Policy summary
Portal Solidarista uses personal and technical data only to provide, protect, manage and improve its features. Access to the application implies acceptance of this policy and a commitment to use the service lawfully, securely and responsibly.
1. Scope
This policy applies to the use of the Portal Solidarista application, its associated portals, authentication services, notifications and other related digital features.
The solidarity association that enables access to the application may act as the data controller for certain member information. MPB SystemLogic may act as a technology provider or data processor, depending on the contracted service.
2. Definitions
3. Information we may collect
3.1 Information provided by the user
- Full name and identification number.
- Email address and telephone number.
- Contact and address information, when necessary.
- Information associated with the account and transactions performed.
- Information submitted when requesting support or assistance.
3.2 Information collected automatically
- IP address, operating system, browser and device type.
- Date, time, duration and actions performed within the application.
- Technical identifiers, security logs and diagnostic information.
- Information required to detect errors, fraud, abuse or unauthorized access.
4. Purposes of processing
Information may be used to:
- Create, validate and manage user accounts.
- Authenticate access and reset credentials.
- Provide the features contracted by the solidarity association.
- Process requests, inquiries, transactions and communications.
- Send operational notices, notifications and security alerts.
- Prevent fraud, abuse, impersonation and unauthorized access.
- Diagnose failures, maintain continuity and improve performance.
- Comply with applicable contractual, regulatory or legal obligations.
Promotional communications, where applicable, must allow the user to manage preferences or opt out, except for communications required for account operation or security.
5. Acceptable use conditions
The user agrees to:
- Provide accurate, complete and current information.
- Keep credentials confidential and not share them with third parties.
- Immediately report suspicious access or unauthorized use.
- Not attempt to compromise, alter, decompile or interfere with the application.
- Not use the service for illegal or fraudulent activities, or activities that harm third parties.
- Not introduce malicious code, abusive automation or bulk data extraction mechanisms.
6. Disclosure and transfer of information
Data may be shared only when necessary and under appropriate controls:
- With the solidarity association responsible for the relationship with the user.
- With hosting, support, messaging, security or technical analysis providers.
- When the data subject has given consent.
- When required by a competent authority or legal obligation.
- In connection with a reorganization, acquisition or business transfer, subject to confidentiality obligations.
When processing involves infrastructure or providers located outside the country, services offering reasonable security and data protection measures will be selected whenever possible.
7. Information retention
Data will be retained for as long as necessary to fulfill the purposes described, meet contractual or legal obligations, resolve disputes and maintain security records.
Technical and usage logs may be retained for different periods depending on their purpose, especially when needed for auditing, fraud prevention, incident investigation or service continuity.
8. Information security
Reasonable administrative, technical and organizational measures are applied to protect data against loss, alteration, disclosure or unauthorized access. These measures may include access controls, encryption, audit logs, backups, monitoring and incident management.
No system is completely invulnerable. Users must also protect their credentials, keep devices updated and avoid accessing the application from untrusted networks or equipment.
9. User rights
Subject to applicable law, the data subject may request:
- Confirmation as to whether personal data is being processed.
- Access to and correction of inaccurate or outdated information.
- Deletion, blocking or restriction when legally applicable.
- Updates to personal information and communication preferences.
- Information about the use and destination of personal data.
Requests may require identity verification. Certain data may be retained when justified by contractual, security or legal obligations.
10. Minors
The service is not intended for minors to create accounts independently unless authorized by the solidarity association and the required representation or consent has been obtained. If information from a minor is identified as having been collected without authorization, reasonable steps will be taken to review and, where appropriate, delete it.
11. Third-party links and services
The application may contain links to or integrations with external services. These third parties operate under their own terms and policies. MPB SystemLogic does not control the content or privacy practices of sites or services it does not directly manage.
12. Changes to this policy
This policy may be updated to reflect functional, technological, contractual or regulatory changes. The last updated date will be displayed at the beginning of the document. Material changes may be communicated through the application, by email or by another reasonable method.
13. Contact
For questions regarding privacy, data processing, security or the exercise of rights, contact the solidarity association that provided access to Portal Solidarista or MPB SystemLogic through the official support channels.