Privacy Policy
Last updated: 2026-08-03
01
Who are we?
The data controller is Cenros, a company registered in France, with its registered office at 149 Avenue du Maine, 75014 PARIS.
02
Data we collect
Depending on your interaction with us, we may collect:
Identification & contact
Name, email, phone, company, role.
Communication
Content of messages via forms, emails, chat, support requests.
Technical data
IP address, logs, browser, system, pages viewed, referrer, timestamps.
Application & business
CV, cover letter, professional information, exchanges, offers, contracts, billing.
We do not request "sensitive" data (as defined by GDPR) except in exceptional circumstances with specific safeguards.
03
Purposes of processing
Responding to your requests - contact, information, quotes
Managing business relationships - B2B prospecting, meetings, proposals, contracts
Website security - fraud prevention, incident response, logging
Audience measurement - statistics, performance, UX (subject to consent)
Recruitment - if applicable
Legal obligations - accounting, tax, GDPR request management
04
Legal bases
Consent
Non-essential cookies, newsletter if applicable.
Legitimate interest
Responding to requests, securing the site, reasonable B2B prospecting.
Contractual performance
Quotes, client relationships, pre-contractual measures.
Legal obligation
Accounting and tax retention.
05
Cookies and trackers
Strictly necessary
Operation and security. Exempt from consent.
Audience & marketing
If used, subject to consent when required.
06
Recipients and subprocessors
Your data may be accessible to:
Our authorized teams
Our service providers acting as subprocessors (hosting, emailing, CRM, analytics, support, security)
Certain authorities when required by law
Main provider: OVH (hosting, Roubaix, France)
07
Data retention periods
Contact requests
12 - 24 months
B2B prospects
Up to 3 years
Clients / contracts
6 - 10 years
Technical logs
6 - 12 months
Applications
2 years max
08
Security
We implement appropriate technical and organizational measures: access controls, encryption where relevant, logging, backups, segmentation, internal policies. No measure being infallible, zero risk does not exist.
09
Your rights
Access
Rectification
Erasure
Restriction
Objection
Portability
You may also withdraw your consent at any time and set post-mortem directives (French law).
To exercise your rights: privacy@cenros.io
10
Complaint
You may file a complaint with the CNIL (Commission Nationale de l'Informatique et des Libertes) or your local data protection authority.
11
Changes
We may update this policy. The "Last updated" date reflects the current version.