Introduction
At Cotiza, we respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and protect your information when you use our quote generation platform.
Information We Collect
We collect the following types of information:
- Account data: email address, name, and password to create and manage your account
- Business data: company name, tax ID, address, and logo that you add to your professional profile
- Quote data: information about jobs, materials, prices, and clients that you enter to generate quotes
- Usage data: how you navigate the application, features you use, and service performance
- Technical data: device type, browser, IP address, and cookies necessary for functionality
How We Use Your Information
We use your data to:
- Provide the AI-powered quote generation service
- Improve the accuracy of calculations and price suggestions
- Send you important updates about the service and your account
- Handle your inquiries and provide technical support
- Comply with legal and tax obligations
Artificial Intelligence Processing
Cotiza uses artificial intelligence to analyze job descriptions and automatically generate quotes. The data you enter (job description, photos, voice notes) is processed by our AI systems to calculate materials, time, and prices. This information is used exclusively to generate your quote and improve service accuracy.
Who We Share Your Data With
We only share your data with essential providers for the service to function:
- Supabase: secure database storage and authentication (SOC 2 certified)
- Anthropic: AI processing for quote generation
- Vercel: web application hosting
We never sell your personal data to third parties or use it for advertising.
Data Retention
We retain your data as long as your account remains active. If you delete your account, we will delete your personal data within a maximum of 30 days, except for data we must retain for legal obligations (such as invoices, which are kept for 5 years under Spanish law).
Your Rights (GDPR)
As a user in the European Union, you have the following rights:
- Access: request a copy of your personal data
- Rectification: correct inaccurate or incomplete data
- Erasure: request deletion of your data ('right to be forgotten')
- Portability: receive your data in a structured format (JSON/CSV)
- Objection: object to the processing of your data
- Restriction: restrict the use of your data in certain cases
To exercise these rights, send an email to soporte@cotiza.es
Data Security
We implement technical and organizational security measures to protect your data: encryption in transit (HTTPS/TLS) and at rest, secure authentication, regular backups, and restricted data access. Our providers comply with the highest security standards (SOC 2, ISO 27001).
Cookies
We use strictly necessary cookies for the application to function (authentication, preferences). We do not use tracking or advertising cookies. You can find more details in our Cookie Policy. Cookie Policy.
Children
Cotiza is intended for professionals and businesses. We do not knowingly collect data from individuals under 16 years of age. If we discover that a minor has created an account, we will delete it immediately.
International Transfers
Your data may be processed by providers located outside the European Economic Area (EEA). In these cases, we ensure adequate safeguards exist under GDPR (standard contractual clauses, adequacy decisions).
Changes to This Policy
We may update this policy occasionally. We will notify you of important changes by email or through a notice in the application. The 'last updated' date at the top indicates when it was last modified.
Contact
If you have questions about this policy or want to exercise your rights, contact us:
Data Controller: Cotiza
Email: soporte@cotiza.es