Privacy Policy
Last updated: 02.09.2025
We value your trust and are committed to protecting your personal information. This Privacy Policy explains what data we collect, how we use it, and your rights under applicable data protection laws, including the General Data Protection Regulation (GDPR).
1. Information We Collect
When you become a customer, we collect and store the following information:
- Contact details: Name, email address, phone number
- Business details: Business name, address, postal code, country, VAT number
- Billing information: Required for invoicing and compliance with tax regulations
This data is essential for providing our services, managing your account, and fulfilling legal obligations.
2. Legal Basis for Processing
We process your personal data on the following legal bases under GDPR:
- Contract: To perform our agreement with you, such as delivering services and processing payments
- Legal obligation: To comply with tax, accounting, and other regulatory requirements
- Legitimate interest: To ensure the security of our services, maintain backups, and improve functionality
- Consent: For the use of non-essential cookies and analytics technologies
3. How We Use Your Information
We use your information for the following purposes:
- To process your orders and deliver services
- To issue invoices and manage billing
- To comply with legal and fiscal obligations
- To communicate important updates related to your account or our services
We do not sell, rent, or share your data with third parties for marketing purposes.
4. Your Rights Under GDPR
You have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Rectification: Correct inaccurate or incomplete information.
- Erasure: Request deletion of your data, except where retention is required by law (e.g., invoices).
- Restriction: Limit the processing of your data in certain circumstances.
- Portability: Request your data in a structured, machine-readable format.
- Objection: Object to the processing of your data for specific purposes.
To exercise any of these rights, contact us at:
Privacy & GDPR Contact: Hendrickx Laurent
Email: direction@alucad.fr
5. Data Storage and Backups
- All collected information (as outlined above) is stored securely in a dedicated database.
- Daily backups are performed, and backup data is retained for up to 12 weeks before being permanently deleted.
- Access to your data is strictly limited to authorised personnel.
If your data is transferred outside the EU/EEA (for example, when using third-party hosting providers), we ensure adequate protection through EU adequacy decisions or the use of Standard Contractual Clauses.
6. Data Security
- Our services run on secure Linux Ubuntu systems with regular security updates.
- All data transmitted between your device and our servers is encrypted using HTTPS with SHA-256 SSL certificates.
- Our infrastructure is protected by firewalls, intrusion detection systems, and other security measures.
7. Data Breach Notification
In the event of a suspected or confirmed data breach, we will:
- Notify affected customers promptly via the email associated with their account
- Take immediate steps to mitigate the impact and prevent recurrence
- Report the breach to relevant authorities, as required by law
8. Third-Party Services
If we use third-party providers (e.g., hosting or payment processors), they are carefully selected to ensure compliance with GDPR and other applicable data protection regulations.
9. Cookies and Tracking
Our website uses cookies for the following purposes:
- Essential cookies: Required for site functionality. These cannot be disabled.
- Analytics cookies: Used with your consent to understand how you use our website and help us improve it.
You can manage your cookie preferences through the cookie banner or your browser settings. For analytics cookies, you may also withdraw consent at any time.
10. Data Retention
We retain your personal data only as long as necessary:
- For the duration of your customer relationship
- To comply with legal obligations (e.g., tax regulations)
- For a reasonable period to resolve disputes and enforce agreements
- Analytics data is retained for no longer than 14 months before being anonymised or deleted
11. Automated Decision-Making and Children’s Data
- We do not engage in automated decision-making or profiling that produces legal or significant effects.
- Our services are not directed to children under the age of 16, and we do not knowingly collect personal data from them.
12. Contact Us
For questions regarding this Privacy Policy or your data rights, contact:
Privacy & GDPR Contact: Hendrickx Laurent
Email: direction@alucad.fr
Or: contact@alucad.com