Privacy Policy

This Privacy Policy explains how personal data is handled when visitors use the Cafe Parrot Velvet website. It applies to information collected through the site and related communications.

Effective Date As stated in policy
Scope All users of our services
Questions Contact
Privacy Office

Contact Information

Privacy email
Telephone
+34 615 65 20 46
Mailing address
Plaça Poligono, 2, 03630 Sax
Privacy contact

Depending on applicable law, users may have rights to access, correct, delete, object to certain processing, and request restriction or portability. Some requests may be limited where we must keep information for legal, security, or operational reasons.

Available rights depend on the legal basis and the nature of the processing.

To exercise a privacy right, a user should provide enough information to identify the request and the relevant data. We may ask for additional details to verify identity and will respond within the period required by law.

Requests are reviewed before action is taken to protect personal data and prevent misuse.

We retain personal data for the period necessary to operate the site, respond to inquiries, maintain security, meet legal obligations, and resolve disputes. When data is no longer needed, it is deleted, anonymized, or archived where required by law.

Data is kept only for as long as needed for the stated purpose or legal recordkeeping.

When changes are material, the updated version will be posted on the site and, where appropriate, users will be informed through a reasonable notice method. The date of the latest revision should be reviewed periodically.

The policy may be revised to reflect legal, technical, or operational changes.
Why we process data

Purposes of Processing

We use personal data to operate and secure the site, publish and manage content, respond to messages, analyze basic site performance, remember preferences, prevent misuse, and comply with legal obligations. Where required, we rely on consent or another lawful basis under applicable data protection law.

Note
Processing is limited to the operational purposes described here.
Third-party sharing

Service Providers

We may share personal data with hosting, security, analytics, and maintenance providers that support the operation of the site. These parties act under instructions or contractual obligations appropriate to their role and may not use the data for unrelated purposes.

Note
Service providers receive only the information needed to perform their functions.
Data category

Data We Collect

We may process identifiers, contact details if submitted, message content, technical data such as IP address and browser information, usage data, and cookie-related information. If a user sends information through forms or comments, that information is also processed.

The data collected depends on how the site is used and which features are accessed.
Collection source

Sources of Data

We receive data from direct submissions, such as messages or comments, and from automated collection when the site is visited. We may also obtain limited technical data from service providers that support hosting, security, analytics, or cookie functions.

Most information comes directly from the user or is created during normal site operation.
Cookie type

Types of Cookies

We may use essential cookies to support core functions, preference cookies to remember settings, and analytics cookies to understand how the site is used. Cookies may be session-based or persistent, depending on their purpose.

The site uses standard cookie categories for operation, measurement, and preference handling.
User control

Cookie Controls

Users may block or delete cookies through their browser, and some browsers allow preferences to be set for certain categories of cookies. Disabling cookies may affect site functionality and some features may not work as intended.

Cookie preferences can be managed through browser settings and, where available, site controls.
GDPR
Regulation

GDPR Overview

Cafe Parrot Velvet processes personal data as a controller for the operation of this personal blog and related site functions. The legal bases may include consent, legitimate interests, performance of a request, and compliance with legal obligations, depending on the context.

Regulatory context
Where GDPR applies, users in the European Economic Area are entitled to the protections described in this policy.
This section is intended for users whose data is subject to the GDPR.
GDPR Friendly

GDPR Rights

Where the GDPR applies, users may have rights of access, rectification, erasure, restriction, objection, and data portability, and may withdraw consent where processing relies on consent. Users may also lodge a complaint with the competent supervisory authority.

GDPR rights are available subject to the conditions and limits set by law.