Privacy Policy
PRIVACY POLICY AND PERSONAL DATA PROTECTION
Operator and publisher of the Site and Software
The Site and the Products are operated by the company hestiia, which can be contacted at the following address:
Email: support@hestiia.com
Telephone: +33 2 59 50 33 43
Data collected, purposes, and recipients
The Customer provides hestiia with personal data (contact details, information relating to their home) during the conclusion and execution of the Contract. This information is stored in a computerized file managed by hestiia and is processed for the following main purposes:
- Responding to contact and feasibility study requests: the data collected enables hestiia to contact the Customer in response to their contact and feasibility study requests (legal basis: Article 6.1.b of the European General Data Protection Regulation)
- Managing orders: the data is necessary for processing orders, including delivery, installation, invoicing, etc. (legal basis: Article 6.1.b of the European General Data Protection Regulation)
- Managing after-sales service: the data enables better management of complaints, improved case tracking, etc. (legal basis: Article 6.1.b of the European General Data Protection Regulation)
- Customer registration on the dedicated application: the data is required for account activation and use of the application. This requires a unique combination of a username and password, referred to as the hestiia identifier.
If the Customer does not provide this data, hestiia will be unable to fulfil the corresponding services.
- Sending a newsletter with hestiia news (legal basis: Article 6.1.a of the European General Data Protection Regulation)
This data may be shared with subcontractors in a secure manner for the purposes of Contract execution.
Certain features of the Product may require information about the Device in order to improve their respective functions. When the Customer activates or uses these features, details are provided about what information is sent to hestiia and how it is used.
The Product collects the following data: temperatures, operating times, internet data consumption, and computation time.
- Sensor data such as electronic board temperatures, to ensure proper device operation, temperature control, and detection of technical issues
- Operating system and hestiia software logs, as well as computation card logs, to detect and resolve potential technical issues, calculate financial compensation, and for statistical purposes
- Module statuses, to ensure proper Product operation and enable preventive maintenance
This data is processed primarily to optimize Product performance through hestiia's Research and Development efforts (legal basis: Article 6.1.f of the European General Data Protection Regulation).
This list of collected information is subject to change as the Software and Devices evolve. The Customer will be notified of any changes to this personal data, in accordance with Article 3 of the Software Terms of Use.
Retention periods
Personal data is retained for the period necessary to achieve the stated purposes, taking into account applicable limitation periods and legal obligations to retain certain contracts and data.
Personal data is stored with all appropriate physical, technical, and organizational measures to ensure its security and confidentiality and to protect it against loss, accidental destruction, alteration, and unauthorized access.
Transfers outside the EU
Certain data may be processed on occasion by service providers located outside the European Union where such processing is necessary for the performance of hestiia's obligations. In such cases, the transfer will only be made to a service provider established in a country that ensures an adequate level of personal data protection, as determined by an official Adequacy Decision of the European Commission. Otherwise, the Company undertakes to implement appropriate safeguards before transferring the Customer's data.
In the absence of an adequacy decision or appropriate safeguards, the Company undertakes to obtain the Customer's express written consent before transferring their data and to provide the fullest possible information about the associated risks due to the absence of an adequacy decision and appropriate safeguards.
Individual rights and data controller contact details
In accordance with the General Data Protection Regulation No. 2016/679 (GDPR) and the amended French Data Protection Act No. 78-17 of 6 January 1978, the Customer has the right to access, rectify, object to, erase, port, and restrict the processing of their data.
The Customer may also define guidelines regarding the retention, deletion, and communication of their data in the event of death. The Customer may exercise their rights by email at support@hestiia.com.
Right to lodge a complaint with a supervisory authority
The Customer is informed that they also have the right to lodge a complaint with the CNIL (French Data Protection Authority).