Privacy Policy for NorteActivo

1. Introduction

At NorteActivo, accessible via norteactivo.com, we are firmly committed to protecting your privacy and safeguarding your personal data. This Privacy Policy outlines how we collect, use, store, and disclose your personal information, and ensures compliance with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable data protection laws. Our practices are guided by a privacy-first approach, reinforcing your right to transparency, security, and control over your personal data.

2. Scope of this Policy and Data Controller

This Privacy Policy applies to all users and visitors of norteactivo.com and any services provided or facilitated through this site. NorteActivo acts as the “data controller” as defined under the GDPR, responsible for determining the purposes and means of processing your personal data. If you reside in California or other U.S. jurisdictions where applicable, we also act as the “business” as that term is defined under the CCPA.

For any privacy-related inquiries, you may contact us at [email protected].

3. Categories of Personal Data We Process

We may process the following categories of personal data when you use our website or interact with our services:

a. Usage Data

Includes information such as your IP address, browser type and version, operating system, referring URLs, pages visited, time and date of visits, browser language, interaction patterns, and referring or exit pages collected through logs and analytics tools.

b. Account Data

Includes identifying data such as your name, email address, mailing address, telephone number, login credentials, and other required registration details when you create an account.

c. Profile Data

Includes information relating to your preferences, interests, product use history, purchase behavior, feedback, and survey responses to personalize your experience at norteactivo.com.

d. Communication Data

Includes correspondence, support requests, emails, chat interactions, and other communications received from or sent to you in relation to our services.

e. Technical Data

Includes details about the device(s) you use to access our site, such as device model, hardware information, operating system, network data, technical configuration, language settings, and time zone.

f. Transaction Data

Includes information related to purchases, payment methods used, billing and shipping addresses, order history, and transaction timestamps for services or products acquired through norteactivo.com.

g. Preference Data

Includes your consent records for receiving newsletters, promotional content, selected communication preferences, and expressed interests in products or services.

4. Legal Bases for Data Processing

We rely on the following legal bases under the GDPR to lawfully process your personal data:

– Consent: Where you have given explicit consent for a specific purpose (e.g., newsletter subscription, marketing activities).
– Contractual Necessity: Where processing is necessary to fulfill a contract or pre-contractual requests made by you (e.g., account creation, order processing).
– Legitimate Interests: Where our interests (e.g., improving services, website functionality, fraud prevention) are not overridden by your data protection rights.
– Legal Obligation: Where processing is necessary to comply with applicable legal and regulatory obligations.

We ensure CCPA compliance by providing notice, offering opt-out rights for the sale of personal data (which we do not currently engage in), and honoring consumer privacy-related requests.

5. Your Rights

You have the following rights under applicable data protection laws:

– Right of Access: You may request a copy of the personal data we hold about you.
– Right to Rectification: You may request correction of inaccurate or incomplete data.
– Right to Erasure (“Right to be Forgotten”): You may request deletion of your data, subject to applicable legal exceptions or obligations.
– Right to Restriction: You may request that we restrict processing where contesting accuracy or when processing is unlawful.
– Right to Data Portability: You may request a structured, commonly-used, machine-readable copy of your data.
– Right to Object: You may object to processing based on our legitimate interests or for direct marketing.
– CCPA-specific: California residents may also request to know specific categories and sources of personal data, purposes for its use, and third parties it is shared with.

To exercise these rights, please contact us at [email protected] with the subject line “Data Rights Request”.

6. Security Measures

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

– SSL/TLS encryption to protect data in transit.
– Authentication and access control policies limiting internal access to personal data.
– Regular backups and system redundancy to preserve data integrity.
– Security audits and vulnerability assessments.
– Staff training in data protection and awareness.

While we strive for comprehensive protection, no method of transmission over the internet or electronic storage is completely secure. We encourage you to take personal precautions to protect your own data.

7. International Data Transfers

We may transfer your personal data outside of your home jurisdiction, including to countries that may not offer the same level of legal protection. In such cases, we rely on appropriate safeguards, including the European Commission’s Standard Contractual Clauses (SCCs), adequacy decisions, or other lawful transfer mechanisms to ensure protection.

Access to data from outside the European Economic Area (EEA) is limited and subject to contractual and technical safeguarding requirements in compliance with GDPR and related regulations.

8. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including:

– Usage and Technical Data: Retained for up to 12 months for analytics and security.
– Account and Profile Data: Retained as long as your account is active or as required by legal obligations.
– Transaction Data: Retained for a minimum of seven years for transaction, tax, and accounting compliance.
– Communication Data: Retained for as long as necessary to respond to your inquiries or to comply with recordkeeping practices.

After the applicable retention period, your data will be deleted or anonymized.

9. Cookie Policy

We use cookies and similar technologies on norteactivo.com to improve functionality, enhance user experience, and collect analytical data. Categories of cookies used include:

– Essential Cookies: Necessary for website functionality such as authentication and account management.
– Functional Cookies: Enable site customization and language preferences.
– Analytics Cookies: Collect anonymous data on usage patterns to improve site performance.
– Performance Cookies: Help us understand and enhance navigation and interactions.

Cookies may be set directly by us (“first-party cookies”) or by third parties (“third-party cookies”).

10. Cookie Management and Compliance

Upon your first visit to norteactivo.com, you will be presented with a cookie consent banner enabling you to manage your cookie preferences according to GDPR and CCPA requirements. You can change your preferences or withdraw consent at any time through the Cookie Settings section of our site or by modifying your browser settings.

Opt-out options for analytics and targeted advertising cookies are furnished according to regulatory obligations.

11. Protection of Children’s Data

Our services are not intended for individuals under the age of 13. We do not knowingly collect or solicit personal data from children. Should we become aware that data of a child under 13 has been collected without verified parental consent, it will be promptly deleted. If you believe we have received such data, please contact us at [email protected].

12. Changes to this Privacy Policy

We reserve the right to revise or update this Privacy Policy to reflect changes in our practices, technologies, legal obligations, or for other operational reasons. We encourage users to regularly review this page. Material changes to the Policy will be communicated via prominent site notifications or direct contact, where required by law.

13. Contact Us

If you have any questions, requests, or concerns regarding this Privacy Policy or the handling of your personal data, you may contact us at:

Email: [email protected]
Website: https://norteactivo.com

We take privacy seriously and are committed to ensuring your rights are respected and protected in accordance with the highest standards of legal compliance and ethical conduct.


This Privacy Policy reflects our dedication to meeting GDPR, CCPA, and broader international data protection standards. For further assistance on privacy concerns or data inquiries, we welcome you to reach out to our team via [email protected].