Privacy Policy
Last updated: 4 October 2026
This policy explains what personal data Homo Faber Consulting S.L. ("we", "us") processes when you visit homofaberconsulting.com, contact us, or work with us, and what rights you have. We handle personal data in line with the EU General Data Protection Regulation (GDPR).
1. Who is responsible
Homo Faber Consulting S.L. (C.I.F. B72900384, c/ Melchor Fernández Álmagro, 19, 28029 Madrid, Spain) is the controller for the data described in sections 2 to 4. For any question about this policy, write to info@homofaberconsulting.com.
2. What this website collects
The website is a set of static pages. It has no forms, accounts, cookies, analytics, advertising or embedded third-party content, and your browser makes no requests to other companies when you load it.
Like any web server, ours keeps an access log of each request: IP address, date and time, the page requested, the response code, and your browser's user agent. We use it only to keep the site secure and working, on the basis of our legitimate interest (Art. 6(1)(f) GDPR). Logs are rotated daily and deleted after 30 days (so no entry is older than 31 days), and are not combined with other data.
3. When you contact us
If you write to us, we process your name, email address and whatever you tell us, in order to answer you and, if relevant, prepare a proposal or contract (Art. 6(1)(b) and (f) GDPR). We keep the correspondence for as long as the conversation or business relationship lasts, and afterwards only as long as the law requires or to defend legal claims. We do not sell your data or use it for marketing without your consent.
4. Business contacts and clients
For clients and prospects we hold business contact details and contract and invoicing records. We keep accounting records for the period required by law (Art. 6(1)(c) GDPR).
5. Personal data we process for clients
When our consulting work involves a client's personal data, the client decides why and how it is used and we act as its processor. We process it only on the client's documented instructions, under a data processing agreement (Art. 28 GDPR), with confidentiality and appropriate security measures. We return or delete it at the end of the engagement. Questions about that data should go to the client first.
6. Who receives data
- Hosting: Hetzner Online GmbH (Germany) hosts this website and its logs.
- Email and documents: Google Workspace (Google Ireland Limited) processes our email. Transfers outside the EEA rely on the safeguards Google offers, such as the EU-US Data Privacy Framework and standard contractual clauses.
- Authorities and advisers: only where the law requires it, or to our accountants and legal advisers under confidentiality.
7. Security
We use encrypted connections (HTTPS), access controls and regular updates. No system is perfectly secure; if a breach affects your data, we will notify you and the authorities as the law requires.
8. Your rights
You can ask us for access to your data, correction, deletion, restriction, portability, and you can object to processing based on our legitimate interest. Where we rely on consent, you can withdraw it at any time. Write to info@homofaberconsulting.com; we answer within one month. You also have the right to complain to your data protection authority, for example the Spanish AEPD (aepd.es) or the authority in your country of residence.
9. Changes
We may update this policy. The date at the top shows the latest version.