1. Data we collect
The data depends on how a person uses the site or service.
- Identity and contact details: name, email, phone, country, company and sector.
- Commercial information: request, proposal, plan, approvals, messages and project history.
- Project materials: photographs, video, logos, text, files, credentials and metadata.
- Payment and billing metadata: status, value, currency, country and legally required details; full card data remains with the processor.
- Technical and security data: IP, device, browser, dates, logs, access attempts and session identifiers.
- Public professional information used for proportionate B2B prospecting.
2. Purposes and legal bases
We use data to answer requests, prepare proposals, perform contracts, produce and deliver services, manage payments, support clients, protect systems, comply with law and defend rights.
- Pre-contract steps and contract performance.
- Legal, tax, accounting and fraud-prevention obligations.
- Legitimate interests in security, service improvement, complaints and proportionate professional outreach.
- Consent for optional marketing or non-essential technologies.
3. Professional outreach
Movozia may contact businesses using public professional data where the service is reasonably relevant. A recipient may object at any time and a minimal suppression record may be kept to honour that choice.
5. International transfers
Providers may process data outside Portugal or the EEA. Where required, Movozia relies on adequacy decisions, standard contractual clauses or other recognised safeguards and limits data to what is necessary.
6. Retention
Data is kept only for as long as needed.
- Enquiries without a contract: up to 24 months after the last contact.
- Client, contract, payment and invoice data: during the relationship and the applicable legal period, which may reach 10 years.
- Production files: normally up to 12 months after delivery.
- Security logs: normally up to 12 months, longer where an incident requires it.
- Consent, approval and objection records: for as long as needed to prove compliance.
7. Security
Measures include access control, stronger authentication for private areas, encrypted connections, least privilege, private file storage, activity logging and security updates. No system is entirely invulnerable.
8. Individual rights
Where applicable, individuals may request access, correction, deletion, restriction, portability, objection and withdrawal of consent. Requests go to movozia@gmail.com.
Individuals may complain to Portugal's Comissão Nacional de Proteção de Dados or another competent supervisory authority. Brazilian residents may also exercise applicable LGPD rights and contact the ANPD.
9. Automation and children
Movozia does not make solely automated decisions with legal or similarly significant effects. Services are aimed at businesses and adults, not children.
10. Client websites
Where Movozia processes data for a client's website, the client is normally the controller and Movozia the technical processor acting on documented instructions. A data-processing agreement will be used where required.
11. Updates and contact
The date above identifies the current version. Contact: movozia@gmail.com.