GDPR Compliance Statement
Your Privacy Matters to Us
Template SaaS is committed to protecting your personal data and respecting your privacy rights under the General Data Protection Regulation (GDPR). We process your data transparently and securely to provide our SaaS services.
Data Controller Information
Data Controller: Template SaaS
Website: https://aitorvadillo.com
Privacy Contact & Data Protection Officer: Aitor <privacy@email.aitorvadillo.com
Business Registration: [Add your registration number/details]
Our privacy team handles all GDPR requests, data protection inquiries, and DPO responsibilities.
Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Contract Performance: To provide our SaaS services and features
- Legitimate Interest: To improve our services and prevent fraud
- Consent: For marketing communications (where applicable)
- Legal Obligation: To comply with accounting and tax requirements
Data We Collect
Personal Information
- Name and contact details
- Email address
- Phone number
- Account information
- Payment information
Technical Information
- IP address
- Browser type and version
- Device information
- Usage analytics
- Cookies and tracking data
Your GDPR Rights
You have the right to obtain confirmation that we are processing your personal data and access to that data.
You have the right to have inaccurate personal data corrected and incomplete data completed.
You have the right to have your personal data deleted in certain circumstances.
You have the right to restrict the processing of your personal data in certain circumstances.
You have the right to receive your personal data in a structured, commonly used format and transmit it to another controller.
You have the right to object to the processing of your personal data for direct marketing purposes.
Data Retention
Data Type | Retention Period | Reason |
---|---|---|
Account Information | Duration of service + 7 years | Legal obligations, tax records |
Payment Data | 7 years after transaction | Financial regulations |
User Content | Duration of service + 3 years | Contract fulfillment |
Marketing Data | Until consent withdrawn | Marketing purposes |
Analytics Data | 26 months | Service improvement |
Data Transfers
When we transfer your data outside the EU/EEA, we ensure:
- Adequacy decisions by the European Commission
- Standard Contractual Clauses (SCCs)
- Binding Corporate Rules (where applicable)
- Certification schemes and codes of conduct
Security Measures
Technical Safeguards
- SSL/TLS encryption
- Database encryption
- Regular security audits
- Access controls
Organizational Measures
- Staff training
- Data protection policies
- Incident response procedures
- Regular compliance reviews