LEGAL
Privacy Policy
Updated on:
This policy describes how marco-sousa.net handles personal data, in compliance with the Brazilian General Data Protection Law (Law 13,709/2018 — LGPD) and general privacy best practices.
1. Who is responsible
The site marco-sousa.net is maintained personally by Marco Sousa, reachable at [email protected]. There is no intermediary company operating this site.
2. What data the site collects
The site is static and data collection is minimal:
- Data you submit voluntarily: when you click the email links (
mailto:), the message contents reach Marco's personal inbox. When you use the Credi+ Club application form (on the/en/mentoria/page), the data is handled per Credi+ Club's own policy. - Anonymous visit data: the site uses Cloudflare Web Analytics, which operates without cookies and without browser fingerprinting. It collects only aggregated navigation data (URL visited, referrer, approximate country, browser, device type) and does not identify individuals.
3. Cookies
This site does not use marketing or tracking cookies. Some strictly necessary technical cookies may be set by the Cloudflare infrastructure (CDN and security). Details in the Cookie Policy.
4. Why this data is collected
The purpose is strictly:
- To respond to messages sent voluntarily by email.
- To measure, in aggregate, site usage and understand what is valuable to the audience.
- To keep the site available, secure and fast.
5. Sharing with third parties
Data is not sold. Operational sharing only with:
- Cloudflare (site hosting and aggregated analytics).
- LinkedIn (only if you choose to interact with the LinkedIn embeds or external links).
6. Your rights as a data subject
You may, at any time, exercise the rights provided by LGPD Art. 18: confirmation of processing, access, correction, anonymization, portability, deletion, information about sharing, and withdrawal of consent. To exercise any of these rights, email [email protected].
7. Data retention
Emails are kept indefinitely in Marco's personal inbox unless you ask for deletion in writing. Anonymous Cloudflare Web Analytics data is retained by Cloudflare per their own policy (up to 6 months).
8. Security
The site is served exclusively over HTTPS, with HSTS enabled, and uses modern security headers (CSP, X-Content-Type-Options, Referrer-Policy, Permissions-Policy).
9. Changes to this policy
This policy may be updated to reflect changes in the site, infrastructure or legal obligations. The "Updated on" date at the top of this document reflects the latest revision.
10. Contact
Questions about privacy or rights requests: [email protected].