Legal

Privacy Policy.

A plain-English summary of what data this site collects, why, and what your rights are.

Last updated: 25 April 2026

We collect very little data, only what’s needed to respond to you and send the newsletter if you ask for it. We don’t sell your data, we don’t track you across the web, and we keep things as simple and secure as we can.

Who we are

Claudiosisera.com is operated by Claudio Sisera, a sole trader based in the United Kingdom. For the purposes of UK data protection law, Claudio Sisera is the data controller.

  • Contact: partnerships@claudiosisera.com
  • Location: United Kingdom
  • ICO registration: Not required (exempt as a sole trader under the Data Protection (Charges and Information) Regulations 2018)
The data we collect

We only collect the following categories of personal data:

1. Newsletter (“The Console”)

  • Email address

2. Contact form (/contact)

  • Name (required)
  • Email address (required)
  • Organisation (optional)
  • Reason for enquiry (required)
  • Message (required)

3. Server logs (automatically collected)

  • IP address
  • Browser type / user agent
  • Date and time of request
  • Requested URL/path
How we use your data and our legal basis
Purpose

Send newsletter (“The Console”)

Data used

Email address

Legal basis

Consent (UK GDPR Art. 6(1)(a))

Purpose

Respond to enquiries

Data used

Name, email, organisation, message

Legal basis

Pre-contractual steps (Art. 6(1)(b)) and legitimate interests (Art. 6(1)(f))

Purpose

Maintain site security and performance

Data used

Server logs (IP, user agent, etc.)

Legal basis

Legitimate interests (Art. 6(1)(f))

Legitimate interests explained: We use minimal technical data to keep the site secure, prevent abuse, and ensure it works as expected.

Sub-processors and international transfers

We use a small number of trusted service providers to run the site. These providers act as data processors on our behalf.

  • Hosting / edge infrastructure: Cloudflare Workers
  • Newsletter provider: ConvertKit
  • Contact form email delivery: Resend
  • Database / storage: Supabase (EU region)

Some providers may process data outside the UK or EEA. Where that happens, we rely on appropriate safeguards such as:

  • UK International Data Transfer Agreement (IDTA)
  • EU Standard Contractual Clauses (SCCs)
How long we keep your data
  • Newsletter email addresses: Until you unsubscribe
  • Contact form enquiries: Up to 12 months from last interaction (or longer if a business relationship develops)
  • Server logs: 30 days

We periodically review and delete data that is no longer needed.

Your rights

Under the UK GDPR, you have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion (“right to be forgotten”)
  • Restrict processing
  • Object to processing
  • Request data portability
  • Withdraw consent (for newsletter at any time)

You also have the right to lodge a complaint with the Information Commissioner’s Office (ICO): ico.org.uk/make-a-complaint.

Security

We take proportionate steps to protect your data, including:

  • HTTPS encryption in transit
  • Secure hosting infrastructure
  • Access controls and minimal data access
  • Use of reputable, compliant service providers
Children’s data

This site is not directed at children under 16. We do not knowingly collect data from children.

Changes to this policy

We may update this policy from time to time. The latest version will always be available on this page with an updated date.

Contact

If you have any questions about this policy or your data, email partnerships@claudiosisera.com. You may also wish to read our Terms of Service and Cookie Policy.