Privacy Policy

At BlackBytes, S.L.U., we are committed to protecting the privacy of individuals who visit our website and use our services. This Privacy Policy clearly explains how we collect, use, retain, and protect our users’ personal data, as well as the rights they are entitled to under Regulation (EU) 2016/679 (General Data Protection Regulation or GDPR), Organic Law 3/2018 on the Protection of Personal Data and Guarantee of Digital Rights (LOPDGDD), and any other applicable legislation. We recommend that you read this policy carefully before providing any personal data through this website.

1. Data Controller

Data Controller: BlackBytes, S.L.U.
Tax Identification Number (CIF):
B64548795
Address: Còrsega, 220 Entlo., 08036 Barcelona, Spain
Telephone: +34 93 737 88 88
Email: info@blackbytes.com

2. Scope of Application

This Privacy Policy applies to all processing of personal data carried out through the BlackBytes website, including, among others:

  • Contact forms.
  • Quote request forms.
  • Communications conducted by email.
  • Information provided during the commercial relationship with our clients.
  • Website browsing when the user has accepted the corresponding cookies.

Use of this website implies acceptance of this Privacy Policy.

3. Principles Applicable to Data Processing

At BlackBytes, we process personal data in accordance with the principles established by the GDPR:

  • Lawfulness, fairness, and transparency.
  • Purpose limitation.
  • Data minimisation.
  • Accuracy.
  • Storage limitation.
  • Integrity and confidentiality.
  • Accountability.

We only collect the data necessary to provide our services and respond to requests received.

4. What Personal Data Do We Collect?

Depending on the service requested, we may process the following categories of personal data:

Identification Data

  • First and last name.
  • Company.
  • Job title.
  • Email address.
  • Telephone number.

Data Derived from Requests

Information voluntarily provided by the user through the website forms or by email, including enquiries, quote requests, or any other information related to our services.

Browsing Data

When the user has given their consent through the cookie consent management platform, we may collect technical information about their browsing activity, such as:

  • Anonymised IP address, where applicable.
  • Browser type.
  • Operating system.
  • Device used.
  • Language.
  • Pages visited.
  • Time spent on the website.
  • Source of access.
  • Interactions with the website.

This information is used exclusively for statistical and analytical purposes and to continuously improve our digital services.

BlackBytes does not intentionally collect special categories of personal data (health information, political or ideological beliefs, religious beliefs, trade union membership, sexual orientation, biometric data, or any other specially protected data). If a user voluntarily provides this type of information, it will only be processed when strictly necessary to handle their request and in accordance with applicable legislation.

5. Purposes of Data Processing

The personal data provided by users may be processed for the following purposes:

Handling Enquiries

To manage requests submitted through contact forms or by email and provide the requested information about our services.

Preparation of Quotes

To prepare and send personalised quotes when requested by the user.

Customer Management

To maintain the commercial relationship, provide the contracted services, carry out administrative tasks, manage incidents, and provide technical support when necessary.

Commercial Communications

When the user has provided their express consent by selecting the corresponding acceptance checkbox, BlackBytes may send commercial communications related to its services, news, technical content, or corporate information.

The user may withdraw this consent at any time by using the means provided for this purpose or by contacting BlackBytes.

Website Improvement

To analyse users’ browsing behaviour in order to improve the user experience, optimise website performance, and assess the effectiveness of our digital marketing activities.

These activities will only be carried out when the user has accepted the corresponding cookies.

Compliance with Legal Obligations

Where necessary, personal data may be processed to comply with legal, tax, accounting, or administrative obligations arising from BlackBytes’ business activities.

6. Legal Basis for Processing

The legal bases that legitimise the processing of personal data are as follows:

  • The data subject’s express consent to handle enquiries, quote requests, and the sending of commercial communications.
  • The performance of pre-contractual measures when the user requests information or a quote.
  • The performance of a contract when there is a commercial relationship between BlackBytes and the client.
  • Compliance with applicable legal obligations.
  • BlackBytes’ legitimate interest in ensuring website security, preventing fraudulent use, improving its services, and properly managing its relationship with its clients, while always respecting the rights and freedoms of the data subjects.

