Privacy Policy

  1. Introduction

We are highly committed to personal privacy, which is why the protection of personal data is important to us.

We process data in accordance with the provisions of EU Regulation 2016/679 General Data Protection Regulation (GDPR), Organic Law 3/2018 on the Protection of Personal Data and Guarantee of Digital Rights, and other applicable regulations.

This Privacy Policy has been reviewed in May 2025 to comply with the information and transparency obligations of this website and the general obligations of the data controller, aiming to provide clear information to any interested party—not just website users—regarding the controller’s general data protection practices. There may be changes until the next review.

  1. Who is responsible for processing your data?

    • Name: Fundación para la Dinamización y la Cultura Lidó Rico

    • Tax ID (NIF/CIF): G10999092

    • Address: C/ Artes y Oficios, nave A-6 y A-7, Pol. Ind. Oeste, 30820 Alcantarilla (Murcia)

    • Email: info@fundaclidorico.com

 
  1. What is the origin and type of data we process?

    The origin of the data we process may fall into one of the following categories:

    • Paper, electronic, or digital forms

    • Communication and messaging systems: email and messaging apps, phone, etc.

    • Other lawful sources of information

    Depending on the type of data subject (user, client, supplier, employee, etc.) and the nature of the controller’s activities, we may process the following data categories:

    • Identification data: name, surname, ID number

    • Identification codes or credentials: e.g., username

    • Contact information: postal/email addresses, phone number, social media profiles

    • Personal and professional data: age, date of birth, degrees, professional experience, CV

    • Financial and insurance data: bank account, credit card, etc.

    • Payroll and employment-related data: job title, payslip, etc.

    • Transactional data: goods and services provided or received

    • Special category data: health, union membership, racial or ethnic origin

    • Other data relevant to our activities, services, or mission

 

Mandatory or Optional Nature of the Information Provided

By ticking the corresponding boxes and entering data in the required fields (e.g., marked with an asterisk), the data subject freely, expressly, and unequivocally agrees that their data are necessary for processing their request. Providing data in the remaining fields is voluntary.

 

The data subject guarantees that the personal data provided are truthful and agrees to notify any changes. The mandatory fields are essential for optimal service; if not provided, we cannot ensure that services will fully meet your needs.

 

  1. What is the purpose of processing your personal data?

    In general, data is processed to carry out the normal operations and management tasks of the controller. Specific purposes vary by category of data subject:

    • Clients and prospects: manage and maintain commercial, pre-contractual, and contractual relations; internal administration; economic management; marketing and customer service

    • Partners, creditors, and suppliers: manage commercial relationships, internal administration, and finances

    • Employees: manage and maintain employment relationships, HR management, training, risk prevention, working hours, and legal obligations

    • Job applicants: manage CVs, job openings, and selection processes

    • Website and social media users: manage communications and provide user support

    Other general purposes may include:

    • Commercial profiling to personalize offers and communications (no automated decisions)

    • Video surveillance for the safety of people and property, and workplace control

    • Debt control for overdue and payable debts, including communication with credit agencies or debt recovery services

    • Communications via contact information provided (email, messaging, etc.) for internal and external communications, which may be informative, organizational, or promotional

    • Other legitimate purposes related to the controller’s activities

  1. How long will we retain your data?

    Data will generally be retained:

    • As long as there is a relationship with the data subject

    • Until deletion is requested

    • While legal obligations or responsibilities exist

    Data of job applicants not of interest will be deleted immediately. Retention periods are managed in accordance with a data protection plan. Deletion will always be carried out in a manner that ensures confidentiality.

  1. What legitimizes the processing of your data?

    Processing is based on the following legal grounds:

    • Informed consent of the data subject

    • Pre-contractual or contractual commitments

    • Legitimate interest of the controller

    • Applicable legal obligations

    • Other legally established grounds

  1. To whom will your data be disclosed?

    Data will not be disclosed to third parties by default, except:

    • Authorized service providers or processors

    • Competent public authorities in the performance of their duties

    • Other lawful third parties and interested parties

  2. What are your rights when you provide or we process your data?

    You may exercise the following rights at any time:

    • Access your personal data and obtain information on how it is being processed

    • Rectify or erase personal data when it is inaccurate or no longer necessary

    • Restrict processing under certain conditions, retaining data only for legal claims or protection of others’ rights

    • Data portability—receive data you’ve provided in a structured format

    • Object to processing under certain conditions due to your personal situation

    • Withdraw consent, which may terminate any existing contractual relationship, without affecting prior lawful processing

    To exercise these rights, contact us via the email or postal address listed above. You may also contact our Data Protection Officer or the Spanish Data Protection Agency for more information or to lodge a complaint.

  1. Data Security

    We implement the necessary technical and organizational measures in our information systems to ensure an appropriate level of confidentiality, integrity, availability, and resilience of the data, protecting the rights and freedoms of data subjects.

    We comply with GDPR principles to ensure lawful, fair, and transparent processing, and we process only data that is adequate, relevant, and limited to what is necessary.

    However, to the extent permitted by law, we accept no liability for damage caused by third-party alterations to our systems. Any security breach will be promptly reported to the relevant authorities and/or law enforcement.

  2. Sending of Communications or Information

    Our policy regarding electronic communications (email, instant messaging, etc.) is to send only content that we believe may be of interest to our users and stakeholders in relation to the company’s activities, or that you have expressly consented to receive