1. Data controller
- Controller: Antonio Pampurini — NIE X7036476V
- Address: Carrer Balmes 25, 08338 Premià de Dalt, Barcelona, Spain
- Email: info@antoniopampurini.com
2. Data we process and for what purpose
We process the data you provide through the contact form, the booking of the introductory call, or communication by email or WhatsApp: name, email, phone number, and any information you choose to include in your message. Purposes: to respond to your enquiry, manage the booking and the service relationship, and comply with legal obligations (for example, invoicing).
We do not collect special category data (health) through the website. Please do not include clinical or health information in the forms or in your first messages.
3. Legal basis
- Your consent, when you send us an enquiry (Art. 6.1.a GDPR).
- The taking of pre-contractual steps and the performance of the service you request (Art. 6.1.b).
- Compliance with legal obligations (Art. 6.1.c).
4. Recipients and data processors
To provide the service we use suppliers acting as data processors: the web hosting provider [HOSTING PROVIDER], the booking tool [Calendly / the booking system you use], and services from Google (Calendar, Meet, email) and WhatsApp (Meta) for appointment management and communication. Some of these providers are located outside the European Economic Area (USA); in those cases, transfers rely on the Standard Contractual Clauses approved by the European Commission.
5. Retention
We keep your data for as long as the relationship lasts and, afterwards, for the periods required by law. If your enquiry does not lead to a service, we delete it once it has been dealt with.
6. Your rights
You may exercise your rights of access, rectification, erasure, objection, restriction, and portability by writing to info@antoniopampurini.com. If you believe the processing does not comply with the law, you may lodge a complaint with the Spanish Data Protection Agency (Agencia Española de Protección de Datos, www.aepd.es).
7. Security
We apply reasonable technical and organisational measures to protect your data against unauthorised access, loss, or alteration.