Legal

Privacy Policy

Last updated: 23 July 2026

This is a courtesy translation. The legally binding version is the Spanish original, and Spanish/EU data protection law applies in all cases.

1. Data controller

In accordance with Regulation (EU) 2016/679 (GDPR) and Spanish Organic Law 3/2018 on the Protection of Personal Data and guarantee of digital rights (LOPDGDD), we inform you that the controller of your personal data is:

NERO TRADING, S.L. Tax ID (CIF): B44507119
Address: C/ Mayor San Jaime, 46, 2º, 12540 Vila-real (Castellón), Spain
Email: pushgrow@pggrupo.com

Hereinafter, "Push & Grow" or "the Controller".

2. What personal data do we collect?

We may collect the following categories of personal data:

Identification data

  • First and last name.
  • Company.
  • Job title.
  • Email address.
  • Phone number.

Billing data

  • Tax address.
  • Tax ID number.
  • Country.
  • Information needed to issue invoices.

Access data

  • Username.
  • Encrypted password.
  • IP address.
  • Date and time of access.
  • Device and browser information.

Usage data

  • Campaigns created.
  • Usage statistics.
  • Account configuration.
  • Activity history.
  • Technical logs necessary to ensure the security of the service.

Data obtained through cookies

See our Cookie Policy for detailed information.

3. Purpose of processing

Your data will be processed for the following purposes:

  • Managing registration and access to the platform.
  • Providing the contracted services.
  • Managing subscriptions and renewals.
  • Issuing invoices and complying with tax obligations.
  • Handling queries and support requests.
  • Improving the platform's operation.
  • Ensuring the security of our systems.
  • Complying with legal obligations.
  • Sending communications related to the contracted service.

Where express consent exists, we may also send commercial information about new services, features, promotions or news.

4. Legal basis for processing

We process personal data based on: performance of the service contract; compliance with legal obligations; the data subject's consent when necessary; and our legitimate interest in improving security, preventing fraud and optimizing the platform.

5. Data retention

Personal data will be retained while a contractual relationship exists, while the user keeps their account active, for the periods legally established to address possible liabilities, and until the data subject requests its deletion when processing is based on consent.

Once these periods end, the data will be securely deleted or anonymized.

6. Data recipients

As a general rule, we do not sell or transfer personal data to third parties.

However, it may be shared when necessary with: technology providers necessary to provide the service (hosting, storage, email, analytics, payment gateways, etc.); public authorities where there is a legal obligation; and courts and tribunals where applicable.

All our providers that process personal data do so under the corresponding data processing agreements, in accordance with article 28 of the GDPR.

7. Payments

Subscription payments are made through a secure payment gateway. Push & Grow does not store full bank card details used for payment.

Payment data is processed directly by the payment service provider in accordance with its own privacy policies and applicable regulations.

8. International transfers

If providers located outside the European Economic Area are used, international transfers will only take place where adequate safeguards exist under the GDPR, such as European Commission adequacy decisions or standard contractual clauses.

9. User rights

The user may exercise the following rights at any time: access, rectification, erasure, objection, restriction of processing, data portability, and withdrawal of consent at any time where processing is based on it.

To exercise these rights you may send a request to: pushgrow@pggrupo.com.

The request must allow the requester to be identified and must specify the right they wish to exercise.

10. Complaints

If you believe that the processing of your personal data does not comply with applicable regulations, you may file a complaint with the Spanish Data Protection Agency (AEPD).

11. Information security

Push & Grow applies appropriate technical and organizational measures to protect information against unauthorized access, loss, destruction, alteration or disclosure, including: encrypted HTTPS connections, secure password storage, access controls, backups, security monitoring, and regular system updates.

However, no system can guarantee absolute security.

12. Data processed by our customers

Push & Grow's customers may use the platform to collect personal data from their own users through promotional campaigns, forms or QR codes. In these cases: the customer is the controller of that data; Push & Grow will act, where applicable, as processor; and the customer is responsible for properly informing their users and obtaining the necessary consents under applicable regulations.

13. Minors

Push & Grow's services are not directed at persons under 18 years of age. We do not knowingly collect personal data from minors. If we detect that a minor's data has been provided without appropriate authorization, we will proceed to delete it.

14. Changes to this Privacy Policy

We may modify this Privacy Policy to adapt it to legal, technical or service-related changes. Modifications will be published on this page indicating the date of the last update. Where changes are significant, we will inform users through our usual communication channels.

15. Contact

If you have any query related to this Privacy Policy or the processing of your personal data, you may contact:

NERO TRADING, S.L.
C/ Mayor San Jaime, 46, 2º, 12540 Vila-real (Castellón), Spain
Email: pushgrow@pggrupo.com