M
Yoniliman Galvis Aguirre · yoniliman.com

Personal Data Processing Policy

This document clearly informs how personal data provided by those who interact with any section of yoniliman.com is collected, used, stored, and managed.

Data controller
Yoniliman Galvis Aguirre
Contact email
Website
yoniliman.com and all its sections
Last updated
June 16, 2026

1. Scope

This policy applies to all personal data collected through the forms, records, and systems of the yoniliman.com website, in particular:

  • The waiting list forms for the φ tetralogy (Noesis, Noema, Metanoia, and Anamnesis).
  • Registration and access to the free AI for Creators course, including Google OAuth authentication.
  • Contact forms and any other data collection mechanism enabled on the site.
  • Registration, access, and use of Studio, the editorial memory platform for authors, including authentication, manuscript storage, and sharing with test readers.

2. Data Collected

Depending on the service used, the following data may be collected:

Literary waiting list φ: email address, book of interest, date and time of registration, IP address, and data processing authorization.

New — AI for Creators course

Google OAuth Registration: full name, email address, profile picture, and unique Google ID.

Academic progress: lessons visited, quiz results per lesson, date and time of completion, and certificate issuance.

Policy acceptance: exact date and time the holder accepted this policy.

Technical data: IP address, browser type, and operating system for security and functionality.

New — Studio

Studio account: author name, email address, encrypted password and, where applicable, Google OAuth data and public author profile (biography, works, and ratings).

Works and editorial memory: manuscripts, drafts and versions, characters, timelines, notes, symbols, and structures you create or upload. This content belongs to the author and is stored privately.

Sharing and feedback: identity of the test readers you invite, access permissions, comments, feedback, and the date and time of activity on shared documents.

AI analysis (AIGor): to detect inconsistencies and narrative patterns, AIGor processes your works' content automatically. Your works are never used to train third-party AI models, and authorship always remains with the author.

Google Calendar and Google APIs (Studio): if you connect your Google Calendar, Studio accesses it solely to sync your author planner: it creates your entries in a “Studio” calendar in your account and displays your calendar events inside Studio, for your benefit and under your control. This data is not shared with third parties, is not used for advertising and is never used to train AI models. You can disconnect the integration at any time from the planner or revoke access in your Google account. Studio’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

3. Email Tracking

New — total transparency

Emails include tracking technology that automatically records:

  • Date and time sent of the email.
  • Date and time opened detected via an invisible image.
  • Number of opens of the same email.
  • Email client and device (user agent).
  • IP address approximate location from where it was opened.
  • Link clicks URL, date, time, and device.

Used exclusively to improve quality and verify certificates. Not shared with third parties.

Service via Resend (resend.com), under SOC 2 Type II standards.

You can disable image loading to prevent open tracking.

4. Purposes of processing

Data will be processed to:

  • Manage registrations.
  • Access via Google OAuth.
  • Record academic progress.
  • Issue certificates.
  • Send course communications.
  • Updates on the φ tetralogy.
  • Measure email effectiveness.
  • Handle requests and complaints.
  • Keep evidence of authorization.
  • Protect site security.
  • Operate Studio: store, organize, and preserve works, versions, and editorial memory.
  • Enable controlled sharing with test readers and manage their feedback.
  • Run AI analysis (AIGor) to detect inconsistencies and narrative patterns, without compromising authorship.

5. Data subject rights

The holder may:

  • Know, update, and rectify.
  • Request proof of authorization.
  • Be informed about data use.
  • Submit inquiries or complaints.
  • Request data deletion.
  • Revoke authorization.
  • Object to email tracking.

Holders in the European Union (GDPR)

We comply with Regulation (EU) 2016/679.

Legal basis: explicit consent (Art. 6.1.a).

Additional rights:

  • Data portability.
  • Restriction of processing.
  • Complaints to EU authorities.

6. Contact channel

Requests to ygalvis@gmail.com with name and description.

Account deletion: maximum 15 business days.

7. Providers

Google LLC, Resend Inc., and Hostinger International Ltd.

  • Google LLC: Google sign-in (OAuth) and, if you connect it, Google Calendar sync.
  • Resend Inc.: transactional email delivery (access codes and notifications).
  • Hostinger International Ltd.: web hosting and databases.

Exclusive use for technical service provision.

8. Security

Technical measures to protect against unauthorized access.

Use of HTTPS protocol and active SSL.

9. Studio: user responsibility and security

Yoniliman Galvis Aguirre, as the platform operator, is not responsible for the use that users make of Studio. All content created, stored, or shared by a Studio user is the sole responsibility of that user.

The platform only guarantees the security of the user's works through backups to preserve the information and encryption to prevent data leaks.

The user is responsible for keeping their access keys and not losing them, as well as keeping their own device free of viruses, trojans, and vulnerabilities, since the work is handled decrypted on their computer and not on the servers.

10. Retention

Retention times:

  • Course records: indefinite.
  • Tracking: 24 months.
  • Waiting list: until publication.
  • Studio works and account: kept while the account is active and deleted upon the author's request.

11. Regulatory framework

Law 1581 of 2012 and data protection regulations in Colombia.

12. Changes

The current version will always be the one published on this page.

No advertising or data sales. Purely academic and literary use.