Trust Center

Rumbleo

Trust Center for customers, IT, and compliance

A single entry point for reviewing how Rumbleo approaches privacy, security, providers, data processing, and compliance assessments

Last updated: May 4, 2026

This page summarizes public controls and documents. Signed agreements, security annexes, and customer-specific terms prevail over this public information where they differ

Review by document

Select a compliance document

Each tab is a complete document inside the Trust Center. Privacy Policy and Terms of Use also have their own Trust Center URLs

Privacy Policy

Privacy Policy

Document last updated: May 4, 2026

Rumbleo privacy policy integrated into the Trust Center, explaining how SALATECH CONSULTING SL processes personal data

This policy applies to Rumbleo usage, commercial requests, support, and relationships with customer organizations. Where Rumbleo processes customer data on the customer's behalf, the DPA also applies

01

Controller and contact

  1. 1.1Controller: SALATECH CONSULTING SL, NIF B25967928, Calle Uncastillo 7, 50008 Zaragoza, Spain
  2. 1.2Privacy contact: info@salatechconsulting.com and +34 606 589 356
  3. 1.3If an account belongs to a customer organization, some requests may need to be coordinated with that organization where it acts as controller

02

Who this applies to

  1. 2.1Authorized Rumbleo users
  2. 2.2Organization administrators and authorized internal personnel
  3. 2.3Commercial or support representatives of customer organizations
  4. 2.4People whose data appears in information connected or uploaded by a customer organization
  5. 2.5Rumbleo is built for professional B2B use and is not aimed at minors or consumers

03

Personal data we may process

  1. 3.1Identification and contact data: name, professional email, phone, company, position, or role
  2. 3.2Access and security data: identifiers, managed or encrypted credentials, IP, browser, device, date, time, and authentication events
  3. 3.3Usage data: questions, agents used, settings, answers, functional activity, usage, errors, execution timings, and audit metadata
  4. 3.4Customer data: personal data a customer organization connects, uploads, or generates through Rumbleo under its own legal basis and instructions

04

Purposes

  1. 4.1Create and manage accounts, authenticate users, and protect sessions
  2. 4.2Provide the service, answer analytical questions, maintain conversations, apply permissions, control usage limits, and generate results
  3. 4.3Audit activity, investigate errors, prevent abuse, protect systems, control costs, and improve product quality
  4. 4.4Respond to requests, manage commercial relationships, send service communications, and provide support
  5. 4.5Comply with legal or contractual obligations

05

Legal basis

  1. 5.1Performance of a contract or pre-contractual measures
  2. 5.2Legitimate interest in security, support, abuse prevention, technical audit, service improvement, and claims defense
  3. 5.3Compliance with legal obligations
  4. 5.4Consent where required, with the possibility to withdraw it without affecting prior processing

06

AI, training, and data boundary

  1. 6.1SALATECH does not sell personal data
  2. 6.2Rumbleo does not use customer data, conversations, answers, semantic models, attachments, or insights to train models
  3. 6.3Analytical credentials and connections are not given to AI providers and do not leave Rumbleo control
  4. 6.4Where an approved AI provider is used, processing is limited to the content needed to provide the feature and under business/API terms with no training by default unless explicitly opted in

07

Recipients, subprocessors, and transfers

  1. 7.1We may use providers for infrastructure, authentication, storage, communications, security, technical analytics, AI, deployment, and support
  2. 7.2The subprocessors list is available inside this Trust Center
  3. 7.3Where international transfers occur, we apply safeguards recognized by applicable law, such as adequacy decisions, standard contractual clauses, or other valid mechanisms

08

Retention and rights

  1. 8.1We retain data for as long as needed to provide the service, maintain the contractual relationship, respond to requests, comply with legal obligations, and manage liabilities
  2. 8.2Activity and security logs are retained for periods needed for traceability, support, quality, security, and claims defense
  3. 8.3You may request access, rectification, deletion, objection, restriction, portability, and withdrawal of consent where applicable
  4. 8.4To exercise rights, contact info@salatechconsulting.com with the right requested and the information needed to identify you

09

Complaints and changes

  1. 9.1You can contact SALATECH first so we can review any privacy issue
  2. 9.2You may also lodge a complaint with the Spanish Data Protection Agency at www.aepd.es
  3. 9.3SALATECH may update this policy to reflect legal, technical, functional, or commercial changes. The current version will be available on this page

Need this for a security review?

Contact info@salatechconsulting.com for vendor questionnaires, additional evidence, or contract annexes

Request a demo