PRIVACY POLICY

AZKUE FUNDAZIOA, as the organising body of EMYA 2026, respects the privacy of users and the confidentiality and security of personal data, in accordance with applicable data protection legislation, specifically Regulation 2016/679 of the European Parliament and of the Council of 27 April 2016, and its implementing regulations. To this end, AZKUE FUNDAZIOA has adopted the necessary technical and organisational measures to prevent the loss, misuse, alteration, unauthorised access and theft of the personal data provided, taking into account the state of technology, the nature of the data and the risks to which it is exposed.

In cases where the provision of personal data is necessary to access any of the services offered by EMYA 2026, the processing of such data will be based on the provisions of this privacy policy.

1. Who is responsible for data processing?

The entity responsible for processing personal data collected through the EMYA 2026 website is:

  • Responsible entity: AZKUE FUNDAZIOA
  • Tax ID number: B95546396
  • Address: Agoitz Plaza 1, 48015 Bilbao, Bizkaia
  • Contact email address (privacy): info@euskararenetxea.eus
  • Telephone number: 94 402 80 81
  • Data Protection Officer (DPO):
    Head of the Information Security and Data Protection Section (Gran Vía 2, 6º- 48001 Bilbao)

2. What data do we process?

Depending on how you use the website, we may process:

  • Identification and contact details: name, surname, email address, telephone number.
  • Professional details: institution/company, position, country, etc.
  • Registration/purchase details: type of ticket/rate, discount codes, notes (if there is a free field for that).
  • Billing: company name, tax identification number/VAT number, billing address, billing email address.
  • Payments: we do not store complete card details. Payment is managed through Redsys, which may process transaction identifiers and data necessary to process the payment.
  • Image/voice: photographs and/or video during the event.
  • Technical data: IP, online identifiers, logs and data derived from cookies/analytics.

3. Why and on what legal basis do we process your data?

A. Management of your registration/enrolment and attendance at the conference

  • Purpose: to process your registration, validate your fee, send you operational information (confirmations, programme changes, logistical information), accreditation and access control.
  • Legal basis: contract performance /pre-contractual measures (Art. 6.1.b GDPR).

B. Payment management, invoicing, and accounting/tax obligations

  • Purpose: to manage payments, issue invoices/receipts, manage returns/incidents, and comply with legal obligations.

  • Legal basis: contract performance (Art. 6.1.b) and compliance with legal obligations (Art. 6.1.c GDPR).

C. Enquiry handling (contact form or email)

  • Purpose: to respond to requests for information.

  • Legal basis: legitimate interest (Art. 6.1.f) or consent if required by the channel (Art. 6.1.a).

D. Non-commercial informative communications (operational information)

  • Purpose: to send you information necessary for your participation (schedules, changes, documentation).

  • Legal basis: contract performance (Art. 6.1.b).

E. Capture and publication of images during the event

  • Purpose: documentation and dissemination of the event (website, social media, reports, press releases).
  • Legal basis: legitimate interest (Art. 6.1.f) and/or consent when the image is the main focus or for specific uses (Art. 6.1.a).
  • Objection: you may object in accordance with the section on rights (with nuances due to legitimate interest and the context of the event).

4. Who do we share your data with? (Recipients/managers)

Your data may be communicated to:

  • Technology providers (managers): hosting, website maintenance, IT support.
  • Ticketing/registration provider: Woocommerce.
  • Payment gateway/financial institution: Redsys (manages payment and fraud prevention).
  • Event providers: accreditations, access control, credential printing, etc.
  • Public administrations when there is a legal obligation.

5. How long do we keep your data?

  • Registration and attendance: during the management of the event and, after its completion, the time necessary to deal with complaints.
  • Invoicing/payments: the periods required by law.
  • Images: for as long as they are necessary for archiving/dissemination purposes and/or until a valid objection is dealt with, where applicable.

6. Rights of users

You may exercise your rights of:

  • Access, rectification, erasure.
  • Restriction and objection.
  • Portability (where applicable).
  • Withdrawal of consent (without affecting prior lawfulness).

How to exercise these rights:

  • By sending a request to info@azkuefundazioa.eus indicating ‘Data Protection’ and attaching sufficient information to verify your identity.
  • By contacting the Data Protection Officer at AZKUE FUNDAZIOA: Head of the Information Security and Data Protection Section (Gran Vía 2, 6º- 48001 Bilbao).

7. Complaint to the supervisory authority

If you consider that the processing does not comply with the regulations, you can lodge a complaint with the competent authority, the Basque Data Protection Authority (www.avpd.eus), or the Spanish Data Protection Agency (www.aepd.es).

8. Safety measures

The data manager shall implement reasonable technical and organisational measures to protect the data and prevent unauthorised access, loss or alteration.

9. Changes to this policy

We may update this Privacy Policy when data processing methods, suppliers or legal requirements change. We will publish the current version on this website.

Last update: 09/03/2026