Summer offers · -10% this month
← Back to home

Legal

Privacy Policy

Last updated: July 2026

1. Data controller

In compliance with Regulation (EU) 2016/679 (GDPR) and Spanish Organic Law 3/2018 on Personal Data Protection (LOPDGDD), we inform you that the data you provide will be processed by:

  • Owner: Guillermo Daniel Calvo Altesor
  • Tax ID (NIF): 45853654A
  • Address: Paseo de Berlín, Local 2, Los Cristianos, 38650, Santa Cruz de Tenerife
  • Phone: +34 614 105 057
  • Email: info@seasidecoworking.com
  • Website: seasidecoworking.com

2. Data we collect

We only collect the data you voluntarily provide to us:

  • Email address — if you voluntarily tick the "I want to receive offers and news" checkbox when booking or when writing to us through the contact form.
  • ID document (DNI or passport) — requested before first access to the space, for security reasons.
  • Name, email and phone number — when you book a space through our booking wizard, to manage your booking and send you the confirmation with access instructions.

Your payment card details are handled directly by Stripe, our payment gateway — we never receive or store them on seasidecoworking.com's servers. The site does not use Google Analytics or advertising pixels.

3. Purpose and legal basis

We process your data to:

  • Send you offers and news about Seaside Coworking by email — only if you've voluntarily ticked the corresponding checkbox. Every email includes a one-click unsubscribe link; you can opt out anytime without affecting any booking you've already made. Legal basis: your express consent (Art. 6.1.a GDPR).
  • Necessary communications about your booking — confirmation, access instructions and operational notices about a service you've already contracted. These don't require the marketing checkbox. Legal basis: contract performance (Art. 6.1.b GDPR) and Spanish Law 34/2002 (LSSI).
  • Identity verification — to ensure the security of the space before first access. Legal basis: legitimate interest and contractual performance (Art. 6.1.b and 6.1.f GDPR).

4. Data retention

We will keep your email for as long as you remain interested in our services — that is, until you request to unsubscribe or 24 months pass without activity following the opening of the space.

Identity data (ID document) will be kept for the duration of the contractual relationship and the period legally required to meet tax or security obligations.

5. Recipients

Your data is not shared with third parties for their own commercial purposes. To send you communications we use the following services:

  • Resend (resend.com) — email delivery platform. Data stored in the EU.
  • Supabase (supabase.com) — secure database. Data stored in the EU.
  • Vercel (vercel.com) — web hosting. Traffic data in the EU.
  • Stripe — card payment gateway. Financial data handled under its own privacy policy and PCI-DSS security standards. Payment by bank transfer is also accepted.
  • Google Maps (google.com) — interactive map of our location, embedded on the home page only if you accept the relevant cookies in our cookie notice.
  • Abona chat AI provider — if you use our chat assistant, the content of your messages is sent to whichever AI provider we have connected at the time (Anthropic, OpenAI, Google or Groq, depending on configuration) solely to generate the reply. It is not used to train their models or shared for commercial purposes.

All providers comply with the GDPR and have adequate international transfer mechanisms in place where applicable.

6. Your rights

You have the right to:

  • Access — find out what data we hold about you.
  • Rectification — correct inaccurate data.
  • Erasure — request that we delete your data ("right to be forgotten").
  • Objection and restriction — object to certain processing or restrict it.
  • Portability — receive your data in a structured format.
  • Withdraw consent at any time, with no retroactive effect.

To exercise any of these rights, write to us at info@seasidecoworking.com stating your request and attaching a copy of your ID document.

If you believe the processing does not comply with the GDPR, you can file a complaint with the Spanish Data Protection Agency (AEPD) at www.aepd.es.

7. Security

We apply appropriate technical and organisational measures to protect your data against unauthorised access, loss or accidental destruction: encryption in transit (HTTPS/TLS), role-based access control, and databases with Row-Level Security.

8. Changes to this policy

We may update this policy to adapt it to legal changes or changes to our services. We will publish the last-updated date at the top of the document. If any changes significantly affect your rights, we will notify you by email.

Need a hand?