PageForge
Back to home

Privacy Policy

Last updated: 14 July 2026

1. Introduction and data controller

NEXOFLUX S.L. is committed to protecting your privacy. For this website (forge.nexoflux.dev), the controller of your personal data is NEXOFLUX S.L., registered in Madrid, Spain, VAT number B26866483, contact address [email protected]. This policy complies with the General Data Protection Regulation (GDPR, EU 2016/679) and the Spanish LOPDGDD.

2. Purposes and data collected

When you contact us through the form on this site we collect your name, email address, selected plan and message, in order to answer your enquiry, send you a quote and deliver the landing page service you purchase. If you become a customer we also process the billing data required to issue invoices. We do not use your data for automated decision-making or profiling.

3. Legal basis

Processing is based on the consent you give when submitting the form, on the performance of the service contract entered into with you, and on compliance with legal obligations (accounting and tax).

4. Retention

Enquiry data is kept for up to 12 months after your request has been handled. Customer data is kept for the duration of the business relationship and thereafter for the periods required by tax and accounting law (generally 6 years).

5. Recipients

We do not sell or transfer your data to third parties except where legally required. To provide the service, data may be processed by the providers we rely on (hosting and CDN providers, email delivery providers), all of whom are bound by data processing agreements.

6. Your rights

You have the right to access, rectify, erase, object to, restrict the processing of, and request the portability of your data by writing to [email protected]. If you believe your personal data has been processed in breach of Regulation (EU) 2016/679, you also have the right to lodge a complaint with the Spanish Data Protection Agency (www.aepd.es) or your local supervisory authority.

7. Data security

In line with article 32 GDPR we apply appropriate technical and organisational measures — HTTPS everywhere, access controls and request rate limiting — to protect your personal data against unauthorised access, alteration, disclosure or destruction.

8. International transfers

We do not transfer data outside the European Economic Area. This website and the customer pages we host run on servers located inside the EU.

9. Breach notification

In the event of a personal data breach affecting your data, we will notify the supervisory authority without undue delay in accordance with article 33 GDPR, and we will notify you directly where the breach is likely to result in a high risk to you. The notification will cover the nature of the breach, the categories of data affected and the measures taken.

10. Data Protection Officer

Because our processing is neither large-scale nor concerned with special categories of data, we are not required under article 37 GDPR to appoint a Data Protection Officer. You can nevertheless exercise all of your rights by contacting [email protected].