How Astrol Nodes collects, uses and protects your personal data, in accordance with the GDPR.
Last updated: 28 May 2026The controller responsible for the processing of your personal data is the service operated under the Astrol Nodes brand ("we"):
You can contact us for any matter relating to the processing of your data through the email address above.
Depending on how you use our services, we process the following categories of data:
| Purpose | Legal basis (GDPR Art. 6) |
|---|---|
| Provide, activate and manage the contracted services | Performance of a contract |
| Billing, invoicing and tax/accounting obligations | Legal obligation |
| Customer support and communications about your services | Performance of a contract |
| Security, fraud and abuse prevention, logging and IP blocking | Legitimate interest |
| Analytics, audience measurement and service improvement | Consent (cookies) |
| Commercial communications about our own similar products | Consent or legitimate interest |
We do not sell your data. We share it only with the providers strictly necessary to operate the service, who act as data processors under the appropriate agreements:
We may also disclose data when legally required by a competent authority.
Our services run on infrastructure located in the European Union (Germany) and the United States (Miami), and some of the providers listed above are based outside the European Economic Area (mainly the United States).
Where data is transferred outside the EEA, such transfers are protected by appropriate safeguards under the GDPR, namely the Standard Contractual Clauses approved by the European Commission and/or the providers' adherence to the EU–US Data Privacy Framework.
Once these periods expire, data is deleted or anonymised.
You may exercise the following rights free of charge by writing to [email protected]:
We may ask you to verify your identity. You also have the right to lodge a complaint with the Spanish Data Protection Agency (AEPD, www.aepd.es) or your local supervisory authority if you believe your rights have not been respected.
We apply reasonable technical and organisational measures to protect your data, including encryption in transit, access controls, hashing of credentials and monitoring of our infrastructure. No system is completely infallible, but we work to keep your information protected.
Our services are intended for persons of legal age. We do not knowingly process data of minors below the age required to consent under applicable law. If you believe a minor has provided us with data, please contact us so we can delete it.
When you store personal data of third parties (for example, your own users) within your service, you are the data controller and we act as data processor on your behalf, processing such data only to provide the service and on your instructions, in accordance with Article 28 GDPR.
We may update this Privacy Policy to reflect legal or technical changes. We will publish the updated version on this page and, where the change is material, we will notify you appropriately.