The short version

  • We collect as little as we can. To subscribe, you give us your email address and nothing else.
  • This website sets no cookies and stores nothing in your browser.
  • We use a few services to run things: a web hosting provider in the EU, Beehiiv (newsletter) and Cloudflare (visitor statistics without cookies). They work for us under contract.
  • We never sell your data.
  • You can unsubscribe with one click in any email, and ask us to see, correct or delete your data at any time: hello@plexormedia.com.

The rest of this page gives the details.

Who is responsible

RelatableAI is published by:

PlexorMedia, S. de R.L. de C.V.
Calle 25 No. 220, San Miguel
Mérida, Yucatán, 97140
Mexico

Email for anything about your data: hello@plexormedia.com

We are the “controller” under the EU’s General Data Protection Regulation (GDPR) and the “responsable” under Mexico’s Federal Law on the Protection of Personal Data Held by Private Parties (LFPDPPP, 2025).

What we collect, and why

1. When you visit the website

What: When your browser asks for a page, our hosting provider automatically records technical details in its server logs: the time, your IP address, the page or file requested, your browser and device type, the country worked out from your IP address, and whether the request worked.

Why: To deliver the site, keep it secure and fix errors.

Kept for: only as long as our hosting provider needs them to run and protect its servers. The logs we can see cover the last 7 days, and we don’t keep copies.

Legal basis (GDPR): our legitimate interest in running a secure, working website (Article 6(1)(f)).

2. Visitor statistics

What: We use Cloudflare Web Analytics to count visits. It records the page you viewed, the page you came from and how fast the page loaded. It uses no cookies and no browser storage, and Cloudflare says it does not use your IP address to identify you or track you across sites.

Why: To learn which articles and guides people find useful.

Legal basis (GDPR): our legitimate interest in understanding, in aggregate, how the site is used (Article 6(1)(f)).

3. When you subscribe, ask to be notified, or get a guide

What you give us: your email address. That’s the only field.

What we add: the address of the page where you signed up, and any campaign tags in that page’s link (for example, “came from our X post”). This tells us which posts bring readers, not who you are.

How it works:

  1. You enter your email on our site.
  2. Our own sign-up script, running on our hosting provider’s server, passes it to Beehiiv. Beehiiv never sees your IP address at this step.
  3. Beehiiv emails you a link to confirm you really want to subscribe (double opt-in). No confirmation, no newsletter.
  4. Once you confirm, you get a welcome email, then the newsletter every Thursday. If you signed up for a guide, the welcome email includes the link to the PDF.

Stopping abuse: to block bots and repeated sign-ups, our script briefly keeps a scrambled code made from your IP address (never the address itself) and the time of your attempt. It’s ignored after one hour and deleted at the next sign-up after that. A hidden form field also catches bots: if it’s filled in, nothing is sent anywhere.

Legal basis (GDPR): your consent (Article 6(1)(a)), which you can withdraw at any time by unsubscribing. Abuse prevention: our legitimate interest in keeping the sign-up form safe (Article 6(1)(f)).

4. What the newsletter measures

Like most newsletters, ours uses Beehiiv’s standard reporting: whether an email was opened (through a tiny image in the email) and which links were clicked. When you open an email or click a link, Beehiiv also processes technical details such as your IP address and device type.

Why: To see which topics are useful, and to stop sending to addresses that never open.

If you’d rather not be measured: set your email app to not load images automatically. That blocks the open count. You can also unsubscribe at any time.

Legal basis (GDPR): your consent when subscribing, which covers this measurement as part of the newsletter (Article 6(1)(a)).

5. When you email us or reply to the newsletter

What: your email address, your name if you include it, and whatever you write.

Why: To answer you, and to learn what readers want.

Legal basis (GDPR): our legitimate interest in replying to messages people send us (Article 6(1)(f)).

6. Our social media profiles

We publish on X, Instagram, Facebook, TikTok and YouTube. When you follow, comment or message us there, the platform processes your data under its own privacy policy. We see what any account holder sees (your public profile and what you send us), plus summary statistics from the platform.

For our Facebook Page, Meta provides “Page Insights” statistics. For these, we and Meta Platforms Ireland Ltd. are joint controllers under Article 26 GDPR, and Meta has agreed to take primary responsibility for them. See Meta’s Page Insights Controller Addendum.

Links to our profiles on this site are plain links: nothing from those platforms loads until you click.

What we don’t do

  • No cookies on this website, and no browser storage.
  • No advertising trackers, no Google Analytics, no Facebook pixel.
  • No embedded content from other sites. Our fonts and images are stored on our own server.
  • We never sell your personal data.
  • No automated decisions about you.

Who helps us (our processors)

These companies process data on our behalf, under contract, and only for the purposes above:

ServiceWhat it doesWhereSafeguard
Web hosting providerWebsite hosting, server logs and the sign-up scriptCompany based in the European UnionGDPR data processing addendum, with EU Standard Contractual Clauses for any data handled outside the EU
Beehiiv Inc.Sending the newsletter, storing subscribers, reporting opens and clicksUnited StatesData processing addendum with EU Standard Contractual Clauses
Cloudflare, Inc.Visitor statistics, without cookiesUnited States and worldwideData processing addendum with EU Standard Contractual Clauses; Cloudflare is also certified under the EU–US Data Privacy Framework

Under Mexican law, sending data to these providers is a remisión to processors (encargados), not a transfer that needs your consent.

We’ll only share your data with anyone else if the law requires it, for example a court order.

Sponsors

Some issues may include sponsored sections, always clearly labelled. Sponsors never receive your email address or any data about you. We only tell them totals, like how many readers clicked their link.

How long we keep it

  • Subscribers: until you unsubscribe. After that, Beehiiv keeps your address on a “do not email” list so you’re never mailed again by mistake. Ask us and we’ll delete it completely.
  • Unconfirmed sign-ups: if you never click the confirmation link, you won’t get any newsletters. Ask us and we’ll delete the address.
  • Anti-abuse codes: up to about one hour, then deleted at the next sign-up.
  • Server logs: kept by our hosting provider for the short time it needs them for operation and security. The logs we can see cover the last 7 days, and we don’t keep copies.
  • Emails you send us: as long as needed to deal with them, and no longer than 24 months.

Your rights

Wherever you live, you can ask us to:

  • see the data we hold about you (access);
  • correct it (rectification);
  • delete it (erasure, or cancelación in Mexico);
  • object to how we use it, or restrict it (oposición in Mexico);
  • receive it in a common file format (portability);
  • withdraw your consent at any time, for example by unsubscribing. This doesn’t affect what we did before you withdrew it.

In Mexico these are your ARCO rights (access, rectification, cancellation and opposition).

How: email hello@plexormedia.com from the address you subscribed with, and say what you’d like. It’s free. If we need to check your identity, we’ll ask for the minimum. We’ll reply within 20 business days.

Complaints: we’d like to hear from you first. You can also complain to a data protection authority. In the EU and EEA, that’s usually the authority where you live. In Mexico, it’s the Secretaría Anticorrupción y Buen Gobierno.

Age

RelatableAI is meant for adults. Please don’t subscribe if you’re under 16.

Security

The site is served over an encrypted connection (HTTPS). Our sign-up script never writes your email address or IP address into its logs. Access to the accounts we use to run RelatableAI (hosting, newsletter and analytics) is limited to the people who run it and protected with two-factor authentication.

Changes to this notice

If we change how we use your data, we’ll update this page and the date at the top. If the change matters, for example a new service that receives your data, we’ll also tell subscribers in the newsletter before it takes effect.