Privacy Policy

This Privacy Policy describes how Craft collects, uses, and protects your personal data in accordance with the General Data Protection Regulation (GDPR) and the French Data Protection Act.

By using the Craft application, you accept the practices described in this policy.

1. Introduction

This Privacy Policy describes how Craft collects, uses, and protects your personal data in accordance with the General Data Protection Regulation (GDPR) and the French Data Protection Act.

By using the Craft application, you accept the practices described in this policy.

2. Data Controller

CRAFT
52 RUE JULES VERNE, 59120 LOOS, France
Email: support@bonjourcraft.com
Phone: +33 6 32 93 36 50

For any questions regarding the processing of your data, you can contact us at the email address above.

3. Data Collected

3.1. Identification data:

3.2. Professional data:

3.3. Geolocation data:

3.4. Connection data:

3.5. Content data:

4. Processing Purposes

4.1. Account management:

4.2. Platform features:

4.3. Notifications:

4.4. Service improvement:

5. Legal Basis for Processing

5.1. Contract performance:

5.2. Consent:

5.3. Legitimate interest:

5.4. Legal obligation:

6. Data Recipients

6.1. Authorized Craft personnel:

6.2. Service providers:

6.3. Competent authorities:

6.4. Other users:

7. Data Transfers

7.1. Intra-EU transfers:

7.2. Transfers outside the EU:

7.3. Transfer security:

8. Retention Period

8.1. Account data:

8.2. Content data:

8.3. Connection data:

8.4. Geolocation data:

8.5. Billing data:

9. Your Rights

9.1. Right of access:

9.2. Right of rectification:

9.3. Right to erasure:

9.4. Right to restriction:

9.5. Right to portability:

9.6. Right to object:

9.7. Right to withdraw consent:

10. Exercising Your Rights

10.1. Main contact:

10.2. Response time:

10.3. Free of charge:

10.4. Identification:

10.5. Data Protection Officer:

11. Data Security

11.1. Technical measures:

11.2. Organizational measures:

11.3. Incident management:

11.4. Data breach:

12. Cookies and Similar Technologies

12.1. Technical cookies:

12.2. Analytics cookies:

12.3. Personalization cookies:

12.4. Cookie management:

12.5. Third-party cookies:

13. Third-Party Integrations

13.1. Integrated platforms:

13.2. Nature of integrations:

13.3. Shared data:

13.4. Third-party policies:

13.5. Google OAuth Authentication:

14. Modifications of this Policy

14.1. Update:

14.2. Notification:

14.3. Acceptance:

15. Contact, Complaints and Emergency Procedures

15.1. General questions:

15.2. Data Protection Officer:

15.3. Supervisory authority:

15.4. Mediation:

⚠️ GDPR violations and sanctions:

  • Non-compliance with GDPR: Up to €20,000,000 fine (Art. 83 GDPR)
  • Privacy violation: Legal proceedings + 5 years in prison
  • Refusal to cooperate: Account suspension + €15,000 fine
  • Security violation: Up to €10,000,000 fine
  • Illegal data transfer: Up to €20,000,000 fine

15.6. Emergency procedures:

Last update: 17/12/2025