Legal
Privacy Policy
At NewStella, your privacy is fundamental. This policy explains how we collect, use and protect your personal information with full transparency.
1. Information We Collect
At NewStella we collect the following information when you use our website:
- Contact Information: Name, email, phone and company when you fill out our contact forms.
- Browsing Information: IP address, browser type, pages visited, time spent and referral source.
- Cookies and Similar Technologies: We use cookies for analytics (Google Analytics) and conversion tracking (Google Ads).
- Communications: Records of interactions by email and WhatsApp.
2. How We Use Your Information
We use the collected information to:
- Respond to your inquiries and service requests
- Schedule and conduct "Immersion and Diagnosis" meetings
- Send information about our services and valuable resources
- Improve our website and user experience through behavior analysis
- Measure the effectiveness of our digital marketing campaigns
- Comply with legal obligations and prevent fraud
5. Your Rights (GDPR and LFPDPPP)
We comply with the EU General Data Protection Regulation (GDPR) and Mexico's Federal Law on Protection of Personal Data Held by Private Parties (LFPDPPP). You have the right to:
- Access: Request a copy of the personal data we hold about you.
- Rectification: Correct incorrect or outdated data.
- Erasure: Request deletion of your personal data ("right to be forgotten").
- Objection: Object to the processing of your data for certain purposes.
- Portability: Receive your data in a structured, readable format.
- Withdraw Consent: Withdraw your consent at any time without affecting the lawfulness of prior processing.
To exercise any of these rights, contact us at [email protected] with the subject "ARCO Request". We will respond to your request within 20 business days.
6. Security of Your Data
We implement appropriate technical and organizational measures to protect your personal information:
- SSL/TLS encryption for all data transmissions
- Secure storage on DDoS-protected servers
- Restricted access to authorized personnel only
- Continuous security and performance monitoring
- Regular backups of critical data
Despite our efforts, no method of internet transmission or electronic storage is 100% secure. We do our best to protect your information, but cannot guarantee its absolute security.
7. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes described in this policy:
- Contact Information: Up to 3 years after the last interaction, unless you request deletion earlier.
- Analytics Data: 26 months (Google Analytics) or as configured by the service.
- Server Logs: 90 days for security and diagnostic purposes.
- Email Communications: Until you withdraw consent or request deletion.
8. International Transfers
Some of our service providers are located outside Mexico and the European Union, primarily in the United States. We ensure all international transfers comply with:
- Standard Contractual Clauses approved by the European Commission
- Privacy Shield Framework where applicable
- Adequate safeguards for the protection of your personal data
9. Children's Privacy
Our services are directed at businesses and professionals. We do not intentionally collect personal information from individuals under 18 years of age. If we discover we have collected information from a minor without verification of parental consent, we will delete that information immediately.
10. Changes to this Policy
We may update this Privacy Policy occasionally to reflect changes in our practices or for legal reasons. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.
We recommend reviewing this policy periodically. Your continued use of our site after changes constitutes your acceptance of the revised policy.