Portal Solidarista

Privacy and Application Use Policy

This document explains how information from Portal Solidarista users is collected, used, protected and, where applicable, shared.

Responsible party: MPB SystemLogic Country: Costa Rica Last updated: July 25, 2026

Policy summary

Portal Solidarista uses personal and technical data only to provide, protect, manage and improve its features. Access to the application implies acceptance of this policy and a commitment to use the service lawfully, securely and responsibly.

Minimum necessary dataOnly information required to operate the service is requested.
Transparent useData is used for authentication, support, security, service delivery and improvement.
Reasonable protectionAdministrative and technical controls are applied to reduce the risk of unauthorized access.

1. Scope

This policy applies to the use of the Portal Solidarista application, its associated portals, authentication services, notifications and other related digital features.

The solidarity association that enables access to the application may act as the data controller for certain member information. MPB SystemLogic may act as a technology provider or data processor, depending on the contracted service.

2. Definitions

Account: credentials or profile created to access the application.
Personal data: information that identifies or may identify an individual.
Usage data: technical information generated while the service is being used.
Device: computer, telephone, tablet or other equipment used to access the service.
Service provider: authorized third party that supports the operation, security, hosting or technical support of the application.
User: individual or legal entity that accesses or uses the service.

3. Information we may collect

3.1 Information provided by the user

  • Full name and identification number.
  • Email address and telephone number.
  • Contact and address information, when necessary.
  • Information associated with the account and transactions performed.
  • Information submitted when requesting support or assistance.

3.2 Information collected automatically

  • IP address, operating system, browser and device type.
  • Date, time, duration and actions performed within the application.
  • Technical identifiers, security logs and diagnostic information.
  • Information required to detect errors, fraud, abuse or unauthorized access.
The application should not request information that is not necessary for the delivery, security or improvement of the service. When a feature requires additional information, its purpose will be disclosed.

4. Purposes of processing

Information may be used to:

  • Create, validate and manage user accounts.
  • Authenticate access and reset credentials.
  • Provide the features contracted by the solidarity association.
  • Process requests, inquiries, transactions and communications.
  • Send operational notices, notifications and security alerts.
  • Prevent fraud, abuse, impersonation and unauthorized access.
  • Diagnose failures, maintain continuity and improve performance.
  • Comply with applicable contractual, regulatory or legal obligations.

Promotional communications, where applicable, must allow the user to manage preferences or opt out, except for communications required for account operation or security.

5. Acceptable use conditions

The user agrees to:

  • Provide accurate, complete and current information.
  • Keep credentials confidential and not share them with third parties.
  • Immediately report suspicious access or unauthorized use.
  • Not attempt to compromise, alter, decompile or interfere with the application.
  • Not use the service for illegal or fraudulent activities, or activities that harm third parties.
  • Not introduce malicious code, abusive automation or bulk data extraction mechanisms.
Access may be temporarily suspended when there are reasonable indications of fraud, compromised credentials, service abuse or a security risk to the platform.

6. Disclosure and transfer of information

Data may be shared only when necessary and under appropriate controls:

  • With the solidarity association responsible for the relationship with the user.
  • With hosting, support, messaging, security or technical analysis providers.
  • When the data subject has given consent.
  • When required by a competent authority or legal obligation.
  • In connection with a reorganization, acquisition or business transfer, subject to confidentiality obligations.

When processing involves infrastructure or providers located outside the country, services offering reasonable security and data protection measures will be selected whenever possible.

7. Information retention

Data will be retained for as long as necessary to fulfill the purposes described, meet contractual or legal obligations, resolve disputes and maintain security records.

Technical and usage logs may be retained for different periods depending on their purpose, especially when needed for auditing, fraud prevention, incident investigation or service continuity.

8. Information security

Reasonable administrative, technical and organizational measures are applied to protect data against loss, alteration, disclosure or unauthorized access. These measures may include access controls, encryption, audit logs, backups, monitoring and incident management.

No system is completely invulnerable. Users must also protect their credentials, keep devices updated and avoid accessing the application from untrusted networks or equipment.

9. User rights

Subject to applicable law, the data subject may request:

  • Confirmation as to whether personal data is being processed.
  • Access to and correction of inaccurate or outdated information.
  • Deletion, blocking or restriction when legally applicable.
  • Updates to personal information and communication preferences.
  • Information about the use and destination of personal data.

Requests may require identity verification. Certain data may be retained when justified by contractual, security or legal obligations.

10. Minors

The service is not intended for minors to create accounts independently unless authorized by the solidarity association and the required representation or consent has been obtained. If information from a minor is identified as having been collected without authorization, reasonable steps will be taken to review and, where appropriate, delete it.

11. Third-party links and services

The application may contain links to or integrations with external services. These third parties operate under their own terms and policies. MPB SystemLogic does not control the content or privacy practices of sites or services it does not directly manage.

12. Changes to this policy

This policy may be updated to reflect functional, technological, contractual or regulatory changes. The last updated date will be displayed at the beginning of the document. Material changes may be communicated through the application, by email or by another reasonable method.

13. Contact

For questions regarding privacy, data processing, security or the exercise of rights, contact the solidarity association that provided access to Portal Solidarista or MPB SystemLogic through the official support channels.

Portal Solidarista · Technology platform developed by MPB SystemLogic