Where processing is based on consent, the user may withdraw their consent at any time without affecting the lawfulness of processing carried out prior to its withdrawal.

7. Tools Used for Data Management

In order to provide our services, manage requests received, and improve the user experience, BlackBytes uses various technological platforms that, where applicable, act as data processors for personal data.

All these providers have been selected based on criteria of security, confidentiality, and compliance with applicable data protection regulations.

HubSpot

The forms available on this website are managed through the HubSpot platform, which BlackBytes uses as a customer relationship management (CRM) tool.

Data provided by users through the forms may be incorporated into the CRM for the following purposes:

  • Managing enquiries and requests for information.
  • Preparing quotes.
  • Maintaining communications with clients and prospective clients.
  • Following up on business opportunities.
  • Managing the provision of contracted services.
  • Sending commercial communications when the user has previously given their consent.

HubSpot acts as a data processor and implements appropriate technical and organisational security measures to protect the information processed.

Analytics and Measurement Tools

With the user’s consent, BlackBytes may use analytics and measurement tools to understand how the website is used and continuously improve the browsing experience.

These tools make it possible to obtain aggregated and statistical information regarding aspects such as:

  • Number of visits.
  • Pages viewed.
  • Time spent on the website.
  • Device used.
  • Browser.
  • Traffic source.
  • Conversions and campaign performance.

The information obtained is used exclusively for analytical, statistical, and website optimisation purposes.

Advertising Platforms

When the user has accepted the corresponding cookies, BlackBytes may use advertising tools to measure the effectiveness of digital marketing campaigns, assess ad performance, and optimise future commercial activities.

These tools may record conversions resulting from advertising campaigns, always respecting the user’s stated consent preferences.

Microsoft 365

BlackBytes uses professional Microsoft services for managing email, corporate documentation, internal communications, and other processes related to the provision of its services.

Personal data processed through these tools is managed in accordance with the security measures established by the provider and solely for purposes related to the company’s professional activities.

8. Recipients of Personal Data

As a general rule, BlackBytes does not sell, rent, or disclose personal data to third parties.

However, certain technology providers may access information when this is necessary for the proper provision of their services. In such cases, they act as data processors and follow BlackBytes’ instructions.

Categories of recipients may include:

  • Customer relationship management (CRM) platforms.
  • Web hosting and technological infrastructure services.
  • Email and business productivity services.
  • Web analytics tools.
  • Advertising and measurement platforms.
  • Technical support and IT maintenance providers when necessary.

All such providers are subject to the corresponding confidentiality and data protection obligations.

Personal data may also be disclosed to public bodies or administrative or judicial authorities when there is a legal obligation to do so.

9. International Data Transfers

Some of the technology providers used by BlackBytes may process information in countries located outside the European Economic Area.

When this occurs, such international transfers will only be carried out with providers that offer appropriate safeguards in accordance with the General Data Protection Regulation, including, where applicable, the use of Standard Contractual Clauses approved by the European Commission or other legally recognised mechanisms.

BlackBytes takes reasonable measures to ensure that any international transfer of data maintains a level of protection equivalent to that required under European data protection regulations.

10. Data Retention

Personal data will only be retained for as long as necessary to fulfil the purpose for which it was collected and, thereafter, for the periods required by applicable legislation.

As a general rule:

  • Enquiries submitted through the contact form will be retained for as long as necessary to handle the request and, thereafter, for any applicable statutory periods.
  • Quote requests will be retained for as long as there is a mutual interest in maintaining the commercial relationship or for the periods legally established.
  • Client data will be retained throughout the contractual relationship and, thereafter, for the periods required under tax, commercial, and other applicable legislation.
  • Data used to send commercial communications will be retained until the data subject withdraws their consent.

Once the applicable retention periods have expired, the data will be deleted or blocked in accordance with applicable legislation.

11. Data Subject Rights

Any individual has the right to obtain information about how BlackBytes processes their personal data.

