Privacy Policy

Last update: 17/11/2024

Introduction

AtSeedext, protecting your privacy and ensuring the security of your personal information is our priority. This privacy policy applies to all users and details how we collect, use, store, and protect your data when you use our platform, in full compliance with applicable regulations, including theGeneral Data Protection Regulation (GDPR).

Company Information:

  • Name: Seedext
  • Form: Simplified joint-stock company (SAS)
  • Capital: 1,000 euros
  • Head Office: 18 rue des Graviers, 92200 Neuilly Sur Seine
  • Registration: Nanterre Trade and Companies Register under number B 913 143 632
  • Website: www.seedext.com
  • Webapp: app.seedext.com

Data Protection Commitment:

We are committed to maintaining the confidentiality and security of your information by adhering to regulatory standards.

By using our platform and acknowledging this privacy policy, you consent to our methods of handling your data. Should you disagree, you have the right to cease using our services, recognizing that acceptance of this policy is required for access to certain areas of the platform.

Global Applicability:

Our privacy practices adhere to international standards, providing protection regardless of your location or the origin of the data.

We encourage you to review this policy thoroughly to understand our approach to data privacy and take note of your rights and responsibilities concerning your personal information.

Data Collected

We collect various types of personal and non-personal data in the course of providing our services:

  • Personal Information: name, email address, phone number.
  • Google Account Data: for users connected via Google OAuth, we access the following information:
    • Non-sensitive: primary email address and profile information.
    • Sensitive: read and write access to your Google Calendar events.
  • Usage Data: login logs, actions performed on the platform.
  • Technical Data: IP address, browser type and version, operating system, device information.
  • Transaction Data: payment information, purchase or subscription history.
  • Analytical Data: anonymized data for analysis.

Data Usage

We use the personal data collected for the following purposes:

  • To provide and improve our services: to perform platform functions, such as Google Calendar event integration, notifications, and customer support.
  • Personalization of the user experience: to tailor content and recommendations based on your preferences.
  • Security and protection: to use information such as error logs and technical data to secure our platform and prevent fraud.
  • Legal compliance: in certain cases, to use data to comply with legal obligations or respond to requests from competent authorities.

Access to Google Data and Purpose of Use

Seedext uses Google OAuth permissions to access the following information in your Google account:

  • Email address and profile: to authenticate your Seedext account with Google.
  • Read-only access to calendar events: to synchronize your Google Calendar events and allow you to manage them from within our platform.

These data are used strictly for Seedext’s functionalities and are never shared with third parties for other reasons.

Data Encryption and Isolation

All sensitive data, including recordings, transcriptions, and voice data, are processed and stored on secure servers using the most advanced encryption and isolation protocols to ensure optimal protection.

  • Data Encryption: data is encrypted both at rest and in transit. We use HTTPS with TLS 1.3 for all communications between servers and users' devices, ensuring end-to-end encryption to protect against unauthorized interception.
  • Isolation via Virtual Private Clouds (VPC): data is stored on servers isolated within Virtual Private Clouds (VPCs), which strictly limit access to internal resources and prevent external intrusion. This isolation ensures that sensitive data is stored in secure and compartmentalized environments.
  • Restricted Access: only authorized employees with specific needs to deliver and maintain the service can access the data, strictly following security protocols.

Data Sharing with Third Parties

We only share personal information with third parties when necessary to provide our service or for legal reasons. Our partners include:

  • Service providers: payment services (Stripe, GoCardless) and cloud hosting (Google Cloud Platform). These third parties are required to process your information securely and in compliance with GDPR.
  • Legal authorities: in the case of legal or regulatory requests, we may be required to disclose information to competent authorities.

Your data is never sold or rented to third parties for commercial purposes.

Data Retention

We retain your personal data only as long as necessary to fulfill the purposes described or to comply with our legal obligations.

  • Account Data: retained as long as your Seedext account is active.
  • Usage and Technical Data: temporarily retained for security and platform improvement purposes.
  • Transaction Data: retained for accounting and tax purposes.
  • Google Calendar Data: accessed in real-time but not permanently stored. You can revoke access at any time through your Google account settings.

Any account deletion request will result in the permanent deletion of all related information within 24 hours, unless legally required to retain it for a longer period.

Data Security

Seedext uses advanced security protocols to protect your information:

  • Encrypted communications: all communications are secured with HTTPS and TLS 1.3 for optimal encryption.
  • Data at rest encryption: stored data is also encrypted for maximum protection.
  • Isolation: through Virtual Private Clouds (VPC), our servers and sensitive data are isolated from other parts of the infrastructure to prevent unauthorized access.
  • Strict access control: data access is limited to authorized personnel, and all access is monitored and recorded.

Your Rights

Under GDPR and other laws, you have rights over your personal data:

  • Right of access: obtain a copy of your data.
  • Right to rectification: correct inaccurate information.
  • Right to erasure: request the deletion of your data.
  • Right to restrict processing: limit the processing of your data.
  • Right to object: object to certain types of processing.
  • Right to data portability: receive your data in a structured format.

To exercise your rights, please contact us at support@seedext.com. We will respond within 30 days.

Changes to the Privacy Policy

Seedext may update this policy to reflect changes in our platform or legal requirements. You will be notified of any significant changes via email or a notification on our site.

Contact

For any questions or to exercise your rights, please contact us at support@seedext.com.