Privacy policy

Last updated: June 19, 2026

1. Data controller

The controller responsible for the personal data collected and processed through timedivers.net and the TimeDivers service is:

FA comunicación S.L.
Tax identification number (NIF): B-82672163
Registered office: C/ Oña, 151, 28050 Madrid, Spain
Email: info@timedivers.net
Telephone: +34 91 413 28 35

This policy applies to people who visit timedivers.net, create or use an account, purchase a plan, view content published or shared through the platform, request support or act as representatives of an organization using the service.

The use of cookies and similar technologies is explained in the Cookie Policy.

2. What data we process

When an account is created and used, we process the data necessary to identify the user, authenticate them and administer the service, such as the username, email address, secured password, any profile information they choose to provide, language, assigned plan and account status.

Free registration initially requires a username and an email address. The user receives a link to set their password and activate the account.

When a paid plan is purchased, we process the identification, contact and billing details provided during the purchase, as well as information relating to the order, plan, subscription, payments and renewals. TimeDivers may receive limited information from the payment provider about the payment method used, but it does not store the full card number or security code.

We also store the content and files that users add to their timelines, such as texts, dates, images, documents, linked videos, tags, attribution and licensing data, visual settings and information contained in imported files. This content may include personal data relating to the user or to other people.

When the site is accessed or the service is used, we may process technical and security data such as the IP address, date and time of access, browser, device, requested pages, session identifiers, login attempts, errors and events relating to possible attacks, fraud or abusive use.

If the user accepts analytics cookies, Google Analytics collects information about browsing and use of the site, such as pages viewed, interactions, approximate session duration, device type, language, source of the visit and approximate geographical location.

When someone contacts TimeDivers, we process their contact details, the content of their enquiry, any files they voluntarily provide and the information necessary to investigate and resolve the request.

We may also receive information from providers involved in payments, organizations that provide details about their representatives, users who add information about third parties, and technical providers or public authorities where necessary to manage an incident or comply with a legal obligation.

3. Purposes for which we use data and legal basis

Purpose

Data used

Legal basis

Create, authenticate and administer accounts, and manage profiles, passwords, plans and access to the service

Registration, account and activity data

Performance of a contract or steps taken at the user's request before entering into a contract

Provide TimeDivers features, store and display timelines, and manage files, visibility, imports, exports, links and embedded content

User content and service settings

Performance of a contract

Process orders, payments, renewals, cancellations, refunds and billing

Identification, billing, order, subscription and transaction data

Performance of a contract and compliance with legal obligations

Send necessary communications about the account, security, payments, subscription, support or material changes to the service

Contact and account data

Performance of a contract, compliance with legal obligations or legitimate interests

Protect accounts and the service, prevent unauthorized access, fraud, attacks and abusive use, investigate incidents and defend claims

Technical data, logs and security events

Legitimate interests and compliance with security obligations

Measure and analyse use of the site through Google Analytics

Analytics and browsing data

Consent

Respond to legal requests, claims and reports of unlawful content

Data relating to the request or affected content

Compliance with legal obligations and legitimate interests

Consent to analytics cookies may be withdrawn at any time through the cookie settings panel, without affecting processing carried out before its withdrawal.

TimeDivers does not currently use account data to send newsletters or recurring marketing communications.

We do not make decisions based solely on automated processing that produce legal effects concerning users or similarly significantly affect them. Security tools and payment providers may use automated systems to detect suspicious activity, fraud or attacks. Users may request a review of a measure affecting their account by writing to info@timedivers.net.

4. Data required to use the service

Data marked as mandatory is necessary to create an account, provide the requested functionality, purchase a plan, process a payment or issue an invoice.

Failure to provide this data may prevent the account from being created or activated, access to certain features, the purchase or renewal of a plan, or the handling of an enquiry.

Optional fields may be left blank unless the information later becomes necessary for a specific operation requested by the user.

5. Timeline visibility

The user selects the visibility of each timeline from the options available under their plan.

Public timelines may be viewed by anyone, appear on the TimeDivers website and in search engines, be shared through links, embedded on third-party websites, and copied, downloaded, archived or reproduced by other people.

Unlisted timelines are not intended to appear in TimeDivers's general public listings, but anyone who has the link can access them. The link can be forwarded, so this option should not be considered confidential or equivalent to a private timeline.

Private timelines are accessible only to the account owner, without prejudice to the limited technical access that may be strictly necessary for maintenance, security, support or compliance with legal obligations.

Users should not publish personal information that they do not want to be accessible under the selected visibility level.

When content has been public, shared, embedded, downloaded or exported, copies may remain in search engines, caches, web archives, external websites, screenshots or third-party devices. TimeDivers can remove content from its own systems, but it has no control over copies made outside TimeDivers.

6. Personal data relating to other people

A user who adds third-party personal data to a timeline is responsible for ensuring that they are entitled to process and, where applicable, publish it lawfully. They must also limit the information to what is necessary, respect the rights of the people concerned and avoid the unjustified publication of sensitive or confidential data.

TimeDivers does not request the inclusion of special categories of data, such as information concerning health, political opinions, religion, trade union membership, genetics, biometrics, sex life or sexual orientation. This type of information should not be included unless there is a sufficient legal basis for doing so.

