004 — Legal Framework
Terms &
Compliance
Privacy Policy
Data Controller: CipherixPeak, Paseo de Zorrilla, 92, Piso 4º 2ª — 47006, Valladolid, Valladolid, España. Contact: [email protected]
1. Data Collection and Processing
CipherixPeak collects and processes personal data solely for the purpose of providing web agency services, including multi-tenant SaaS architecture development, platform optimization, and related consulting services. The legal basis for processing is the performance of a contract (Article 6.1.b GDPR) and legitimate interest (Article 6.1.f GDPR).
2. Categories of Personal Data
We may collect the following categories of personal data:
- Identification data: name, surname, company name
- Contact data: email address, telephone number, postal address
- Technical data: IP address, browser type, operating system, device identifiers
- Usage data: pages visited, time spent, navigation patterns
- Project data: specifications, requirements, deliverables related to contracted services
3. Purpose of Processing
Personal data is processed for the following purposes:
- Execution of contracted web development and SaaS architecture services
- Communication regarding project status, deliverables, and support
- Compliance with legal and regulatory obligations
- Analytics and performance optimization of our services
- Sending of service-related communications (with consent where required)
4. Data Retention
Personal data is retained for the duration necessary to fulfill the purposes for which it was collected. Contract-related data is retained for a minimum of 6 years following the conclusion of the contractual relationship in compliance with Spanish commercial and tax legislation. Analytics data is retained for a maximum of 26 months.
5. Data Recipients
Personal data may be shared with the following categories of recipients:
- Hosting and cloud infrastructure providers (EU-based or with adequate safeguards)
- Payment processing services (Stripe, Inc.)
- Analytics providers (with pseudonymization where applicable)
- Public administration bodies when legally required
6. International Data Transfers
CipherixPeak does not transfer personal data outside the European Economic Area unless adequate safeguards are in place, including Standard Contractual Clauses approved by the European Commission or Binding Corporate Rules.
7. Data Subject Rights
In accordance with the GDPR, you have the following rights:
- Right of Access (Article 15): Obtain confirmation of whether your data is being processed and access to that data.
- Right to Rectification (Article 16): Request correction of inaccurate personal data.
- Right to Erasure (Article 17): Request deletion of your personal data where applicable.
- Right to Restriction (Article 18): Request restriction of processing in certain circumstances.
- Right to Data Portability (Article 20): Receive your data in a structured, machine-readable format.
- Right to Object (Article 21): Object to processing based on legitimate interests.
To exercise these rights, contact: [email protected] or write to Paseo de Zorrilla, 92, Piso 4º 2ª — 47006, Valladolid, España.
8. Right to Lodge a Complaint
If you believe your data protection rights have been infringed, you have the right to lodge a complaint with the Spanish Data Protection Agency (Agencia Española de Protección de Datos - AEPD) at www.aepd.es.
9. Security Measures
CipherixPeak implements appropriate technical and organizational measures to ensure the security of personal data, including encryption, access controls, regular security assessments, and employee training on data protection protocols.
Refund Policy
Company: CipherixPeak, Paseo de Zorrilla, 92, Piso 4º 2ª — 47006, Valladolid, Valladolid, España.
1. General Refund Terms
CipherixPeak provides custom web development and SaaS architecture services. Due to the bespoke nature of our work, refunds are evaluated on a case-by-case basis considering project milestones achieved and work completed.
2. Milestone-Based Refunds
Projects are typically divided into defined milestones with associated payments. If a project is terminated before completion, refunds may be issued for undelivered milestones, minus any administrative costs and work already performed on the current milestone.
3. Deposit Policy
Initial deposits are non-refundable and represent the allocation of resources and scheduling commitment. This deposit will be applied as credit toward the final project invoice.
4. Cancellation by Client
Clients may cancel a project at any time by providing written notice. Refunds for work performed will be calculated based on the percentage of project completion and the value of deliverables produced.
5. Cancellation by CipherixPeak
CipherixPeak reserves the right to terminate a project if the client fails to provide required materials, responses, or approvals within agreed timeframes. In such cases, all work performed to date will be invoiced and is non-refundable.
6. Subscription Services
For ongoing subscription-based services, clients may cancel at any time. The current billing period will be honored, and no pro-rata refunds will be issued for the remaining period. Cancellation takes effect at the end of the current billing cycle.
7. Requesting a Refund
To request a refund, contact [email protected] with your project reference and reason for the refund request. We will respond within 5 business days with a resolution.
Terms of Service
Company: CipherixPeak, Paseo de Zorrilla, 92, Piso 4º 2ª — 47006, Valladolid, Valladolid, España.
1. Acceptance of Terms
By accessing or using the services of CipherixPeak, you agree to be bound by these Terms of Service. If you do not agree to these terms, you must not use our services.
2. Scope of Services
CipherixPeak provides web development, multi-tenant SaaS architecture design, platform optimization, and related consulting services. The specific scope of each project is defined in the individual project agreement or statement of work.
3. Project Agreements
Each project is governed by a separate agreement that defines scope, deliverables, timelines, and pricing. These Terms of Service supplement, but do not replace, the specific project agreements.
4. Intellectual Property
Upon full payment, all intellectual property rights for custom deliverables developed specifically for the client are transferred to the client. CipherixPeak retains ownership of pre-existing frameworks, tools, and methodologies used in the development process.
5. Confidentiality
Both parties agree to maintain the confidentiality of proprietary information shared during the course of the engagement. This obligation survives the termination of the project for a period of 3 years.
6. Payment Terms
Payment terms are defined in each project agreement. Standard terms include a 50% advance payment and 50% upon delivery. Late payments may incur a 1.5% monthly interest charge. All prices are exclusive of applicable taxes unless otherwise stated.
7. Limitation of Liability
CipherixPeak's total liability shall not exceed the total amount paid by the client for the specific project giving rise to the claim. CipherixPeak shall not be liable for indirect, incidental, or consequential damages.
8. Force Majeure
Neither party shall be liable for delays or failures in performance resulting from causes beyond reasonable control, including natural disasters, government actions, pandemics, or infrastructure failures.
9. Governing Law
These Terms of Service are governed by the laws of Spain. Any disputes shall be submitted to the exclusive jurisdiction of the courts of Valladolid, España.
10. Modifications
CipherixPeak reserves the right to modify these Terms of Service at any time. Continued use of our services following any modifications constitutes acceptance of the updated terms.