GDPR & Data Protection

Last updated: December 19, 2024

At Gessio, protecting your personal data is a priority. This policy informs you about how we process your data.

1. Data Controller

The data controller is DEVOKI, reachable at support@gessio.com.

Data Collection

We collect the data necessary for your association's management: identity, contacts, subscriptions, and registrations.

3. Legal Basis for Processing

The processing of your data is based on: - Performance of the service contract (account management) - Your consent (marketing communications) - Our legal obligations (billing, accounting)

Data Usage

Your data is only used for the proper functioning of the application and is never sold to third parties.

5. Data Retention

Your data is retained for the duration of your subscription and up to 3 years after termination for accounting and legal obligations.

6. Data Security

We implement appropriate technical and organizational measures to protect your data against unauthorized access, loss, or destruction. All data is encrypted and hosted on secure servers in Europe.

Your Rights

In accordance with GDPR, you have the right to access, rectify, delete, and port your personal data.

8. Cookies

We use essential cookies for the service operation (authentication, preferences). No advertising or tracking cookies are used.

9. Data Transfers

Your data is hosted in Europe and is not transferred outside the European Union.

10. DPO Contact

For any questions regarding the protection of your data, you can contact our Data Protection Officer at support@gessio.com.