Privacy Policy

1. Identification

  • Data Controller: Pescaviar, S.L.
  • NIF (Tax Identification Number): B-30566988
  • Address: Calle Venus, 8
  • City: Pozuelo de Alarcón
  • Postal Code: 28224
  • Province: Madrid
  • Country: SPAIN
  • Email: ydelvalle@pescaviar.com
  • Phone: 91 799 10 05

2. Information and Consent

By accepting this Privacy Policy, the user is informed and gives their free and specific consent for the personal data provided through our websites moving forward, the “Website”, and those that may be provided by other means or in the future, to be processed by Pescaviar, S.L., hereinafter referred to in this document as the CONTROLLER.

3. Obligation to Provide Data

The data requested in the Website forms are mandatory. If they are not provided or not provided correctly, the user's request cannot be addressed.

The user may freely view the content of the Website if they accept the use of cookies; if not, they will be invited to leave the website.

4. For what purpose will the controller process the user's personal data? – What is the legitimacy of the data processing?

The personal data provided through the Website will be processed by the CONTROLLER in accordance with the following purposes:

A) For contractual compliance purposes.

  • To comply with the agreements regarding the supply of products you contract with us and to be able to carry them out according to the conditions set forth in each case.
  • For the establishment of employment agreements and contracts.
  • Legitimization basis GDPR article 6.1b: processing is necessary for the performance of a contract to which the data subject is party or in order to take steps at the request of the data subject prior to entering into a contract.

B) For purposes of commercial communication and information based on your consent.

  • In order to communicate commercial promotions, product information and news, and invite you to events and activities, we explicitly request your consent, which can be easily revoked at any time you deem appropriate.
  • Legitimization basis GDPR article 6.1a: the data subject has given consent to the processing of their personal data for one or more specific purposes.

C) Data provided for sending the Newsletter.

  • To manage the subscription and/or unsubscription of the Newsletter, carried out through the channel provided on the CONTROLLER's Website.
  • Legitimization basis GDPR article 6.1a: the data subject has given consent to the processing of their personal data for one or more specific purposes.

D) Data provided in contact forms.

  • To manage user contact and information requests through the channels provided for this purpose on the CONTROLLER's website, in order to answer the request raised.
  • Legitimization basis GDPR article 6.1f: processing is necessary for the purposes of the legitimate interests pursued by the controller or by a third party, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subject which require protection of personal data, in particular where the data subject is a child.

E) Browsing data provided.

  • To carry out analysis on the use of the Website and to check user preferences and behavior.
  • Legitimization basis GDPR article 6.1f: processing is necessary for the purposes of the legitimate interests pursued by the controller or by a third party, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subject which require protection of personal data, in particular where the data subject is a child.

5. What user data will the controller process?

The CONTROLLER will process the following categories of personal data depending on the request or petition made by the user:

  • Personal characteristics
  • Social circumstances
  • Academic and professional details
  • Employment details
  • Commercial information
  • Economic, financial, and insurance data
  • Transactions of goods and services
  • Browsing data
  • User and/or account holder identification codes or keys.

6. With which recipients will the user's data be shared?

The user's data, depending on the relationship established and always with their authorization, could be communicated to:

  • Organizations or individuals directly related to the controller.
  • Social security agencies.
  • Tax administration.
  • Notaries and solicitors.
  • Entities dedicated to the fulfillment or non-fulfillment of monetary obligations.
  • Banks, savings banks, and rural credit cooperatives.
  • Insurance entities.
  • Other financial entities.
  • Health entities.

7. International Data Transfers

We inform you that your data could be transferred, always with your prior authorization, to:

  • Organizations or individuals directly related to the controller.
  • Service providers.

8. Data Retention

A) For contractual compliance purposes.
The data will be kept for the duration of the contract and, once terminated, during the limitation period for any legal actions that may arise from it.

B) For purposes of commercial communication and information based on your consent.
The data will be kept as long as the user does not revoke the consent granted.

C) Data provided for sending the Newsletter.
The data will be kept as long as the user does not revoke the consent granted.

D) Data provided in contact forms.
The data will be kept as long as the user does not revoke the consent granted, for the duration of the requested service and, once terminated, during the limitation period for any legal actions that may arise from it.

E) Browsing data provided.
The data will be kept as long as the user does not revoke the consent granted.

9. Payment Gateway

Users making purchases through the CONTROLLER's WEBSITE are informed that the payment gateway is contracted with SHOPIFY PAYMENTS.

10. User Responsibility

The user guarantees that they are of legal age and that the data provided to the CONTROLLER are true and up-to-date. The user will keep the provided information appropriately updated.

The user guarantees that they have informed any third parties whose data they provide, if applicable, of the aspects contained in this document, guaranteeing in turn that they have obtained their authorization to provide their data to the CONTROLLER.

The user will be responsible for any false or inaccurate information provided through the Website and for any direct or indirect damages this may cause to the CONTROLLER or third parties.

11. Email

The email and any attached documents are directed exclusively to the named recipient.
They may contain confidential information which, in addition, may be protected by the duty of professional secrecy. Unless you are the named recipient (or a person authorized by said recipient), you are not authorized to copy or use this message or its attached documents, nor disclose its content to third parties.
If you receive this email by mistake, please notify the sender immediately and delete the email.

12. Exercise of Rights

The user may send a written request to the CONTROLLER, to the postal or electronic address indicated in the header of this Policy, attaching a photocopy of their identity document or equivalent document, at any time and free of charge, to:

  • Revoke the granted consents.
  • Obtain confirmation as to whether the CONTROLLER is processing personal data concerning them.
  • Access their personal data.
  • Rectify inaccurate or incomplete data.
  • Request the deletion of their data when, among other reasons, the data is no longer necessary for the purposes for which it was collected.
  • Obtain from the CONTROLLER the restriction of data processing when any of the conditions provided in the current data protection regulations are met.
  • Request the portability of the data provided in those cases foreseen in the current data protection regulations.
  • File a claim with the Spanish Data Protection Agency at the address Calle de Jorge Juan, 6, 28001 Madrid, or on the following website: https://www.aepd.es/es if they consider that the CONTROLLER is not processing their data in accordance with the law.

13. Security Measures

The CONTROLLER will process the user's data at all times in a confidential manner and maintaining the mandatory duty of secrecy regarding them, in compliance with what is advised and established in EU Regulation 2016/679 of the European Parliament and of the Council of April 27, 2016, adopting for this purpose the necessary technical and organizational measures to guarantee the security of your data and prevent its alteration, loss, unauthorized processing, or access, taking into account the state of technology, the nature of the stored data, and the risks to which they are exposed.