Back to home

Privacy policy

Last updated: July 20, 2026

This policy explains what personal data this site collects, why, how long it is kept and which rights you can exercise. It is drawn up in accordance with Regulation (EU) 2016/679 (GDPR) and French Act No. 78-17 of 6 January 1978 as amended.

1.Data controller

The data controller is the site publisher, whose full identity appears in the legal notice.

Trade name
CustomerCoeur
Registered name
To be completed
Legal form
To be completed
Share capital
To be completed
SIREN
To be completed
Companies register
To be completed
EU VAT number
To be completed
Registered office
To be completed
Phone
To be completed
Publication director
Mamadou-dian DJALO

2.No data protection officer

No data protection officer (DPO) has been appointed. Appointment is mandatory only for public bodies, large-scale systematic monitoring, or large-scale processing of sensitive data (GDPR Art. 37): a contact form falls into none of these categories.

Any request relating to your data should therefore be sent directly to hello@customercoeur.com.

3.What data is collected

This site has no database and creates no user account. Only two categories of data are involved.

Data you send us

When you fill in the contact form, you send us:

  • your first and last name (required);
  • your work email address (required);
  • your industry (required);
  • the free-text message you write (optional).

The required fields are necessary in order to reply to you: without them, the request cannot be handled. Please do not include in your message any sensitive data within the meaning of Article 9 GDPR, nor any confidential information about your own customers.

Data collected automatically

Browsing the site generates technical data:

  • the country inferred from your IP address by the hosting provider, used solely to display prices in the appropriate currency;
  • connection logs kept by the hosting provider (IP address, date, page requested, browser type), for security and technical purposes;
  • if, and only if, you consent to it, the audience measurement data described in the cookie policy.

4.Why this data is processed, and on what basis

Each processing operation rests on a specific legal basis within the meaning of Article 6 GDPR.

  • Replying to your enquiry — performance of pre-contractual steps taken at your request (Art. 6(1)(b)). You chose to write to us; we process your data in order to reply.
  • Following up with you about that enquiry, within the scope of our business — legitimate interest of the publisher in developing its business among professionals (Art. 6(1)(f)). You may object at any time, without having to give reasons.
  • Keeping the site secure and available — legitimate interest of the publisher (Art. 6(1)(f)).
  • Displaying prices in your currency — legitimate interest in presenting the service properly (Art. 6(1)(f)). The corresponding cookie is strictly necessary and exempt from consent.
  • Measuring site audience — your consent (Art. 6(1)(a) and Art. 82 of the French Data Protection Act). Nothing is stored or measured until you accept.

Your data is subject to no automated decision-making, no profiling and no resale. It is never used for advertising.

5.Who has access to your data

Your data is accessible to the publisher and to the technical providers strictly necessary to operate the site. These providers act as processors within the meaning of Article 28 GDPR: they process the data on the publisher's instructions and may not use it for their own purposes.

ProviderRoleHosting countryTransfer safeguard
Netlify, Inc.Website hostingÉtats-UnisEuropean Commission Standard Contractual Clauses
Resend, Inc.Delivery of contact form emailsÉtats-UnisEuropean Commission Standard Contractual Clauses

No data is transferred, rented or sold to third parties.

6.Transfers outside the European Union

Site hosting and delivery of contact form emails involve companies established in the United States. Your data may therefore be transferred outside the European Union.

These transfers are governed by the Standard Contractual Clauses adopted by the European Commission, supplemented where applicable by the additional technical measures implemented by those providers.

This limitation concerns the marketing site only. The CustomerCoeur solution itself is deployed on each client's own infrastructure: the support data processed by the product does not pass through this site and is not covered by this policy.

7.How long your data is kept

  • Contact enquiries: 3 years from our last exchange with you, in line with the French supervisory authority's guidance on business prospecting. After that period, the exchange is deleted.
  • Hosting provider connection logs: according to the provider's retention policy, up to twelve months.
  • Currency cookie: 30 days.
  • Consent cookie: six months, after which you are asked again.
  • Audience measurement data, where you have consented: thirteen months maximum, the ceiling set by the French supervisory authority.

8.Your rights

You have the following rights over your personal data:

  • right of access: obtain a copy of the data we hold about you;
  • right to rectification: have inaccurate or incomplete data corrected;
  • right to erasure: request deletion of your data;
  • right to restriction of processing;
  • right to object, in particular to any processing based on legitimate interest;
  • right to portability of the data you provided to us;
  • right to withdraw your consent at any time, for processing that depends on it, without affecting the lawfulness of what was done beforehand;
  • right to give directions on what becomes of your data after your death.

To exercise these rights, write to hello@customercoeur.com. We reply within one month of receiving your request. Proof of identity may be requested where there is reasonable doubt as to who is making the request.

9.Complaint to the supervisory authority

If, after contacting us, you consider that your rights are not being respected, you may lodge a complaint with the French supervisory authority.

Authority
Commission Nationale de l'Informatique et des Libertés (CNIL)
Address
3 place de Fontenoy, TSA 80715, 75334 Paris Cedex 07

10.Security

The site is served exclusively over HTTPS. Form data is stored in no database: it is sent by email and then kept in the publisher's mailbox, protected by strong authentication. Access keys to third-party services are stored as environment variables and are never exposed to the browser.

As no system is infallible, these measures constitute an obligation of means rather than of result.

11.Changes to this policy

This policy may change, in particular if new processing operations are introduced. The last update date appears at the top of the page. Where a substantial change affects processing based on your consent, that consent will be requested again.