Privacy Policy
Last updated: January 1, 2025
Contact us for privacy matters: privacy@batiscan.com
1.Who We Are
Batiscan operates a digital real estate platform that combines professional 3D property scanning services with a property listing marketplace. We are the data controller for the personal data collected through our website, mobile application, and related services (collectively, the "Platform").
We are committed to protecting your personal data in full compliance with Regulation (EU) 2016/679 of the European Parliament and of the Council (the General Data Protection Regulation, "GDPR"), and Organic Law 3/2018 of December 5 on Protection of Personal Data and Guarantee of Digital Rights ("LOPDGDD") of Spain.
2.Data We Collect
Data you provide directly
When you create an account, we collect:
- Full name
- Email address
- Password (stored in hashed, non-reversible form — we never store plaintext passwords)
- Phone number (optional, for scan coordination purposes)
- Professional role (owner, buyer, architect, institution — selected during onboarding)
- Company or organization name (where applicable)
When you submit a property listing or request a 3D scan, we additionally collect:
- Property address and location details
- Property type, size, and descriptive information
- Documents or files you upload relating to the property (floor plans, title deeds, photos)
- Preferred scan scheduling information
When you submit a devis request (a formal expression of interest to buy or rent a property), we collect:
- The property reference you are inquiring about
- Your contact preferences
- Any message or notes you include in the request
Data collected automatically
When you use the Platform, we automatically collect:
- IP address
- Browser type and version
- Operating system
- Pages visited and time spent
- Referral source (how you arrived at our platform)
- Device identifiers
Blockchain wallet data
If you choose to authenticate using a Solana-compatible wallet, we collect:
- Your public wallet address
We do not have access to your private keys, seed phrases, or any funds held in your wallet. We do not execute on-chain transactions on your behalf. Wallet authentication is used solely to verify identity and link your account — no financial transactions are processed through Batiscan's infrastructure.
Data we do not collect
We do not process payment card data. Batiscan does not handle financial transactions for property purchases or rentals. Devis requests are expressions of interest only — no money changes hands through our platform at this time.
3.How We Use Your Data
| Purpose | Legal Basis | Retention |
|---|---|---|
| Creating and managing your account | Contract (Art. 6.1.b GDPR) | Duration of account + 3 years |
| Processing scan requests and coordinating our team | Contract (Art. 6.1.b GDPR) | 5 years from service delivery |
| Displaying your property listing in the marketplace | Contract (Art. 6.1.b GDPR) | Duration of listing + 2 years |
| Forwarding devis requests between parties | Legitimate interest (Art. 6.1.f GDPR) | 2 years |
| Sending service communications (scan updates, listing status) | Contract (Art. 6.1.b GDPR) | Duration of account |
| Sending marketing communications | Consent (Art. 6.1.a GDPR) | Until withdrawal of consent |
| Fraud prevention and platform security | Legitimate interest (Art. 6.1.f GDPR) | 2 years from incident |
| Compliance with legal obligations | Legal obligation (Art. 6.1.c GDPR) | As required by law |
| Analytics and platform improvement | Legitimate interest (Art. 6.1.f GDPR) | 13 months (anonymized after) |
5.International Data Transfers
All personal data is stored on servers located within the European Economic Area (EEA). In the event any processor operates outside the EEA, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission.
6.Your Rights Under GDPR
You have the following rights regarding your personal data:
Right of access (Art. 15): Request a copy of the personal data we hold about you.
Right to rectification (Art. 16): Correct inaccurate or incomplete data.
Right to erasure (Art. 17): Request deletion of your data, subject to legal retention obligations.
Right to restriction of processing (Art. 18): Ask us to pause processing in certain circumstances.
Right to data portability (Art. 20): Receive your data in a structured, machine-readable format.
Right to object (Art. 21): Object to processing based on legitimate interests, including direct marketing.
Right to withdraw consent: Where processing is based on consent, withdraw it at any time without affecting prior processing.
Right not to be subject to automated decision-making (Art. 22): We do not make solely automated decisions with legal or significant effects on you.
To exercise any of these rights, email: privacy@batiscan.com
We will respond within 30 days. If you believe we have not handled your data correctly, you have the right to lodge a complaint with the Spanish Data Protection Authority:
Agencia Española de Protección de Datos (AEPD)
C/ Jorge Juan, 6, 28001 Madrid
www.aepd.es
8.Children
Batiscan is not directed at persons under 18 years of age. We do not knowingly collect personal data from minors. If we become aware that a minor has created an account, we will delete the account and associated data promptly.
9.Security
We implement appropriate technical and organizational measures to protect your personal data, including:
- TLS encryption for all data in transit
- AES-256 encryption for sensitive data at rest
- Password hashing using bcrypt (minimum 12 rounds)
- Role-based access controls for our internal team
- Regular security assessments
No system is entirely secure. In the event of a data breach that is likely to result in a high risk to your rights, we will notify you and the AEPD as required by GDPR Article 33-34.
10.Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users by email at least 15 days before material changes take effect. The "Last updated" date at the top of this page reflects the current version.
