GREEN’CROQ places the utmost importance on protecting your personal data. This policy explains what data we collect, for what purpose, and how you can exercise your rights.
1. Data controller
The data controller is GREEN’CROQ. For any request relating to your data: info@greencroq.fr.
2. Data collected
- Contact form: name, company, email, phone, message.
- Club sign-up: email, first name (optional).
- Shop order: identity, delivery address, email, phone.
- Browsing: technical and audience-measurement cookies (see the Cookies page).
3. Purposes
- Responding to your commercial and B2B prospect enquiries.
- Processing your orders and ensuring delivery.
- Sending GREEN’CROQ Club communications (with consent).
- Improving our website and content (anonymised statistics).
4. Legal basis
Our processing is based, depending on the case, on the performance of a contract (orders), legitimate interest (responding to a B2B contact), or your consent (newsletter, non-essential cookies).
5. Retention period
- Leads and contacts: 3 years from the last exchange.
- Orders: 10 years (accounting obligations).
- Newsletter: until unsubscription.
6. Recipients
Your data is processed by GREEN’CROQ and its strictly necessary subcontractors: hosting (Cloudflare / Lovable), managed database, transactional email delivery, Shopify payment platform.
7. Your rights
In accordance with the GDPR, you have the right to access, rectify, erase, object to, restrict and port your data. You may exercise these rights at any time by writing to info@greencroq.fr. You may also lodge a complaint with the CNIL (cnil.fr).
8. Security
We implement technical and organisational measures to protect your data: TLS encryption, access segregation, backups, logging of administrative access.
