Privacy policy
Last updated 2026-09-07
Draft: legal identity fields not yet filled in lib/site.ts (ownerName, taxId, address). Remove by completing them.
This policy explains what personal data Beisix collects, why, on what legal basis, for how long, and what your rights are. It applies to visitors of this website, to people who contact us, and to business contacts we reach out to. It follows the EU General Data Protection Regulation (GDPR) and Spanish Organic Law 3/2018 (LOPDGDD).
Data controller
- Owner
- [owner name]
- Tax ID
- [NIF]
- Address
- [postal address]
- hello@beisix.com
What we collect and why
1. Audit request form
When you request a free audit we collect your name, company, email address, website, sector and the message you write. We use it to prepare the audit, answer you and, if you ask, send a proposal. Legal basis: the steps you request before entering a contract (Article 6.1.b GDPR). We keep this data while we deal with your request and for up to two years after our last contact, unless we start working together, in which case it becomes part of the client relationship.
2. Business outreach
We contact professionals and businesses that may benefit from our services: law and accounting firms, clinics, real estate agencies and similar. To do so we collect publicly available business contact details: company name, website, the business email address and phone published on that website or in public directories, and facts about the website itself, such as its speed, its search visibility and how it lets clients get in touch. We use this data to assess whether our services fit, to prepare a short audit of the public website, and to send one first email with that audit. Legal basis: our legitimate interest in offering professional services to businesses (Article 6.1.f GDPR), and, for contact data of legal persons, Article 19 LOPDGDD. Every email identifies us and includes a way to decline further contact; if you decline we record only what is needed to make sure we do not write again. We keep outreach data for up to twelve months after the last contact.
3. Email correspondence
If you write to us, we keep the exchange for as long as needed to handle it and, where a business relationship follows, for the duration of that relationship plus the periods required by tax and commercial law.
4. Website visits
This site sets no cookies and runs no analytics or advertising trackers. Our hosting provider records standard technical logs (IP address, browser, pages requested, time) to deliver the site and protect it from abuse. These logs are kept for a short period by the provider and are not used to profile you. If we add analytics in the future, we will ask for your consent first.
Who processes data on our behalf
We use a small number of providers under data processing agreements:
- Vercel Inc. (United States): hosting of this website and receipt of form submissions.
- Google Ireland Limited: email and calendar under Google Workspace.
- Cloudflare, Inc.: domain registration and DNS.
- Anthropic, PBC (United States): AI processing used to assess public website information and to draft communications. Anthropic processes this data on our instructions and does not use it to train its models.
Where a provider is outside the European Economic Area, transfers rely on the European Commission's Standard Contractual Clauses or an adequacy decision, including the EU-US Data Privacy Framework where the provider is certified. We do not sell personal data and do not share it with anyone else, except where the law requires it.
Your rights
You can ask us to access, correct, delete or restrict your data, object to processing based on legitimate interest, and request portability where applicable. To exercise any right, write to hello@beisix.com. We answer within one month. If you think we have not handled your data correctly, you can complain to the Spanish Data Protection Agency (Agencia Española de Protección de Datos, aepd.es) or to the supervisory authority of your country.
Objecting to outreach
If you receive an email from us and do not want another, reply with STOP or write to hello@beisix.com. We will stop immediately and keep your address only on a suppression list so we do not contact you again.
Security
Data is stored on encrypted infrastructure with access limited to the people who need it. Email is sent over encrypted connections and authenticated with SPF, DKIM and DMARC. No system is perfectly secure; if a breach ever affects your data we will inform you and the authority as the law requires.
Changes
We will update this policy when our practices or the law change and show the date at the top. The current version always applies.