Data protection
Privacy Policy
This English version is provided for information only. The French version is the only legally binding text and prevails in case of any discrepancy.
1. Preamble
This policy describes how the personal data of site visitors is collected and processed, in accordance with Regulation (EU) 2016/679 (GDPR) and amended Act No. 78-17 of 6 January 1978 (the French Data Protection Act). Data protection is built into our services from the design stage (privacy by design) and our hosting is provided within the European Union.
2. Data controller
The data controller is Sparktacus (SAS), represented by R. TOUSSAINT.
Contact
Image intentionally not clickable. Please copy the address into your email client.
3. Data collected and purposes
| Data | Source | Purpose | Legal basis (article 6 GDPR) |
|---|---|---|---|
| Name, email, message content | Contact form | Responding to your request, discussing a project | Pre-contractual measures taken at your request (article 6.1.b); failing that, legitimate interest in responding (article 6.1.f) |
| Technical connection data (IP address, timestamp, pages viewed, server logs) | Browsing | Security, prevention of abuse, proper operation and maintenance of the site | Legitimate interest (article 6.1.f) |
No data is collected without your knowledge. The contact form fields are limited to what is strictly necessary (data minimisation). The demonstrations shown on the site run locally in your browser, using fictitious data : they transmit no information about you.
4. Cookies
The site uses no advertising tracking cookies or third-party audience measurement cookies. Only strictly technical cookies necessary for the operation of the site may be placed; these are exempt from consent in accordance with the recommendations of the CNIL (the French data protection authority). No profiling is carried out.
5. Retention periods
- Requests via the contact form: retained for 3 years from the last contact, then deleted or anonymised.
- Server connection logs: retained for 12 months maximum for security purposes.
6. Recipients and processors
Your data is intended solely for the data controller and is subject tono resale or commercial transfer. It may be processed by technical service providers (processors within the meaning of article 28 GDPR), acting on instructions and bound by a data processing agreement:
- Site hosting : Hostinger International Ltd. Data hosted within the European Union.
- Artificial intelligence models : as part of our services, access to language models is operated through a dedicated gateway. Your data is never used to train models, nor resold to third parties.
- Voice / telephony services : certain services (telephone switchboard) may rely on telecom and voice infrastructure providers that may be located outside the European Union. Such transfers are governed by the standard contractual clauses of the European Commission (article 46 GDPR) or any other adequate mechanism, activated before any deployment with an actual client. Failing that, no personal data is transferred outside the EU.
7. Transparency: use of artificial intelligence (AI Act)
Some of our services rely on artificial intelligence systems. In accordance with the transparency obligation (article 50 of Regulation (EU) 2024/1689), any person interacting with an automated system is informed of this. In particular, during a call handled by an automated telephone switchboard, the caller is informed that they are speaking to an assistant and not to a natural person.
8. Your rights
You have the rights ofaccess, rectification, erasure, restriction, objection and portability regarding your data (articles 15 to 22 GDPR), as well as the right to set out guidelines on the handling of your data after your death.
To exercise these rights, send your request to the contact address indicated above. A response will be provided within one month. Proof of identity may be requested in the event of reasonable doubt.
If, after contacting us, you consider that your rights are not being respected, you may lodge a complaint with the Commission Nationale de l'Informatique et des Libertés (CNIL), the French data protection authority 3 Place de Fontenoy, TSA 80715, 75334 Paris Cedex 07 www.cnil.fr.
9. Updates
This policy may be amended to reflect legal, technical or business developments.