Privacy Policy
1. Data Controller
PlanoBinario (hereinafter, “the Agency”, “we”, or “our”) is the data controller responsible for personal data collected through the planobinario.com infrastructure. Our approach to privacy is rooted in data minimization and the implementation of secure engineering principles by default (Privacy by Design).
For any privacy-related technical or legal inquiries, users may contact our security team directly at: legal@planobinario.com.
2. Nature of Collected Data
We operate under a strict minimization model. We only collect the technical and personal data strictly necessary for the operation of our infrastructure and the establishment of commercial relationships.
Technical Data (Infrastructure Telemetry)
Our perimeter servers (CDN) and hosting systems automatically collect non-identifying network-level data to ensure security, mitigate DDoS attacks, and monitor overall performance. This includes:
- Obfuscated or temporary IP addresses.
- User-Agents and standard HTTP headers.
- Network latency and Time to First Byte (TTFB) by region.
Directly Provided Data
When a user initiates a “Contact Protocol” or requests our engineering services, we collect:
- Full name or corporate entity name.
- Professional email address.
- Technical information regarding the infrastructure or project to be developed.
3. Legal Basis and Purpose of Processing
The processing of your data is strictly governed by the EU General Data Protection Regulation (GDPR). The purposes are as follows:
- Execution of a contract or pre-contractual measures: To process quote requests, code audits, or systems development.
- Legitimate interest: To monitor the health and security of our servers against vulnerabilities and network intrusions.
- Explicit consent: If the user chooses to subscribe to technical newsletters or system status notifications.
4. Data Subprocessors
To guarantee enterprise-grade performance and security, PlanoBinario delegates certain network operations to certified and audited infrastructure providers (Subprocessors):
- Cloudflare, Inc. (US / EU): Used as our CDN, WAF (Web Application Firewall), and perimeter Edge network.
- Vercel / AWS (US / EU): Hosting for serverless computing environments.
- Sanity AS (Norway): Decentralized content management (Headless CMS).
We ensure that all our subprocessors operate under the Standard Contractual Clauses (SCCs) approved by the European Commission or under the EU-US Data Privacy Framework.
5. Data Retention
- Telemetry data: Automatically purged after a 30-day lifecycle, retaining only aggregated statistical metrics without Personally Identifiable Information (PII).
- Commercial contact data: Retained as long as a contractual relationship or mutual interest exists, and up to 5 years after its termination to comply with EU tax and legal regulations.
6. User Rights (GDPR)
As a European user or a visitor under GDPR jurisdiction, you hold the cryptographic and inalienable right to:
- Access the data we store about you.
- Rectify any technical inaccuracy.
- Erasure (Right to be Forgotten) of your information from our operational databases.
- Portability: Request a data dump in JSON or CSV format.
- Object: Refuse the processing of your data for purposes other than strictly technical or contractual ones.
To exercise these rights, submit a formal request to legal@planobinario.com. The maximum resolution time is 72 business hours.
7. Security and Privacy Updates
The technological ecosystem changes rapidly. PlanoBinario reserves the right to audit and patch this privacy policy at any time to reflect changes in our data architecture or current legislation. Any critical change will be notified to our active clients.