CertiVoucher

Privacy Policy

This policy describes, for informational purposes, how NUMERIA SOLUTIONS processes personal data collected on certivoucher.com. It should be reviewed by a legal professional before going into production, particularly with regard to the GDPR.

Data collected

  • Account data: name, email, password (encrypted by Supabase Auth).
  • Order data: billing details, order history.
  • Payment data: processed exclusively by Stripe, never stored by us.
  • Contact data: messages sent via our contact and quote forms.

Purpose of processing

This data is used to manage orders, customer relations, support, and to comply with our legal and accounting obligations.

Subprocessors

  • Supabase (database hosting and authentication)
  • Stripe (payment processing)
  • Vercel (application hosting)

Retention period

  • Account data: for the entire lifetime of the account, then deleted 3 years after the last activity in the absence of a new order.
  • Order and billing data: retained for 10 years from the close of the accounting year, in accordance with legal and tax obligations (Article L123-22 of the French Commercial Code).
  • Contact data (forms): 3 years from the last exchange.
  • Payment data: not retained by CertiVoucher, processed exclusively by Stripe.

Your rights

In accordance with the GDPR, you have the right to access, rectify, delete, and port your data. To exercise these rights, contact us at: certivoucher@gmail.com.

Security

Passwords are managed by Supabase Auth and never stored in plain text. Voucher codes are encrypted at the application level and are never accessible without authentication.