We at Sinatra LTDA (Sinatra) are committed to complying with personal data protection laws, guaranteeing the rights of Data Subjects ("You") and the guidelines of the National Data Protection Agency (ANPD). Therefore, we have prepared this Privacy Policy ("Policy") with the aim of clearly and objectively informing you how we collect, process and protect your personal data in the context of the provision of our services.
Thus, to ensure transparency about the processing of personal data carried out by Sinatra, we make this Policy public.
On this website, the person responsible for the processing of the personal data collected is SINATRA LTDA, registered with the CNPJ n. 52.603.308/0001-25, headquartered at Rua Visconde de Pirajá, 414 - Ipanema, Rio de Janeiro - RJ, 22.410-905.
If you have any questions or need more information, please contact us by email: privacidade@sinatra.pro
To understand this Policy, we present some definitions below:
National Data Protection Agency (ANPD): is the public administration body responsible for ensuring, implementing, and supervising compliance with the LGPD;
Controller: natural or legal person who is responsible for decisions regarding the processing of personal data.
Operator: natural or legal person, under public or private law, who processes personal data on behalf of the controller.
Personal data: information related to an identified or identifiable natural person.
Sensitive personal data: personal data on racial or ethnic origin, religious belief, political opinion, membership in a union or organization of a religious, philosophical or political nature, data related to health or sex life, genetic or biometric data, when linked to a natural person.
Person in charge of the Processing of Personal Data or "Person in Charge": an individual or legal entity appointed by the controller and operator, to act as a communication channel with the data subjects and the National Data Protection Agency (ANPD).
General Law for the Protection of Personal Data or "LGPD": refers to Law No. 13,708/2018, which provides for the processing of personal data, including in digital media, by an individual or by a legal entity governed by public or private law;
Subject: identified or identifiable natural person to whom the Personal Data processed refers, including leads, customers, service providers and Sinatra employees, depending on the specific case.
Processing: any operation carried out with personal data, such as those referring to the collection, production, reception, classification, use, access, reproduction, transmission, distribution, processing, filing, storage, elimination, evaluation or control of information, modification, communication, transfer, dissemination or extraction.
Website: refers to the official website managed and administered by Sinatra, including all of its content, functionality and services made available through this website.
Website user: holder of Personal Data who visits and uses Sinatra's website through the domain https://www.sinatra.pro/pt;
Sinatra will act as a Personal Data Operator in relation to its customers (Companies that trade online) when hiring Sinatra Software, considering that most of the purposes of use of the personal data processed are under their responsibility, in which case Sinatra will process personal data on behalf of this controller and following its guidelines. In other words, in general, we process data on behalf of Clients and meet the purposes they define.
With regard to website users and suppliers, Sinatra acts as a controller, when it is up to the organization to make decisions regarding the processing of personal data.
In relation to your personal data, you have a number of rights! However, depending on your relationship with us or our Client, you will need to observe the points below:
In this case, these rights may be exercised via e-mail at the following address: privacidade@sinatra.pro
For your knowledge, below are some of these rights:
Do you have any questions about your rights? Access here and learn about your rights.
All your data collected and/or provided through our website, other interactions with us, as well as shared by our client will be in compliance with the provisions of data protection legislation, as well as with this Privacy Policy, and will be treated as confidential, using them only for the purposes set forth herein.
The personal data we process are those shared by our customers, service providers or suppliers, as well as the data that you voluntarily enter or submit when accessing and interacting with the functionalities made available, which include:
| Personal Data Processed | Category of Holders | Purpose of Processing | Legal hypothesis that justifies the processing |
|---|---|---|---|
| Corporate name and email | Site users | Return contact | Legitimate interest |
| Name, email, phone, job title | Leads | Contact and offer the product | Legitimate interest |
| Name, Email, Phone & License | Job Candidates | Participation in the selection process | Consent |
| Name, address, CPF, e-mail, telephone, CPF and bank details | Service Providers | Hiring the professional and making the payment | Contract Execution |
| Name, CPF and e-mail | Client's legal representative | To draft the contract and send it for digital signature | Contract Execution |
| Name, corporate email and phone number | Customer Contact or Focal Point | Formalize the negotiation and make the delivery of the software operationally viable. | Contract Execution |
| Name, address, CPF, e-mail and IP | Customer Consumers | So that the software can perform anomaly detection of the customer's e-commerce | Legal basis defined by the controller |
Eventually, we may use your data for purposes not provided for in this Policy, but these will be within your legitimate expectations. Any use of your data for purposes that do not comply with this prerogative will be done with your prior authorization or other appropriate legal basis.
