Privacy policy
Last updated: February 2026 · nexply.eu
1. Data controller
GEEK DEVOPS S.L. (hereinafter, "Nexply" or "the Controller"), tax ID B40639494, registered office in Valencia (Spain), is the controller of personal data collected through the website nexply.eu.
Data Protection Officer contact: legal@nexply.eu
2. Personal data we collect
Depending on how you interact with our services, we may collect the following categories of personal data:
- Identification data: first name, last name, corporate email address, company or organisation.
- Contact and communication data: information provided through our contact form (name, company, role, email, optional phone, enquiry type and message).
- Technical browsing data: IP address, browser type, operating system, pages visited, time on site and cookie data (see Cookie Policy).
Nexply does NOT collect special categories of personal data (ethnic origin, political opinions, health data, etc.).
3. Purposes of processing
Your personal data is processed for the following purposes:
- Enquiry handling: answering enquiries sent through our contact form or email.
- Service delivery: managing the professional relationship with the client and delivering the contracted consultancy services (customs, international trade, supply chain, sustainability and applied technology).
- Commercial communications: sending information about our services, relevant regulatory updates (CBAM, EUDR, customs, etc.) and commercial offers (only with your prior consent).
- Analysis and improvement: anonymous statistical analysis to improve user experience and site performance.
- Legal compliance: meeting applicable legal obligations.
4. Legal basis for processing
Data processing relies on the following legal grounds under the GDPR (Regulation (EU) 2016/679):
- Performance of a contract (Art. 6.1.b): when processing is necessary to deliver the contracted service.
- Consent (Art. 6.1.a): for sending commercial communications and the installation of non-essential cookies.
- Legitimate interest (Art. 6.1.f): for service improvement, fraud prevention and system security.
- Legal obligation (Art. 6.1.c): compliance with tax and legal duties.
5. Data retention
- Contact data and enquiries: kept as long as needed to address your request and afterwards for any applicable legal periods.
- Professional-relationship data: for the duration of the contractual relationship and thereafter for the applicable legal periods (in particular tax-related obligations and those arising from the Union Customs Code).
- Browsing data: as stated in the Cookie Policy.
6. Data recipients
Your personal data will not be shared with third parties except:
- Legal obligation: when required by applicable law or by a court order.
- Service providers: suppliers that support our business operations (hosting, email, analytics), acting as data processors under confidentiality agreements.
Nexply does NOT share, sell or transfer personal data to third parties for commercial purposes.
7. International transfers
If any of our service providers is located outside the European Economic Area (EEA), we guarantee that the appropriate safeguards under the GDPR are in place (European Commission adequacy decision or Standard Contractual Clauses).
8. Data subject rights
Under the GDPR and the Spanish data protection law (LOPDGDD), you have the right to:
- Access: know whether we process your data and obtain a copy of it.
- Rectification: request correction of inaccurate or incomplete data.
- Erasure: request deletion of your data when it is no longer necessary for the purpose for which it was collected.
- Objection: object to the processing of your data in certain circumstances.
- Restriction: request a restriction of processing in the cases provided for by law.
- Portability: receive your data in a structured, commonly used format.
- Withdrawal of consent: withdraw your consent at any time without affecting the lawfulness of previous processing.
You can exercise these rights by sending a request to legal@nexply.eu along with a copy of your ID document.
9. Security measures
Geek Devops S.L. applies the technical and organisational measures appropriate to ensure the security of personal data, including:
- Encryption of communications using HTTPS/TLS.
- Access and authentication controls.
- Regular staff training on data protection.
- Backups and disaster recovery plans.
- Confidentiality agreements with every provider that processes data on our behalf.
10. Complaints
If you believe that the processing of your data does not comply with the regulations, you can file a complaint with the Spanish Data Protection Agency (AEPD) at www.aepd.es.
11. Contact
For any query about this Privacy Policy:
Geek Devops S.L.
Email: legal@nexply.eu
Web: https://nexply.eu