When a company, professional, educational institution, public authority or other organization adds personal data to its timelines, it is responsible for complying with the obligations applicable to it under data protection law.

Anyone who believes that their data has been published unlawfully may use TimeDivers's procedure for reporting unlawful content.

7. Providers, recipients and external services

We use the following providers to operate TimeDivers:

IONOS provides the contracted web hosting, infrastructure, databases, email, backup and recovery services.

WooPayments, Automattic, Stripe, banks and the providers of the payment method selected by the user process the information necessary to authorize transactions, manage subscriptions and renewals, prevent fraud and handle refunds, disputes or chargebacks. Some of these providers act as independent controllers in relation to the processing they carry out to comply with their own obligations.

Google processes analytics data when the user accepts the corresponding cookies and may also be involved when the user selects a payment method provided by Google.

Wordfence and Defiant may process IP addresses, technical information and security events to protect the site against malware, attacks and unauthorized access.

TimeDivers provides its tax and accounting advisers with the customer, order, invoice and transaction data necessary to comply with its obligations.

Data may also be disclosed to the Spanish Tax Agency, courts, law enforcement authorities, data protection authorities and other public bodies where there is a legal obligation or a valid request.

When a user publishes or shares a timeline, its content becomes accessible in accordance with the selected visibility level.

TimeDivers does not sell or rent personal data.

Events may include videos hosted on YouTube or Vimeo and links to other websites. TimeDivers does not host those videos. When a visitor interacts with external content, the relevant provider may receive the IP address, browser and device information, the page from which the request is made, and its own identifiers or cookies. From that point onwards, the external provider's terms and policies apply.

8. International transfers

Some providers, such as Google, Automattic, Stripe or Defiant, may process data from countries outside the European Economic Area or use subprocessors located in those countries.

Where an international transfer takes place, safeguards recognized by data protection law will be used, such as a European Commission adequacy decision, participation in the EU-U.S. Data Privacy Framework, standard contractual clauses or other legally valid mechanisms.

Publishing a timeline allows its content to be viewed from any country.

9. Data retention

Account data and content created or stored by the user will be retained for as long as the account remains active.

When the user deletes their account, their profile data and associated content will be removed from TimeDivers's active systems. This deletion will not affect order, billing or payment data, or any other information that TimeDivers must retain to comply with legal obligations or address potential liabilities.

Orders, invoices and supporting documents will be retained for the applicable tax, commercial and accounting periods. Support enquiries and communications will be kept for as long as necessary to handle them and, afterwards, for as long as liabilities may arise.

Technical and security logs will be retained for a limited period proportionate to their purpose. Where they relate to an attack, fraud, incident or claim, they may be kept for as long as necessary to investigate the matter or defend legal rights.

Analytics data will be retained for the period configured in Google Analytics. The duration of cookies is detailed in the Cookie Policy.

Data deleted from active systems may remain temporarily in backups until the ordinary retention cycle ends and the data is overwritten or deleted. These backups are used exclusively for recovery following failures or incidents.

10. Security

TimeDivers applies technical and organizational measures designed to protect data against unauthorized access, loss, alteration, disclosure or unlawful destruction.

These measures include access controls, credential protection, validation of sessions and permissions, file checks, backups and tools for detecting malicious activity.

No Internet-connected service can guarantee absolute security. Users must protect their credentials, use a strong password and report any suspected unauthorized access.

11. Minors

TimeDivers is not directed at children under the age of 16 and does not allow them to create an individual account directly.

Users aged 16 or 17 may use a free account with the authorization of their parents or legal guardians. Premium and Pro plans must be purchased by a person over the age of 18 or by the minor's legal representative.

TimeDivers does not request a date of birth during registration. If TimeDivers becomes aware that an account does not meet the minimum age requirement, it may close the account and delete the associated data, except for information that must be retained by law.

12. Rights of individuals

Individuals may request access to their data, rectification or erasure, restriction of processing, object to processing based on legitimate interests, request data portability where applicable and withdraw their consent at any time.

To exercise these rights, requests may be sent to:

Email: info@timedivers.net
Postal address: FA comunicación S.L., C/ Oña, 151, 28050 Madrid, Spain

The request must make it possible to identify the person, account or data concerned and the right they wish to exercise. TimeDivers may request the information strictly necessary to verify identity and prevent data from being disclosed or modified at the request of an unauthorized person.

Requests will generally be handled within one month, without prejudice to any extensions permitted by law.

Anyone who believes that the processing of their data does not comply with the law may lodge a complaint with the Spanish Data Protection Agency. We recommend contacting TimeDivers first to try to resolve the matter.

13. Changes and contact

TimeDivers may update this policy to reflect legal, technical or organizational changes, or changes relating to TimeDivers's providers and features.

The version in force will be the version published on timedivers.net and identified by its last-updated date. Changes that materially affect users' rights or the use of their data will be communicated through appropriate means before they take effect.

For any questions about this Privacy Policy or the processing of personal data:

FA comunicación S.L.
C/ Oña, 151
28050 Madrid, Spain
Email: info@timedivers.net
Telephone: +34 91 413 28 35