Unión Comercial, S.L. is committed to processing personal data in accordance with Regulation (EU) 2016/679, the General Data Protection Regulation, and current Spanish data protection legislation. The AEPD reminds that the privacy policy must clearly inform about the data controller, purposes, legitimacy, recipients, and the rights of individuals. (Spanish Data Protection Agency)
1. Data Controller
Controller: Unión Comercial, S.L.
Tax ID (NIF): B91608281
Address: Ctra. Cantalachina, Naves 52 – 54, Pol. Ind. Santa Lucía, 41720 Los Palacios y Villafranca, Seville, Spain
Email: info@unioncomercial.es
Phone: +34 95 581 94 44
2. Purpose of Processing
Personal data provided through the website may be processed for the following purposes:
- Managing inquiries, requests for information, or communications sent by the user.
- Attending to requests related to products, services, or the company’s commercial activity.
- Managing the commercial or pre-contractual relationship with clients and potential clients.
- Sending commercial communications by electronic means, only when there is express consent or a valid legal basis.
- Managing website security and preventing misuse.
3. Categories of Data
The data that may be processed are, as the case may be:
- Identification data: name, surname, company.
- Contact data: phone number, email, address.
- Data derived from the inquiry or request made by the user.
- Technical browsing data, where applicable, in accordance with the Cookies Policy.
4. Legitimacy
The legal bases that legitimize the processing are:
- The consent of the interested party when submitting forms or accepting non-technical cookies.
- The execution of pre-contractual or contractual measures when the inquiry is related to products or services.
- Compliance with legal obligations applicable to the controller.
- The legitimate interest of the controller to guarantee website security and properly manage their professional activity, provided that the rights of the interested party do not prevail.
5. Data Retention
Personal data will be kept for the time necessary to fulfill the purpose for which they were collected and, subsequently, for the periods legally required to address possible liabilities.
Data used for commercial communications will be kept as long as their deletion is not requested or consent is not withdrawn.
6. Recipients
In general, data will not be transferred to third parties unless there is a legal obligation.
However, providers who perform services for Unión Comercial, S.L. as data processors may have access to the data—for example, web hosting, email, technical maintenance, analytics, or support services—with whom the corresponding contracts have been signed in accordance with current regulations.
If international data transfers occur due to the use of certain technology providers, they will be carried out with the guarantees required by applicable regulations.
7. Rights of Interested Parties
The interested party may exercise the following rights:
- Access to their personal data.
- Rectification of inaccurate data.
- Erasure when the data are no longer necessary.
- Objection to processing in certain circumstances.
- Restriction of processing.
- Data portability, where applicable.
- Withdrawal of consent at any time, without affecting the lawfulness of processing based on consent before its withdrawal.
To exercise these rights, you may send a request to info@unioncomercial.es, clearly indicating the right you wish to exercise and attaching, when necessary, documentation that allows for identity verification.
Furthermore, if you consider that your rights have not been adequately addressed, you may file a complaint with the Spanish Data Protection Agency. (Agencia Española de Protección de Datos)
8. Source of Data
In general, personal data are provided directly by the interested party through forms, email, telephone, or other means of contact with Unión Comercial, S.L.
9. Security
Unión Comercial, S.L. applies appropriate technical and organizational measures to protect personal data against loss, alteration, unauthorized access, or improper processing, taking into account the state of the art, the nature of the data, and the existing risks.