SyntheraGlobal

Terminal 04 — Documentation

LEGAL PROTOCOLS

01

Privacy Policy

1.1 Data Controller Identity

SyntheraGlobal, located at Calle Zalamea 8, Piso 2, Madrid, Spain, acts as the Data Controller for all personal data processed through our secure client portals and file-sharing web platforms. For any privacy-related inquiries, contact our designated Data Protection Officer at [email protected].

1.2 Categories of Personal Data Collected

We collect and process the following categories of personal data: (a) Identity data including full name, username, and professional role; (b) Contact data including email address, telephone number, and postal address; (c) Technical data including IP address, browser type, operating system, and device identifiers; (d) Usage data including portal interaction logs, file access records, and session duration metrics; (e) Transaction data including payment records, subscription status, and billing history.

1.3 Legal Basis for Processing

Personal data processing is conducted under the following legal bases as defined in Article 6 of the EU General Data Protection Regulation (GDPR): (a) Performance of a contract — processing necessary for the delivery of our secure portal and file-sharing services; (b) Legitimate interest — processing necessary for fraud prevention, security monitoring, and service optimization; (c) Consent — processing based on explicit, informed, and freely given consent for marketing communications and optional analytics; (d) Legal obligation — processing required to comply with tax regulations, anti-money laundering directives, and court orders.

1.4 Data Retention Periods

Personal data is retained for the minimum period necessary to fulfill the purposes for which it was collected: (a) Active account data — duration of the contractual relationship plus 30 days; (b) Transaction records — 7 years as required by Spanish tax law; (c) Server logs — 90 days for security auditing; (d) Marketing consent records — until withdrawal of consent plus 30 days for processing.

1.5 Data Subject Rights

Under the GDPR, you have the following rights regarding your personal data: (a) Right of access — request a copy of all personal data we hold; (b) Right to rectification — request correction of inaccurate data; (c) Right to erasure — request deletion of your personal data; (d) Right to restrict processing — request limitation of data processing; (e) Right to data portability — receive your data in a structured, machine-readable format; (f) Right to object — object to processing based on legitimate interest; (g) Right to withdraw consent — withdraw consent at any time without affecting prior lawful processing. To exercise any of these rights, contact [email protected] with a valid identification request.

1.6 International Data Transfers

All personal data is processed within the European Economic Area (EEA). In cases where data transfer outside the EEA is necessary for service delivery, SyntheraGlobal ensures adequate safeguards through Standard Contractual Clauses (SCCs) approved by the European Commission, or through adequacy decisions as published by the EU.

1.7 Data Security Measures

SyntheraGlobal implements state-of-the-art technical and organizational security measures including: AES-256 encryption at rest, TLS 1.3 encryption in transit, multi-factor authentication for portal access, regular penetration testing, automated intrusion detection systems, and encrypted backup infrastructure hosted within EU data centers.

02

Cookies Policy

2.1 Cookie Classification

SyntheraGlobal deploys the following categories of cookies on our platforms: (a) Strictly Necessary Cookies — essential for portal authentication, session management, and security token validation. These cannot be disabled as they are required for core platform functionality; (b) Functional Cookies — enable personalized settings such as language preference, interface layout, and notification preferences; (c) Analytics Cookies — collect anonymized usage statistics to optimize portal performance and user experience. All analytics data is aggregated and cannot be traced to individual users.

2.2 Cookie Duration and Management

Session cookies are automatically deleted when you close your browser. Persistent cookies remain stored for a maximum of 12 months unless you manually delete them or withdraw consent. You can manage cookie preferences through your browser settings at any time. Disabling strictly necessary cookies may impair portal functionality and file-sharing capabilities.

2.3 Third-Party Cookie Disclosure

SyntheraGlobal does not sell, share, or distribute cookie data to third-party advertisers. Our platform uses only first-party cookies set directly by our domain. Any third-party integrations (e.g., payment processors) operate under their own cookie policies, which are disclosed at the point of integration.

03

Refund Policy

3.1 Service Milestone Refunds

Refund eligibility is determined by project milestone completion status. Prior to initiation of the first development phase (System Audit), a full refund of any advance payment will be issued within 14 business days. Once development has commenced, refunds are calculated proportionally based on completed milestones as defined in the project scope agreement.

3.2 Subscription and Recurring Service Refunds

Monthly subscription services can be cancelled at any time with a 30-day notice period. No refund is issued for the current billing period once portal access has been provisioned. Annual subscriptions receive a pro-rata refund for unused months, minus a 10% administrative processing fee.

3.3 Non-Refundable Items

The following are non-refundable: (a) Custom domain registration fees; (b) Third-party licensing costs incurred on behalf of the client; (c) Completed design mockups and architecture documentation; (d) Security audit reports delivered prior to cancellation request. All refund requests must be submitted in writing to [email protected] within 30 days of the triggering event.

3.4 Refund Processing

Approved refunds are processed within 14 business days via the original payment method. Bank transfer refunds may require additional processing time depending on the receiving financial institution. SyntheraGlobal reserves the right to offset any outstanding balances against refund amounts.

04

Terms of Service

4.1 Service Scope and Acceptance

By accessing or using any platform, portal, or service operated by SyntheraGlobal, located at Calle Zalamea 8, Piso 2, Madrid, Spain, you agree to be bound by these Terms of Service. Services include secure client portal development, enterprise file-sharing platform deployment, encrypted document management, and all related infrastructure services. Scope modifications require written agreement from both parties.

4.2 Client Obligations

Clients are responsible for: (a) Providing accurate and complete project requirements; (b) Timely delivery of required assets, credentials, and content; (c) Maintaining confidentiality of portal access credentials; (d) Complying with all applicable laws regarding data uploaded to our platforms; (e) Prompt review and approval of deliverables within agreed review windows.

4.3 Intellectual Property Rights

Upon full payment, all custom-developed code, designs, and documentation created specifically for the client transfer to client ownership. SyntheraGlobal retains ownership of all pre-existing frameworks, libraries, utility functions, and development methodologies used in service delivery. Client grants SyntheraGlobal a non-exclusive license to use anonymized project data for portfolio and case study purposes.

4.4 Limitation of Liability

SyntheraGlobal's total aggregate liability under any agreement shall not exceed the total fees paid by the client in the 12 months preceding the claim. SyntheraGlobal shall not be liable for indirect, incidental, consequential, or punitive damages, including but not limited to loss of profits, data, or business opportunities. Force majeure events, including but not limited to natural disasters, cyberattacks, and government actions, suspend all liability obligations.

4.5 Termination and Suspension

SyntheraGlobal reserves the right to suspend or terminate access to any platform or service upon: (a) Material breach of these Terms; (b) Non-payment of fees after 15-day cure period; (c) Detection of malicious activity or unauthorized access attempts; (d) Legal or regulatory requirement. Upon termination, client data is retained for 30 days and then securely destroyed in accordance with our data retention policy.

4.6 Governing Law and Dispute Resolution

These Terms are governed by the laws of Spain and the European Union. Any disputes arising from or related to these Terms or our services shall first be subject to good-faith mediation. If mediation fails within 60 days, disputes shall be resolved through binding arbitration administered by the Madrid Court of Arbitration. The parties consent to the exclusive jurisdiction of the courts of Madrid, Spain.

Last Updated

July 20, 2026 — SyntheraGlobal, Calle Zalamea 8, Piso 2, Madrid, Spain

For legal inquiries: [email protected] | +34 607 824 193