Privacy Policy
Last updated: April 2026
At Amianto.info, we take your privacy seriously. This Privacy Policy explains how we collect, use, store, and protect your personal data when you use our platform, in accordance with the European Union General Data Protection Regulation (GDPR).
1. Data Controller
The data controller responsible for your personal data is Amianto.info. For any questions regarding this Privacy Policy or the processing of your personal data, you can contact us at:
2. Data We Collect
We collect the following categories of personal data:
- Account data: name, email address, company name, phone number, business address, and professional credentials provided when registering.
- Usage data: IP address, browser type, device information, pages visited, time spent on the platform, and referring URLs.
- Payment data: billing information processed securely by our payment provider, Stripe. We do not store full credit card numbers on our servers.
- Communications: messages you send via contact forms or email exchanges with our support team.
- Cookies and similar technologies: see our Cookie Policy section below.
3. Legal Basis for Processing
We process your personal data on the following legal bases under Article 6 of the GDPR:
- Consent: when you explicitly agree to specific processing activities (e.g., marketing communications).
- Contract performance: to provide the services you have subscribed to and manage your account.
- Legitimate interests: to operate, secure, and improve our platform, prevent fraud, and analyse usage patterns.
- Legal obligation: to comply with applicable laws, including tax and accounting regulations.
4. Third-Party Processors
We rely on the following trusted third-party processors to deliver our services. Each processor is bound by data processing agreements and complies with GDPR requirements:
- Supabase: database, authentication, and file storage services.
- Stripe: secure payment processing for subscriptions.
- Vercel: hosting infrastructure and content delivery.
- Geoapify: geocoding and mapping services for location-based search.
5. Your Rights
Under the GDPR, you have the following rights regarding your personal data:
- Right of access: request a copy of the personal data we hold about you.
- Right to rectification: correct any inaccurate or incomplete data.
- Right to erasure ("right to be forgotten"): request deletion of your personal data, subject to legal obligations.
- Right to data portability: receive your data in a structured, commonly used format.
- Right to object: object to processing based on legitimate interests or for direct marketing.
- Right to restrict processing: limit how we use your data in certain circumstances.
- Right to withdraw consent: where processing is based on consent, you can withdraw it at any time.
- Right to lodge a complaint: with your local data protection authority.
To exercise any of these rights, please contact us at contact@amianto.info. We will respond within 30 days.
6. Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes outlined in this Privacy Policy:
- Account data: retained while your account is active and for up to 90 days after account closure.
- Payment records: retained for 7 years to comply with tax and accounting laws.
- Usage analytics: retained in anonymised form for up to 26 months.
- Support communications: retained for up to 3 years for quality and reference purposes.
7. Cookie Policy
Amianto.info uses cookies and similar technologies to enhance your experience and analyse platform usage. We use the following types of cookies:
- Essential cookies: required for the platform to function (authentication, session management).
- Preference cookies: remember your language and display settings.
- Analytics cookies: help us understand how users interact with our platform (anonymised).
You can manage your cookie preferences through your browser settings. Disabling essential cookies may affect platform functionality.
8. Data Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These measures include encryption in transit (HTTPS/TLS), secure password hashing, regular security audits, and access controls.
Despite our efforts, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security but we continuously work to improve our protective measures.
9. International Data Transfers
Some of our processors may transfer or store data outside the European Economic Area (EEA). When this happens, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission.
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or platform features. We will notify registered users of material changes via email and display a notice on our platform.
11. Contact Us
If you have any questions about this Privacy Policy, our data practices, or wish to exercise your rights, please contact our Data Protection Officer at: