Privacy Policy
1. Data Controller
The data controller is ZenitudeAix — Raphael Heiries, sole proprietorship (auto-entrepreneur), registered at 50 clos saint girons 13290 Aix en provence, operating through the website https://raphaelmonaco.fr under the trade name Raphaël. For any questions regarding the processing of your personal data, you can contact us at: contact@raphaelmonaco.fr.
2. Data Collected
We collect the following personal data when you use our services:
• Identity data: first name, last name
• Contact data: phone number, email address
• Location data: address or location for the appointment (residence, hotel, yacht)
• Booking data: date, time, service type, preferences
• Payment data: processed securely by our payment provider (Revolut Pay) — we do not store your bank card details
• Technical data: IP address, browser type, device information (for analytics and security purposes)
3. Purpose of Processing
Your personal data is processed for the following purposes:
• Managing bookings and providing hairdressing services
• Communicating with you regarding your appointments (confirmation, reminders, follow-up)
• Processing payments
• Improving our services and website experience
• Audience measurement and analytics (Google Analytics)
• Complying with legal obligations
4. Legal Basis
The processing of your data is based on:
• Contract performance: processing necessary to provide the services you have booked
• Legitimate interest: improving our services, ensuring security, and managing client relationships
• Consent: for analytics cookies and marketing communications (if applicable)
• Legal obligation: for accounting and tax purposes
5. Data Retention
Your personal data is retained for the following periods:
• Client data (identity, contact, bookings): 3 years from the last interaction
• Payment data: as required by applicable tax and accounting regulations (10 years)
• Analytics data: 14 months (Google Analytics)
• Cookies: maximum 13 months from consent
6. Data Sharing
Your personal data may be shared with the following third parties, strictly for the purposes described above:
• Vercel Inc. (website hosting)
• Supabase (database hosting — servers in EU)
• Revolut (payment processing)
• Google Analytics (audience measurement — with your consent)
• Resend (transactional emails)
We do not sell, rent, or share your personal data with third parties for marketing purposes.
7. International Transfers
Some of our service providers (Vercel, Google) may process data outside the European Economic Area. In such cases, appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission, to ensure an adequate level of data protection.
8. Cookies
Our website uses the following types of cookies:
• Essential cookies: required for the website to function (session, language preference)
• Analytics cookies: Google Analytics, activated only with your consent, to measure audience and improve our services
You can manage your cookie preferences at any time via the consent banner. You can also configure your browser to refuse cookies.
9. Your Rights
In accordance with the General Data Protection Regulation (GDPR) and the French Data Protection Act, you have the following rights:
• Right of access: obtain a copy of your personal data
• Right of rectification: correct inaccurate or incomplete data
• Right of erasure: request deletion of your data
• Right to restrict processing: limit how we use your data
• Right to data portability: receive your data in a structured format
• Right to object: object to the processing of your data
• Right to withdraw consent: at any time, without affecting the lawfulness of processing based on consent before its withdrawal
To exercise any of these rights, please contact us at: contact@raphaelmonaco.fr. We will respond within 30 days. If you are not satisfied with our response, you may file a complaint with the CNIL (Commission Nationale de l'Informatique et des Libertés) at www.cnil.fr.
10. Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include HTTPS encryption, secure authentication, access controls, and regular security audits.
11. Changes to This Policy
This privacy policy may be updated from time to time. The latest version is always available at https://raphaelmonaco.fr/en/confidentialite. We encourage you to review this page periodically.