In addition, other types of data not expressly provided for in this Privacy Policy may be collected, provided that they are provided with the consent of the data subject, or that the collection is permitted or imposed by law, such as the provisions of the Civil Rights Framework for the Internet.
We reiterate that this Policy strictly prohibits Sinatra from selling, renting, transferring, trading, or disclosing Personal Data to unauthorized third parties.
Yes, we use cookies! Cookies are text files sent by the website and stored on your device (computer, mobile phone, for example). These files contain information related to page navigation.
Cookies usually have an expiration date. Some cookies are automatically deleted when you close your browser (so-called session cookies), while others may be stored on your device for longer until they are manually deleted (so-called persistent cookies).
Sinatra uses the following types of cookies on its website:
The use of cookies is based on Sinatra's legitimate interest. Thus, if you wish to refuse the installation of these cookies on your device and/or opt for the removal of cookies, you can manage the use of cookies in the following ways:
Cookie banner: you can choose whether or not to accept the use of cookies (manage your preferences in our cookie banner), except for those strictly necessary for the operation of the website.
Browser settings: You can adjust your browser settings to disable cookies or delete them. To do this, just click on the links below, depending on the browser you use:
By disabling all cookies in your browser, some functions essential to the functioning of the website may become unavailable.
It is important to clarify that Sinatra is not responsible for the use of cookies by third parties. Please be aware that cookies installed by third parties may continue to monitor your online activities even after you have logged out of our Platform. It is recommended that you clear your browsing data regularly.
The information collected will be used for the purposes referred to herein.
We will not share your information with third parties unless it is necessary to: 1. comply with legal obligations, including (i) legal process and requirements; (ii) establishing or exercising our legal rights or defense in legal proceedings; or (iii) as required by law; 2. for the hiring of third-party service providers for the purpose of operating the Platform, in which case, the Third Parties only receive your data to the extent necessary for the provision of the contracted services.
The Sinatra website and platform are committed to protecting your privacy by applying technical and organizational measures capable of protecting your personal data from unauthorized access and from situations of destruction, loss, alteration, communication or dissemination of such data.
To ensure safety, solutions will be adopted that take into account: the appropriate techniques; the costs of application; the nature, scope, context and purposes of the processing; and the risks to the rights and freedoms of the holder.
Among the security practices we implement are:
Despite our best efforts and the measures we take, it is important to remember that due to the nature of the internet, there will always be risks. Elements that are outside of our control can be exploited by malicious actors, making it impossible to completely guarantee that there is no access to or misuse of personal data. This is a risk inherent to the use of computerized systems.
Sinatra is headquartered in Brazil and the personal data processed by Us is subject to Brazilian law.
However, this data may be transferred outside the national territory, because Sinatra uses suppliers that store personal data located in other countries, such as AWS (Amazon Web Service) located in the United States, which implies the International Transfer of Personal Data, as defined in the General Law for the Protection of Personal Data (LGPD) and Resolution CD/ANPD No. 19/2024.
We always prioritize hiring suppliers that adopt the necessary security measures to protect personal data and that carry out international transfers in accordance with the LGPD and the official resolutions and/or guidelines published by the National Data Protection Agency (ANPD) or competent body.
After its collection and reception by Sinatra, the data is stored on an online server protected against invasions, leaks and deletion of the data.
Each Client has direct access only to its own data, and only Users duly registered by the Client are authorized to access it.
The data will be stored for the period necessary to achieve the purpose for which it was collected or until the end of the processing period. After this period, they will be eliminated in accordance with our Data Retention and Deletion Policy, except in the following cases: (i) when necessary to keep them to comply with legal or regulatory obligations, such as the provisions of article 15 of the Civil Rights Framework for the Internet, article 206 of the Civil Code and article 27 of the Consumer Protection Code; (ii) for the regular exercise of rights, including in contracts and in judicial, administrative or arbitration proceedings or (iii) when the data is anonymized for Sinatra's exclusive use.
The data shared by the customer will be stored and eliminated or returned as provided for in the contract.
Sinatra, in compliance with the LGPD and Resolution 18 of the ANPD, appointed its Data Officer, as provided below:
We reserve the right to modify this Privacy Policy at any time and as many times as necessary, due to changes in our website, updates in our internal processes, or changes in the legislative scope, in order to ensure more and more security and convenience for you. Therefore, we recommend that you review it whenever possible.
In order to make it easier, we will always indicate at the end of the document the date of the last update.
Thank you for reading our Privacy Policy and we will always be available to assist you. If you have any questions or wish to obtain more information about this Policy, please contact us on the DPO channel: privacidade@sinatra.pro
Last updated: February 05, 2026.