Last updated: 1 June 2026
1. Data controller
The data controller for personal data processed through this website is [Registered Company Name — pending] (Regena Peptides), registered in Spain. You can reach our data team at inforegenapeptides@gmail.com.
2. What we collect
- Contact data you provide via messaging (WhatsApp, Telegram, email, contact form): name, contact handle, message content.
- Technical data automatically logged when you visit: anonymised IP, browser type, device type, referring URL, pages visited.
- Cookies and similar technologies as described in our cookie banner. Non-essential cookies are only set with your explicit consent.
3. Why we process it
- Responding to enquiries and providing requested information.
- Operating, securing, and improving the website.
- Meeting legal, regulatory, and accounting obligations.
Our legal bases are: your consent, the performance of a contract or pre-contract steps at your request, our legitimate interests in running a secure website, and compliance with legal obligations.
4. How long we keep data
Contact messages are retained for as long as needed to respond and meet any legal obligations, after which they are deleted or anonymised. Cookie preferences are stored locally on your device until you clear them.
5. Sharing and transfers
We share data only with processors strictly necessary to operate this site (hosting, messaging platforms, email delivery, analytics where consent is given). Any transfers outside the European Economic Area rely on Standard Contractual Clauses or equivalent safeguards.
6. Your rights
- Access, rectification, erasure, restriction, and portability of your data.
- Objection to processing based on our legitimate interests.
- Withdrawal of consent at any time, without affecting prior processing.
- The right to lodge a complaint with the Spanish supervisory authority (Agencia Española de Protección de Datos — AEPD).
To exercise any of these rights, email inforegenapeptides@gmail.com.
7. Security
We apply appropriate technical and organisational measures (encryption in transit, access controls, regular review of vendors) to protect personal data against unauthorised access, loss, or alteration.
8. Changes
We may update this policy as our practices or applicable law evolve. The “last updated” date above reflects the most recent version.