Privacy Policy

Last updated: January 9, 2025

1. Introduction

This Privacy Policy describes how Vinícius Guerra e Ribas ("we", "us", or "our") collects, uses, and protects your personal information when you use our website viniciusgribas.dev (the "Service"). We are committed to protecting your privacy and complying with the Brazilian General Data Protection Law (LGPD - Lei Geral de Proteção de Dados) and the European General Data Protection Regulation (GDPR).

2. Data Controller

The data controller responsible for your personal information is:

Vinícius Guerra e Ribas

Location: Rio de Janeiro, RJ, Brazil

Email: viniciusgribas@gmail.com

3. Information We Collect

3.1 Contact Form Data

When you submit our contact form, we collect:

  • Full name
  • Email address
  • Message content
  • Submission timestamp

3.2 Analytics Data

We use Google Analytics to understand how visitors interact with our website. This service collects:

  • IP address (anonymized)
  • Browser type and version
  • Operating system
  • Pages visited and time spent
  • Geographic location (country/city level)
  • Referral source

3.3 Chatbot Interactions

Our AI chatbot may collect and temporarily store:

  • Questions and messages you submit
  • Conversation logs for service improvement
  • Session data (non-personally identifiable)

3.4 Newsletter Subscription

When you subscribe to our newsletter via Substack integration, your email address is collected and processed by Substack Inc. according to their privacy policy. We recommend reviewing Substack's Privacy Policy.

4. Legal Basis for Processing (LGPD/GDPR)

We process your personal data based on the following legal grounds:

  • Consent: When you voluntarily submit information through forms or chatbot interactions
  • Legitimate Interest: For analytics and service improvement purposes
  • Contract Performance: To respond to inquiries and provide requested services

5. How We Use Your Information

We use the collected information for the following purposes:

  • Responding to your inquiries and contact requests
  • Providing consulting and development services
  • Improving our website functionality and user experience
  • Analyzing traffic patterns and usage statistics
  • Sending newsletters and updates (only with explicit consent)
  • Complying with legal obligations

6. Data Sharing and Third Parties

We may share your information with the following third-party services:

  • Google Analytics: For website analytics (data anonymized)
  • Substack: For newsletter distribution
  • OpenAI: For AI chatbot functionality (conversation data only, no personal identification)
  • Netlify: For website hosting and form submissions

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

7. Data Retention

We retain your personal information for the following periods:

  • Contact form submissions: Up to 2 years or until service completion
  • Analytics data: Up to 26 months (Google Analytics default)
  • Chatbot logs: Up to 90 days
  • Newsletter subscriptions: Until you unsubscribe

8. Your Rights (LGPD/GDPR)

Under LGPD and GDPR, you have the following rights regarding your personal data:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restriction: Limit how we process your data
  • Right to Data Portability: Receive your data in a structured format
  • Right to Object: Object to certain types of processing
  • Right to Withdraw Consent: Revoke consent at any time

To exercise these rights, please contact us at: viniciusgribas@gmail.com

9. Data Security

We implement appropriate technical and organizational measures to protect your personal information, including:

  • HTTPS encryption for all data transmission
  • Secure hosting infrastructure (Netlify)
  • Regular security updates and monitoring
  • Access controls and authentication

However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

10. International Data Transfers

Your information may be transferred to and processed in countries outside Brazil, including the United States (Google Analytics, OpenAI, Substack). We ensure that adequate safeguards are in place in accordance with LGPD requirements.

11. Children's Privacy

Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Continued use of the Service after changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions, concerns, or wish to exercise your data protection rights, please contact us:

Vinícius Guerra e Ribas

Email: viniciusgribas@gmail.com

Location: Rio de Janeiro, RJ, Brazil

WhatsApp: Available via Contact Page

14. Governing Law

This Privacy Policy is governed by and construed in accordance with the laws of Brazil. Any disputes shall be resolved in the courts of Rio de Janeiro, RJ, Brazil.