Legal

Privacy policy

Informative English version. For legal purposes, the Spanish text prevails.

Last updated: 15 de julio de 2026

Data controller

Controller: Joana Rodríguez González · Tax ID (NIF): 54064778N · Address: Calle Santiago Cuadrado 15, Pl. 0, Pta. Izq., 38006 Santa Cruz de Tenerife

Email: info@midefinca.es · Phone: 656 96 36 72 · Website: https://midefinca.es

Personal data processed

This website processes only the data necessary to handle the requests received. Specifically:

  • ·Contact and quote request form: name, phone, email, municipality, type of need, description of the case, cadastral reference (optional) and documentation voluntarily provided (PDF, JPG or PNG).
  • ·Direct contact by phone, email or WhatsApp: the data the user provides in that communication. If you use WhatsApp, the communication takes place through the WhatsApp service (Meta), to which its own terms and privacy policy apply.
  • ·Assignment management: the data necessary for the provision of the contracted service, the property documentation and invoicing.
  • ·Browsing: the server's technical logs (IP address, date and pages requested), for security and operation purposes.
  • ·This website does not use data for advertising or newsletters, and currently has no active analytics or tracking systems.

Purposes and legal bases

Each processing activity rests on its corresponding legal basis under article 6 of the GDPR:

  • ·Answering enquiries, studying the case and preparing quotes: application of pre-contractual measures at the data subject's request (art. 6.1.b GDPR).
  • ·Providing the contracted services and managing the professional relationship: performance of a contract (art. 6.1.b GDPR).
  • ·Invoicing and compliance with tax, accounting and legal obligations: compliance with legal obligations (art. 6.1.c GDPR).
  • ·Server security technical logs: legitimate interest in guaranteeing the site's security (art. 6.1.f GDPR).
  • ·Web analytics, should it be activated in the future: consent (art. 6.1.a GDPR), requested beforehand and independently.

Retention periods

Data from enquiries that do not lead to an assignment will be kept for the time needed to handle the request and, as a general rule, a maximum of twelve months to be able to deal with later clarifications related to it, unless earlier erasure is requested.

Client data and assignment documentation will be kept for the duration of the professional relationship and, once ended, for the periods required by tax, accounting and liability-limitation legislation (as a general rule, four years for tax matters and six for commercial and accounting matters).

The server's technical logs are kept for short security periods, according to the hosting provider's usual configuration.

Data recipients

Personal data is not disclosed to third parties for commercial or advertising purposes. Data may only be communicated when necessary for the contracted service or where there is a legal obligation:

  • ·Public administrations, Catastro, the Land Registry, notaries or other intervening professionals, when the file or contracted service requires it.
  • ·The tax administration and other bodies, when a legal obligation exists.
  • ·Accountants or administrative advisers for compliance with tax and accounting obligations.
  • ·Financial institutions for payment collection.

Data processors

The following providers with limited access to data take part in the technical operation of the site, acting as data processors:

  • ·The hosting and technical platform provider of the website and its database.
  • ·The transactional email service used to send the form requests to the owner (Resend, through the Emergent platform).
  • ·The owner's email provider (OVH), when communication takes place by email.

International data transfers

Some of the technology providers mentioned may process data outside the European Economic Area. In that case, the processing will be covered by the safeguard mechanisms provided by the GDPR, such as adequacy decisions or standard contractual clauses approved by the European Commission.

Rights of data subjects

You can exercise the rights of access, rectification, erasure, objection, restriction of processing and portability, as well as withdraw consent when it is the legal basis, by writing to info@midefinca.es and stating the right you wish to exercise; if there were reasonable doubts about your identity, you could be asked for a supporting document.

You also have the right to lodge a complaint with the Spanish Data Protection Agency (www.aepd.es).

Security measures

Technical and organisational measures appropriate to the risk are applied: TLS-encrypted communications, access control to the management area, limitation of the data collected to what is strictly necessary and validation of attached documents. However, no system is absolutely invulnerable; in the event of a security incident affecting your data, action will be taken in accordance with the legal notification obligations.