Personal website · version 21 July 2026
Privacy policy.
How this personal, non-commercial website handles reader data.
Updated: 21 July 2026
These texts cover a personal, non-commercial website. They must be reviewed if advertising, paid services, new providers or materially different processing are introduced.
Controller and contact
Pedro Tellería is the controller, established in Spain. Privacy enquiries and data-rights requests may be sent to contacto@pedrotelleria.com or through the contact form: contact form.
Scope
The website publishes personal ideas and analysis without advertising, sales or commercial profiling. The community functions are optional and separate from reading the site.
Data and purposes
Accounts use a name or pseudonym, encrypted email, optional encrypted phone number, protected password hash and sign-in records. Anonymous comments use only their text and an optional pseudonym: they request no email and store no IP or browser fingerprint with the comment. Notifications use an encrypted destination, channel, language, thematic or series preferences, confirmation and withdrawal records. The contact form collects a name, email address, subject and message solely to answer the enquiry.
Legal bases
Account management and comment handling are necessary to provide the service requested by the reader. Contact-form data are processed to handle the enquiry received. Security and moderation rely on the legitimate interest in protecting the site and third parties. Email or WhatsApp notifications rely on explicit consent and are never activated merely by registration.
Public anonymity
An anonymous comment requires neither an account nor an email address and is not stored with an IP address or browser fingerprint. For immediate abuse prevention only, an hourly rotating pseudonymous key may be kept in a separate rate-limit table for no more than two hours; it is not attached to the comment.
Recipients and international transfers
In production, Hostinger International Ltd. provides hosting as a processor. A data centre in the European Economic Area will be prioritised. Email or WhatsApp providers will receive data only when that channel is actually configured and disclosed; any transfer outside the EEA must use an adequacy decision or the required contractual safeguards. Data are not sold.
Retention
Unconfirmed requests are deleted after a short verification period. Active accounts and subscriptions remain until closure or withdrawal. Community records are reviewed under a maximum reference period of 730 days; private contact attached to comments is removed sooner when no longer needed. Contact messages are kept for the time needed to reply and manage follow-up, with an ordinary maximum reference period of 90 days unless there is a legitimate reason to keep them longer. Security records are kept only for the period needed to prevent or investigate abuse. Legal claims may justify limited additional retention.
Rights
Readers may request access, correction, deletion, restriction, objection and portability where applicable, and may withdraw consent at any time. Requests can be sent to contacto@pedrotelleria.com or made through contact form. Identity may be verified proportionately. A complaint may also be filed with the Spanish Data Protection Agency (AEPD).
Minors
Community accounts, comments and notifications are intended for people aged 16 or over. A younger person must use them only with the authorisation of a parent or guardian. Reading remains open unless a specific publication states otherwise.
Security and changes
Community records are physically separated from the editorial database. Email addresses and phone numbers are encrypted at rest with an external key; passwords remain strong one-way hashes. Persistent sign-in uses a replaceable token rather than the password. Forms use anti-forgery controls and short-lived rate limits. This policy will be updated when providers, purposes or the commercial status of the site change.