Legale
Privacy Politica
Ultimo aggiornamento: giugno 2026
1. Data controller
- Identity: DINAMICO ESTEVA, S.L.
- CIF: B-61963385
- Address: Passatge de la Concepció, 10, 08008 Barcelona
- Contact: privacidad@mordisco.es
2. Data we collect
We collect the personal data that you provide directly when using our services:
- Booking form: first name, last name, phone number, email, date, time and number of guests.
- Contact form: name, email and the content of the message.
- Newsletter subscription: email.
- Browsing data: IP address, browser type, pages visited and session duration (via cookies, with your consent).
3. Purposes and legal basis
- Booking management: performance of the contract or pre-contractual relationship (art. 6.1.b GDPR).
- Customer service: legitimate interest and/or consent of the data subject.
- Sending marketing communications: the user's express consent (art. 6.1.a GDPR).
- Statistical analysis and site improvement: legitimate interest and/or consent depending on the type of cookie.
4. Data retention
Booking data is kept for as long as necessary to manage the service and, after that, for the periods legally required (a maximum of 5 years for tax and commercial obligations). Subscription data is kept until the user requests to unsubscribe.
5. Recipients of the data
We do not share your data with third parties except where legally required. We may share it with data processors (booking platform, email marketing provider) under a data processing agreement that guarantees GDPR compliance.
6. Your rights
You can exercise your rights of access, rectification, erasure, objection, portability and restriction of processing at any time by emailing privacidad@mordisco.es, stating your name, ID document number and the right you wish to exercise. You can also file a complaint with the Spanish Data Protection Agency (AEPD).
7. Security
We apply the technical and organisational measures necessary to ensure the security of your data and to prevent its alteration, loss, unauthorised processing or access, taking into account the state of technology, the nature of the data and the risks to which it is exposed.
8. International transfers
We do not carry out international data transfers outside the European Economic Area, unless required by a contracted service provider, in which case we ensure that appropriate safeguards are in place (European Commission standard contractual clauses or other equivalent mechanisms).
9. Amendments
This Privacy Policy may be updated at any time. We will inform you of any significant changes via a notice on the Website.