In particular, they may exercise the following rights:

  • Right of access.
  • Right to rectification.
  • Right to erasure.
  • Right to object.
  • Right to restriction of processing.
  • Right to data portability.
  • Right to withdraw consent at any time when processing is based on consent.

The exercise of these rights is free of charge and may be carried out by submitting a written request to:

BlackBytes, S.L.U.
Email: info@blackbytes.com

In order to protect the applicant’s personal data, BlackBytes may request the necessary documentation to verify their identity.

If the data subject considers that the processing of their personal data does not comply with applicable regulations, they may lodge a complaint with the Spanish Data Protection Agency (AEPD), without prejudice to any other administrative or judicial remedy that may be available to them.

12. Security Measures

BlackBytes implements appropriate technical and organisational measures to protect personal data against loss, alteration, unauthorised access, disclosure, or any other unlawful processing.

Among other measures, the website uses secure connections through encryption protocols, access controls, authentication mechanisms, and procedures designed to ensure the confidentiality, availability, and integrity of the information processed.

However, users should be aware that no security measure on the Internet can guarantee absolute protection against every possible risk. For this reason, BlackBytes regularly reviews and updates its security procedures to align them with industry best practices.

13. Minors

The services offered through the BlackBytes website are aimed at companies, professionals, and adults.

BlackBytes does not knowingly collect personal data from children under the age of 14. If a minor provides personal data without the authorisation of their parents or legal representatives, they may request its deletion by contacting the data controller.

If BlackBytes becomes aware that it has received personal data from a minor without the required authorisation, it will take the necessary steps to delete such data as soon as possible.

14. Links to Third-Party Websites

This website may contain links to third-party websites in order to provide additional information or access to external services.

BlackBytes does not control and is not responsible for the privacy policies, content, or practices of such websites. Therefore, we recommend that users review the privacy policy of each website they visit before providing any personal data.

The inclusion of external links does not imply any commercial relationship, endorsement, or liability on the part of BlackBytes regarding the content or services offered by such third parties.

15. Cookie Policy

This website uses first-party and third-party cookies to ensure the proper functioning of the website, improve the browsing experience, analyse website usage, and measure the effectiveness of our digital marketing activities.

Non-essential cookies will only be installed when the user has provided their consent through the consent management platform enabled on the website.

Users may accept, reject, or configure the use of the different categories of cookies at any time through the corresponding settings panel.

For detailed information about the cookies used, their purposes, duration, and how to disable them, please refer to our Cookie Policy.

16. Information Security

Protecting information is a priority for BlackBytes.

For this reason, we implement technical and organisational measures designed to preserve the confidentiality, integrity, availability, and resilience of the personal data we process, regularly reviewing our internal procedures to adapt them to technological developments and existing risks.

Although BlackBytes takes all reasonable measures to protect information, no system connected to the Internet can guarantee absolute security. Consequently, we cannot guarantee the complete absence of unauthorised access, cyberattacks, or other incidents resulting from fraudulent actions by third parties.

In the event of a security breach that could affect the rights and freedoms of data subjects, BlackBytes will act in accordance with applicable legislation and, where appropriate, notify the competent authorities and affected individuals.

17. Amendments to the Privacy Policy

BlackBytes may amend this Privacy Policy when necessary to adapt it to legislative changes, guidance or criteria issued by supervisory authorities, technological developments, changes to the services provided, or any other circumstances that may warrant such amendments.

Where amendments are significant and materially affect the processing of personal data, appropriate measures will be taken to inform users through suitable means.

Users are advised to review this Privacy Policy periodically to remain informed of its latest version.

The date of the most recent update will always be stated at the beginning of this document.

18. Contact

If you have any questions regarding this Privacy Policy or wish to exercise any of the rights recognised under applicable data protection regulations, you may contact BlackBytes through the following means:

BlackBytes, S.L.U.
Address: Còrsega, 220 Entlo., 08036 Barcelona, Spain
Telephone: +34 93 737 88 88
Email: info@blackbytes.com

We will review your request as diligently as possible and respond within the time limits established by applicable legislation.