How we handle the data you provide through this website and what rights you have over it.
Last updated: 8 September 2026
This policy explains how we process the personal data collected through the contact form on this website. It is written in accordance with Regulation (EU) 2016/679 (GDPR) and Spanish Organic Law 3/2018 on the Protection of Personal Data and guarantee of digital rights (LOPDGDD).
The controller of your data is [LEGAL NAME], tax ID [NIF], with its registered address at Calle Baños 1, Ground floor left, 30004 Murcia, Spain.
You can write to us at clinicaferitas@gmail.com or call +34 640 673 088 about anything concerning your data.
We have not appointed a Data Protection Officer, as this is a healthcare professional practising on an individual basis, a case expressly exempted by article 34.1.k of the LOPDGDD.
Only what you provide when filling in the contact form:
We collect nothing else: this website uses no analytics, no browsing profiles, and does not track your activity.
Health data is a special category of data, protected by article 9 of the GDPR. We expressly ask you not to include diagnoses, conditions, treatments or any other clinical detail in your message. If you need to discuss something like that, book an appointment and we will go through it in consultation, in an appropriate setting. If we do nonetheless receive health information through the form, we will handle it with the required confidentiality and delete it as soon as it is no longer needed to assist you.
For a single purpose: to read your message and reply to you, whether to answer a question or to handle an appointment request. We do not use it for anything else.
We will not send you marketing communications, newsletters or advertising. Nor do we share or sell your data to third parties for commercial purposes.
The legal basis is your consent, which you give expressly by ticking the box on the form before sending it (article 6.1.a of the GDPR). You may withdraw it at any time by writing to us, without affecting the lawfulness of processing carried out before the withdrawal.
We keep your message and contact details for one year from the date we reply, a period that allows us to handle any follow-up questions. After that they are deleted. If you ask us to erase them sooner, we do so immediately.
If you subsequently attend a consultation and become a patient, the data in your medical record is governed by its own rules, with the retention periods set out in Spanish Law 41/2002 on patient autonomy. That is a separate processing activity from the one covered by this policy.
We do not disclose your data to anyone. We do use technology providers acting as data processors, meaning they process the data on our instructions and cannot use it for their own purposes:
Some of these providers are located outside the European Economic Area or may access the data from there. Such transfers are covered by the Standard Contractual Clauses approved by the European Commission or by the EU-US Data Privacy Framework, depending on the provider.
We may also disclose your data to the competent public authorities where a legal obligation requires us to do so.
This website uses no cookies. It also uses no browser local storage, no web beacons, no analytics or advertising tools, and loads no resources from third-party servers: the fonts are served from our own domain. That is why you will see no cookie notice, simply because there is nothing to consent to.
You may exercise the following rights over your data at any time:
To exercise them, write to us at clinicaferitas@gmail.com stating which right you wish to exercise and attaching a copy of your ID document, so that we can verify your identity. We will reply within a maximum of one month.
If you believe we have not handled your request properly, you have the right to lodge a complaint with the Spanish Data Protection Agency (www.aepd.es), the competent supervisory authority in Spain.
The form is not intended for children under fourteen. Under article 7 of the LOPDGDD, children below that age need the consent of a parent or legal guardian before we may process their data.
The website is served entirely over HTTPS, so what you type into the form travels encrypted. We apply reasonable technical and organisational measures to protect your data against unauthorised access, loss or alteration. Even so, no system is infallible: please do not send information you consider particularly sensitive through the form.
We may update this policy if the way we process data changes or if regulations require it. Any amendment will be published on this same page, with its update date visible at the top.