logo
logo
logo

Privacy Policy


1. Who is responsible for your data


This website (cognelis.fr) is published by COGNELIS, a société par actions simplifiée (SAS) with share capital of €2,000, registered office at 101 rue de Sèvres, 75006 Paris, France, registered with the Paris Trade and Companies Register under RCS Paris 101 693 745 (SIRET 101 693 745 00024; APE 70.22Z; EUID FR7501.101693745) ("Cognelis", "we", "us"). Cognelis is the data controller for the personal data processed through this site.


Publication director: Bernard Job, Director. Privacy contact: hello@cognelis.fr.



2. Scope


This policy explains what personal data we process when you visit cognelis.fr or contact us, why, on what legal basis, how long we keep it, and the rights you have. It does not cover third‑party sites we may link to, which have their own policies.



3. What we collect, why, and on what basis


We collect four kinds of data through this site, each for a specific purpose and on a specific legal basis under Article 6 of the GDPR.


Contact details you provide — your name, email, message, and anything else you include when you use our contact form or email us — are processed so we can respond to your enquiry and manage any relationship that follows. The legal basis is our legitimate interest in answering you, or the taking of pre-contractual steps at your request (Art. 6(1)(b) and (f)). We keep this data for the duration of our exchange and for 3 years from our last contact, after which it is deleted or archived.


Audience-measurement data — the pages you view, your approximate location, your device and browser, and how you interact with the site — is processed to measure and improve how the site is used. The legal basis is your consent, given through our cookie banner (Art. 6(1)(a)). Measurement cookies last no more than 13 months, and the resulting data is kept no more than 25 months, in line with CNIL guidance.


Technical and server logs — including your IP address, timestamps, and security events — are processed to keep the site available and secure and to prevent abuse. The legal basis is our legitimate interest (Art. 6(1)(f)). We keep these logs for 12 months.


Consent records — the cookie choices you make — are processed so we can prove and honour your consent. The legal basis is our legal obligation together with our legitimate interest. We keep proof of consent for up to 3 years, in line with CNIL guidance.


We do not collect special‑category data through this site, and we don't ask for it. Please don't send us sensitive personal data through the contact form.



4. Cookies and similar technologies


We use cookies and similar technologies as described in our Cookie Statement. Non‑essential cookies are set only with your consent, which you can change or withdraw at any time from the cookie‑preferences link in the site footer.



5. Who we share data with


We do not sell your data. We share it only with service providers ("processors") acting on our instructions, and only as needed:


  • Website hosting & delivery — Framer (framer.com), which hosts and serves the site.

  • Email & business tools — Microsoft 365 / Outlook, used to receive and answer your messages.

  • Audience measurement[Google Analytics / GA4], subject to your consent.

  • Consent management — Axeptio, which records and manages your cookie choices.


Each processor is bound by a contract meeting GDPR Art. 28. We may also disclose data where required by law or to establish, exercise, or defend legal claims.



6. International transfers


Some providers above (e.g. Framer, Google, Microsoft) are established in or transfer data to the United States or other countries outside the EU/EEA. Where that happens, transfers are covered by appropriate safeguards — Standard Contractual Clauses and/or the provider's certification under the EU–US Data Privacy Framework. You can request details of the safeguards in place using the contact below.



7. Security


We apply appropriate technical and organisational measures to protect your data against loss, misuse, and unauthorised access. No online service is perfectly secure, but we work to keep the risk low and to notify you and the CNIL where the law requires it.



8. Your rights


Under the GDPR you have the right to: access your data; rectify it; erase it; restrict or object to processing; data portability; and withdraw consent at any time (without affecting prior processing). You can also set instructions for what happens to your data after your death.

To exercise any of these, contact hello@cognelis.fr. We reply within one month. If you believe we've mishandled your data, you may lodge a complaint with the French supervisory authority, the CNIL (www.cnil.fr), 3 Place de Fontenoy, 75007 Paris.



9. Contact


Cognelis has not appointed a Data Protection Officer, as its processing activities don't require one. For any data‑protection question, contact hello@cognelis.fr.



10. Changes to this policy


We may update this policy to reflect changes in our practices or the law. The "last updated" date above shows the current version. Material changes will be signalled on the site.