AES-256), secure socket layer (TLS 1.3), access controls, and regular security audits to protect personal data against unauthorized access, alteration, or destruction.
Terms of Service
Service Agreement
By engaging datadefensesphere for cyber security services, you agree to these terms. All services are provided from Carrer de Sants 20, 08014 Barcelona, Spain, under applicable Spanish and EU law.
Scope of Services
Service scope is defined in individual project agreements. datadefensesphere provides enterprise-grade cyber defense strategies, network monitoring, and security awareness training. Modifications to scope require written agreement.
Payment Terms
Invoices are due within 14 days of issue. Late payments incur 1.5% monthly interest. Recurring services (e.g., 24/7 Network Monitoring) are billed monthly in advance. All prices exclude applicable VAT.
Confidentiality
Both parties agree to maintain strict confidentiality regarding security vulnerabilities, assessment findings, and infrastructure details. This obligation survives termination for 36 months.
Limitation of Liability
datadefensesphere's liability is limited to the value of services rendered. We are not liable for breaches resulting from client actions, third-party vulnerabilities outside our scope, or force majeure events.
Termination
Either party may terminate with 30 days written notice. Immediate termination is permitted for material breach. Upon termination, all confidential data is securely deleted within 30 days.
Refund Policy
Service Cancellation
One-time services (audits, assessments, training) may be cancelled within 48 hours of purchase for a full refund. Cancellations after work has commenced are prorated based on completion percentage.
Recurring Services
Monthly recurring services (e.g., 24/7 Network Monitoring) may be cancelled with 30 days notice. The current billing period is non-refundable. No early termination fees apply.
Refund Processing
Approved refunds are processed within 10 business days to the original payment method. Refund requests must be submitted to [email protected] with the original invoice reference.
Exceptions
Refunds are not available for: completed security assessments, delivered training materials, or services where confidential data has been disclosed. Custom project work is non-refundable after specification approval.
Dispute Resolution
Refund disputes are governed by Spanish consumer protection law. Clients may contact the Catalan Consumer Agency (Agencia Catalana del Consum) for mediation. EU consumers may use the Online Dispute Resolution platform.
Protect Your Organization
Every day without proactive defense is a day of exposure. Contact us to schedule a comprehensive security assessment.