Nimbopredador

Privacy Policy

Last updated: January 15, 2025

1. Data Controller Identification

This Privacy Policy governs the processing of personal data collected via nimbopredador.shop. The data controller responsible for your information is Nimbopredador, operating in New Zealand. For privacy-related inquiries, contact us via email at [email protected].

2. Scope of Policy

This policy outlines how we collect, store, utilize, and protect personal information when you browse our travel journals, communicate through contact forms, or interact with our digital features. We do not knowingly collect personal data from minors under 16 years of age.

3. Categories of Information Collected

  • Directly Provided Information: Full name, email address, optional contact telephone number, and the textual content of inquiries submitted through our web forms.
  • Automatically Collected Telemetry: IP addresses, browser specifications, operating system versions, referral headers, pages visited, and dwell times gathered via cookies and server access logs.
  • Third-Party Consent Signals: Consent preferences recorded under Google Consent Mode v2 regarding analytics and advertising tags.

4. Purposes and Legal Bases for Processing

PurposeData InvolvedLegal Ground (NZ Privacy Act 2020 / Principle 1)
Expedition inquiry responseName, email, message, phonePerformance of requested service / Explicit consent
Platform optimization & securityIP address, device data, error logsLegitimate operational interest
Aggregated usage measurementAnonymized cookies, pageviewsOpt-in consent via Cookie Banner

5. Google Consent Mode v2 & Third-Party Disclosure

We deploy Google Consent Mode v2. Prior to your express interaction with our consent banner, non-essential tracking signals (including ad_storage and analytics_storage) remain set to denied. We do not sell, rent, or trade your personal data. Data may only be shared with verified service providers (such as hosting and mail infrastructure providers) under strict confidentiality agreements.

6. International Data Transfers

Because cloud infrastructure providers maintain distributed server centers globally, your data may be processed on secure servers located outside New Zealand. In all instances, transfers adhere to Information Privacy Principle 8 of the New Zealand Privacy Act 2020, ensuring recipient platforms guarantee comparable privacy safeguards.

7. Retention & Security

Inquiry records are stored only as long as necessary to address your journey queries, typically not exceeding 24 months from last contact. We apply TLS encryption across all digital communications to prevent interception, disclosure, or unauthorized alteration.

8. Your Statutory Rights & Supervisory Authority

Under the New Zealand Privacy Act 2020, you retain the right to confirm whether we hold your personal information, request access to that information, and request corrections if inaccurate. To exercise these rights, please email [email protected]. If you consider that your privacy rights have been breached, you may file a formal complaint with the Office of the Privacy Commissioner (OPC) New Zealand (privacy.org.nz).