Privacy Policy
Last updated: January 27, 2026
Introduction
This Privacy Policy describes how Daniel Montoya ("we", "our", or "us") collects, uses, and protects your personal information when you visit our website at https://montoya.com.au.
We are committed to protecting your privacy and ensuring transparency about our data practices. This policy complies with the General Data Protection Regulation (GDPR) and other applicable privacy laws.
Information We Collect
Information You Provide
- Contact Information: Name, email address, company name (when you submit the contact form)
- Message Content: The content of your inquiry or message
- Project Details: Budget, timeline, and project requirements (if provided)
Automatically Collected Information
- Usage Data: Pages visited, time spent, click patterns, and navigation paths
- Device Information: Browser type, device type, operating system, and screen resolution
- IP Address: Used for security, rate limiting, and analytics (anonymized)
- Cookies: Small text files stored on your device (see Cookie Policy below)
How We Use Your Information
We use your information for the following purposes:
- Communication: To respond to your inquiries and provide customer support
- Service Delivery: To provide advisory services, consultations, and project collaboration
- Analytics: To understand how visitors use our website and improve user experience (anonymized data)
- Security: To prevent fraud, abuse, and ensure website security
- Legal Compliance: To comply with applicable laws and regulations
Data Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:
- Service Providers: With trusted third-party services (e.g., email providers, hosting services) who assist in operating our website, subject to strict confidentiality agreements
- Legal Requirements: When required by law, court order, or government regulation
- Business Transfers: In connection with a merger, acquisition, or sale of assets (with notice to users)
- Consent: With your explicit consent for specific purposes
Data Security
We implement industry-standard security measures to protect your personal information:
- HTTPS encryption for all data transmission
- Secure server infrastructure with regular security updates
- Rate limiting and abuse prevention measures
- Regular security audits and vulnerability assessments
- Access controls and authentication for sensitive data
However, no method of transmission over the Internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Your Rights (GDPR)
Under the General Data Protection Regulation (GDPR), you have the following rights:
Right to Access
Request a copy of your personal data we hold
Right to Rectification
Correct inaccurate or incomplete personal data
Right to Erasure
Request deletion of your personal data ("right to be forgotten")
Right to Data Portability
Receive your data in a structured, machine-readable format
Right to Object
Object to processing of your personal data for certain purposes
Right to Restrict Processing
Request restriction of processing in certain circumstances
To exercise any of these rights, please contact us at vzgk5g0m@anonaddy.me. We will respond within 30 days.
Cookies
We use cookies and similar technologies to enhance your experience:
- Essential Cookies: Required for website functionality (cannot be disabled)
- Analytics Cookies: Help us understand website usage (anonymized)
- Preference Cookies: Remember your settings (e.g., dark mode)
You can control cookies through your browser settings. Note that disabling cookies may affect website functionality.
Third-Party Services
We use the following third-party services that may collect information:
- Vercel Analytics: Website analytics (privacy-friendly, no cookies)
- Resend: Email delivery service (for contact form submissions)
- Cal.com: Appointment scheduling (if you book a consultation)
These services have their own privacy policies. We recommend reviewing them.
Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law. Contact form submissions are retained for up to 2 years unless you request deletion.
Children's Privacy
Our website is not intended for children under 16 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. Your continued use of the website after changes constitutes acceptance of the updated policy.
Contact Us
If you have questions, concerns, or wish to exercise your rights regarding this Privacy Policy, please contact us: