Privacy notice
1. Who is responsible for your data
- Controller: Tech Benders S.A.S. de C.V. (“Tech Benders”).
- Tax ID (RFC): TBE260616ND3
- Address: Sur 71-A 232, colonia Banjidal, alcaldía Iztapalapa, C.P. 09450, Mexico City, Mexico.
- Privacy email: hi@techbenders.io
Requests about your personal data are handled by the Tech Benders personal data team at hi@techbenders.io.
2. What data we process
Only what you give us in the contact form, plus the minimum needed to run the site safely:
- Contact form: name, email, company (optional) and the message you write.
- Technical data: the date and time of each submission, the site language you wrote from, and an encrypted fingerprint of your IP address that cannot be reversed. We do not store your IP address.
We do not ask for sensitive personal data. Please do not include it in your message.
3. What we use it for
Necessary purposes
Without these we cannot handle your request:
- Replying to your message and following up: sending you information, scheduling a conversation or preparing a proposal about what you asked.
- Confirming by email that we received your message.
- Preventing abuse, automated submissions and fraud, and keeping the site secure.
- Meeting our legal obligations.
Optional purposes
Only if you tick the box in the form, which is unticked by default:
- Sending you invitations to our webinars.
- Sending you market reports and analysis.
Leaving the box unticked does not change how we handle your message. You can withdraw this consent at any time by replying “unsubscribe” to any of our emails or by writing to hi@techbenders.io.
4. Who helps us process it
We rely on providers that process personal data on our behalf, following our instructions and without using it for their own purposes:
- Supabase: the database where messages are stored.
- Vercel: site hosting and running the form.
- Resend: sending confirmation emails.
- Google Workspace: the hi@techbenders.io mailbox.
- Slack: internal notice to the team when a message arrives.
All of them operate under terms that bind them to confidentiality, to apply security measures and to delete the data when the relationship ends.
Third-party resources on the site
Some pages load resources directly from other services:
- Case videos are served from Cloudinary.
- The Mexico City open data demo loads fonts from Google Fonts and a library from cdnjs (Cloudflare).
- The map demo loads tiles and searches from Amazon Web Services, MapLibre, OpenStreetMap and Protomaps.
When you open those pages, your browser connects to those services, which receive your IP address and technical connection data under their own policies. Tech Benders does not receive or store that information.
5. Transfers
We do not sell or rent your personal data, and we do not transfer it to third parties, except when required by a competent authority under the law.
Most of our providers operate outside Mexico, mainly in the United States. Your data is processed in those countries under the confidentiality and security obligations agreed with each of them.
6. How long we keep it
- Contact messages: 24 months from the last contact, if no business relationship starts.
- If a business relationship starts: for as long as it lasts and for the periods required by tax and commercial law.
- Consent for invitations and reports: until you withdraw it.
- Encrypted IP fingerprint: as long as the message it belongs to.
After these periods, the data is deleted or irreversibly anonymized.
7. Your ARCO rights
At any time and at no cost you can:
- Access the personal data we hold about you.
- Rectify it when it is inaccurate or incomplete.
- Cancel it when you consider it is not needed.
- Object to its use for specific purposes.
You can also withdraw your consent for the optional purposes and limit the use or disclosure of your data.
How to exercise them. Write to hi@techbenders.io from the email you contacted us with, stating your name, which right you are exercising and about which data. We may ask you to verify your identity.
Deadlines. We reply within twenty business days at most, extendable once for the same period. When the request is granted, we carry it out within the following fifteen business days.
If you are not satisfied with our answer, you can contact the Secretaría Anticorrupción y Buen Gobierno, the Mexican authority for personal data protection.
8. Cookies
The site does not use cookies, nor analytics, advertising or tracking tools. If that changes, we will announce it here and ask for your consent before enabling them.
9. How we protect it
We apply administrative, technical and physical measures to protect your data against damage, loss, alteration, destruction or unauthorized access:
- Encryption in transit over HTTPS and encryption at rest in the database.
- The database only accepts writes from our server. Row-level security policies block any access from the browser.
- Your IP address is stored only as an irreversible encrypted fingerprint.
- Submission limits to prevent abuse and automated sending.
- Internal access restricted to the team members who handle messages.
No measure guarantees absolute security, but we review and update these controls periodically.
If a security breach significantly affects your property or moral rights, we will notify you without delay at the email you gave us, explaining what happened, which data was affected, what we recommend you do and what measures we took.
10. Changes to this notice
We will publish any change to this notice on this same page, with its update date. If a change means processing your data for a purpose not listed here, such as webinar registration, we will tell you and ask for your consent first.
This notice is published in Spanish and English. The Spanish version is the binding one; this English version is a courtesy translation.