PRIVACY POLICY

INFORMATION FOR USERS

MARIIA NEMYROVSKA (hereinafter, the “DATA CONTROLLER”) is responsible for the processing of your personal data and provides this Privacy Policy in accordance with applicable data protection legislation, including Regulation (EU) 2016/679 of 27 April 2016 (the “GDPR”) on the protection of natural persons with regard to the processing of personal data and the free movement of such data, and Organic Law 3/2018 of 5 December on the Protection of Personal Data and the Guarantee of Digital Rights (the “LOPDGDD”).

The following information explains how your personal data may be processed when you use this website.

Legal Basis for Processing

Your personal data may be processed where necessary to comply with legal obligations applicable to the DATA CONTROLLER, including those arising under the LOPDGDD.

Your personal data may also be processed where necessary to provide services requested by you, process your online subscription to the blog, respond to enquiries submitted through the website’s contact forms, or provide access to products purchased through the website.

Where processing is based on your consent, you may withdraw that consent at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before consent was withdrawn and will not affect services already provided or products already purchased.

Purpose of Processing

Your personal data may be processed for the following purposes:

Data Retention

Your personal data will be retained for as long as necessary to fulfil the purposes for which they were collected and to maintain our relationship with you.

Once the data are no longer required for these purposes, they will be securely deleted or anonymised, unless applicable law requires us to retain them for a longer period.

Appropriate technical and organisational measures will be applied throughout the retention period to protect your personal data and ensure their secure deletion or anonymisation.

Recipients of Personal Data

Personal data collected through this website may be shared with other companies within the same corporate group where necessary for legitimate internal administrative purposes, including the management of customer or employee data.

We may also engage third-party service providers to provide services necessary for the operation of the website and our business, including hosting, cloud infrastructure, IT services, communications, payment processing and analytics.

Where personal data are transferred to recipients located outside the European Economic Area (EEA), we will ensure that the transfer is carried out in accordance with the GDPR and is based on an appropriate legal mechanism.

How We Obtain Your Personal Data

We may collect your personal data directly from you when you use our website, contact us by email, instant messaging or post, submit a form, make a purchase, subscribe to our newsletter or otherwise interact with our services.

Where applicable, we may also receive personal data from companies within the same corporate group.

The categories of personal data we may process include:

We do not ordinarily collect special categories of personal data.

If you voluntarily provide us with special categories of personal data, we will process such information only where permitted by applicable law and where an appropriate legal basis exists.

YOUR DATA PROTECTION RIGHTS

Under applicable data protection legislation, you may have the following rights:

If you are located in Spain, you may lodge a complaint with the Spanish Data Protection Agency (Agencia Española de Protección de Datos – AEPD).

Contact Details for Exercising Your Rights

You may exercise your data protection rights by contacting us at:

Data Controller: MARIIA NEMYROVSKA

Address: C/ EL MORRO, 2, ARONA, Spain

Email: info@lexicoglobal.com

Website: https://lexicoglobal.com

MANDATORY AND VOLUNTARY PROVISION OF PERSONAL DATA

When completing forms on the website, you will be asked to provide certain personal data. Fields marked with an asterisk (*) are mandatory where such information is necessary to process your request.

The provision of any other information is voluntary unless otherwise indicated.

By submitting your personal data, you confirm that the information provided is accurate, complete and up to date. You are responsible for notifying the DATA CONTROLLER of any changes to your personal data.

The DATA CONTROLLER will not disclose or transfer your personal data to third parties except where such disclosure is permitted or required by applicable law, necessary for the provision of the requested services, or based on another valid legal basis.

Where your prior consent is legally required, we will obtain your consent before carrying out the relevant processing.

If you do not provide the personal data required to process your request or provide a requested service, we may be unable to respond to your request or provide the relevant service.

SECURITY MEASURES

The DATA CONTROLLER complies with applicable data protection legislation, including the GDPR and the LOPDGDD, in relation to the processing of personal data for which it is responsible.

Personal data are processed in accordance with the principles set out in Article 5 of the GDPR, including lawfulness, fairness and transparency, purpose limitation, data minimisation, accuracy, storage limitation, integrity and confidentiality, and accountability.

The DATA CONTROLLER has implemented appropriate technical and organisational measures designed to ensure a level of security appropriate to the risks associated with the processing of personal data.

These measures are intended to protect personal data against unauthorised or unlawful processing and against accidental loss, destruction, damage, alteration or disclosure.

The DATA CONTROLLER will regularly review and, where necessary, update these measures to ensure the ongoing protection of Users’ personal data and their rights and freedoms under applicable data protection legislation.