Privacy Policy
Data processing, purposes, processors, retention, security and Atlas users’ rights.
Version dated
Data controller and contact
The data controller is Thomas BABLET, Entrepreneur individuel, SDLRR Corp, 197 rue du Mail, 01630 Péron, France.
For any request relating to personal data: [email protected]. For a security incident: [email protected].
Data concerned
- account and contact data needed for registration and authentication;
- billing, subscription and transaction data needed for commercial administration;
- technical and security data needed for operation, abuse prevention and diagnostics;
- content and media that users choose to store or share;
- correspondence sent to support, security or the privacy team.
Atlas is designed to encrypt sensitive product content on the client side and limit access to authorised people. The precise scope of this guarantee will be aligned with the validated production architecture before launch.
Purposes and legal bases
- Providing Atlas
- Account creation, storage, display, sharing, support and subscription management: performance of the contract.
- Security
- Account protection, abuse prevention and necessary logging: legitimate interests and security obligations.
- Billing and obligations
- Accounting, evidence and tax obligations: legal obligation and performance of the contract.
- Communications
- Transactional emails needed for accounts, deadlines and security: performance of the contract or legitimate interests, depending on the message.
Atlas is not intended to use memories or media for targeted advertising.
Service providers and recipients
Providers currently selected or being tested include Cloudflare for infrastructure and routing, Supabase for certain authentication services, and Brevo for transactional email. The payment provider will be added here once the choice is final.
These providers receive only the data needed for their role, subject to the applicable contracts, settings and safeguards.
Retention and deletion
Account content is retained while the service is actively used and then for the grace periods described in the subscription terms: 7 days of read-only access after a trial without a subscription; after a paid period, a 21-day grace period with read-only access, followed by the immediate purge of the relevant content from the active service as soon as that period expires, with no additional period.
Data needed for billing, evidence, security, legal obligations or backups is subject to separate retention periods. It is not retained indefinitely.
Your rights
Depending on the applicable rules, users may request access to, rectification, erasure, restriction or portability of their data, and object to certain processing, among other rights. Requests should be sent to [email protected].
Proof of identity may be requested only where necessary to verify the identity of the person making the request. Data subjects may also contact the competent supervisory authority, including the CNIL in France.
Cookies and trackers
Atlas does not plan to use advertising or marketing trackers. The website may use mechanisms that are strictly necessary for its operation, security or abuse prevention. If non-essential tools requiring consent are added in future, they will only be activated once an appropriate consent mechanism is in place.
Security
Atlas implements technical and organisational measures designed to protect accounts, data and infrastructure, including encryption, access restrictions, authorisation checks and security procedures.
No system offers absolute security. Reports can be sent to [email protected].