Privacy Policy

Last updated: 08 Feb 2026 Responsible: Sinapsys

This document describes how we collect, use, and protect personal data in the context of the website and business contacts. Adjust the content below to your real case (entities, purposes, retention periods, and DPO).

1. Data controller

Sinapsys — (address/tax ID). Contact: start@sinapsys.pt.

2. Data collected

  • Contact data submitted voluntarily (name, email, phone, message).
  • Technical browsing data (e.g., IP, user agent, analytics events), when applicable.

3. Purposes and legal basis

  • Responding to contact requests and pre-contractual communications (legitimate interest / pre-contractual steps).
  • Website improvement and metrics (consent when required, or legitimate interest with minimization).
  • Compliance with legal obligations (when applicable).

4. Retention

Data is retained only for the period necessary for the stated purposes and/or legal obligations. Define specific periods (e.g., 12 months for leads without a contractual relationship).

5. Processors and transfers

When we use providers (hosting, email, analytics), they act as processors with appropriate technical and organizational measures. If there are transfers outside the EEA, indicate the mechanism (e.g., SCC).

6. Data subject rights

  • Access, rectification, erasure, restriction, and objection.
  • Portability (when applicable).
  • Withdraw consent (when processing relies on consent).
  • Complaint to the CNPD.

7. Security

We apply technical and organizational controls appropriate to the risk (e.g., access control, backups, hardening, encryption in transit).

8. Changes to this policy

We may update this document to reflect legal or operational changes. The update date is shown at the top.