Privacy Policy

Last updated: September 29, 2025

1. Introduction

Welcome to Online Maps to GPX ("we," "our," or "us"). We are committed to protecting your privacy and complying with the General Data Protection Regulation (GDPR) and other applicable privacy laws. This Privacy Policy explains how we collect, use, process, and protect your personal data when you use our service.

2. Data Controller

The data controller responsible for your personal data is:
Quico Domingo
quicodomingoserra@gmail.com

3. Data We Collect

3.1 Information You Provide

  • Google Maps URLs: We temporarily process the map URLs you submit to extract route data
  • Donation Information: If you choose to donate via PayPal, PayPal processes your payment information (we do not store payment details)

3.2 Information Automatically Collected

  • Technical Data: IP address, browser type, device information, and operating system
  • Usage Data: Pages visited, time spent on the service, and interaction patterns
  • Error Logs: Technical errors and performance metrics for service improvement

4. How We Use Your Data

4.1 Legal Basis for Processing

We process your personal data based on:

  • Legitimate Interest (Article 6(1)(f) GDPR): Providing our map conversion service, improving user experience, and maintaining security
  • Consent (Article 6(1)(a) GDPR): For optional cookies and analytics (where applicable)
  • Legal Obligation (Article 6(1)(c) GDPR): Complying with applicable laws and regulations

5. Data Retention

  • Route Data: Deleted immediately after GPX file generation (not stored)
  • Session Data: Deleted when browser session ends
  • Log Data: Retained for up to 30 days for security and performance monitoring
  • User Preferences: Stored locally in your browser until you clear them

6. Your Rights Under GDPR

As a data subject, you have the following rights:

  • Right of Access (Article 15): Request information about your personal data
  • Right to Rectification (Article 16): Correct inaccurate personal data
  • Right to Erasure (Article 17): Request deletion of your personal data
  • Right to Restrict Processing (Article 18): Limit how we process your data
  • Right to Data Portability (Article 20): Receive your data in a structured format
  • Right to Object (Article 21): Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent for consent-based processing

7. Data Security

We implement appropriate technical and organizational measures to protect your personal data:

  • HTTPS encryption for all data transmission
  • Regular security updates and monitoring
  • Access controls and authentication mechanisms
  • Data minimization principles
  • Regular security assessments

8. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us:

Email: [Your contact email]

Address: [Your business address]

Data Protection Officer: [If applicable]

Important Note

This privacy policy template should be customized with your specific business details, contact information, and legal requirements. Consider consulting with a privacy lawyer to ensure full GDPR compliance.