Privacy Policy
ROSACE audit for the site https://rosace-audit.fr
ARTICLE 1: PREAMBLE
This privacy policy is intended to inform users of the site:
- On how their personal data is collected. Personal data is considered to be any information that allows a user to be identified. This may include: names and surnames, age, postal or email address, location or even IP address (non-exhaustive list);
- On the rights they have concerning this data;
- On the person responsible for the processing of personal data collected and processed;
- On the recipients of this personal data;
- On the site's policy regarding cookies.
This policy complements the legal notice and the General Conditions of Use available to users at the following address: https://rosace-audit.fr/en/terms-and-conditions
ARTICLE 2: PRINCIPLES RELATING TO THE COLLECTION AND PROCESSING OF PERSONAL DATA
In accordance with Article 5 of European Regulation 2016/679, personal data are:
- Processed lawfully, fairly and in a transparent manner in relation to the data subject;
- Collected for specified, explicit and legitimate purposes (see Article 3.1 below) and not further processed in a manner that is incompatible with those purposes;
- Adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed;
- Accurate and, where necessary, kept up to date. Every reasonable step must be taken to ensure that personal data that are inaccurate, having regard to the purposes for which they are processed, are erased or rectified without delay;
- Kept in a form which permits identification of data subjects for no longer than is necessary for the purposes for which the personal data are processed;
- Processed in a manner that ensures appropriate security of the collected data, including protection against unauthorized or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organizational measures.
Processing is only lawful if, and to the extent that, at least one of the following conditions is met:
- The data subject has given consent to the processing of his or her personal data for one or more specific purposes;
- Processing is necessary for the performance of a contract to which the data subject is party or in order to take steps at the request of the data subject prior to entering into a contract;
- Processing is necessary for compliance with a legal obligation to which the controller is subject;
- Processing is necessary in order to protect the vital interests of the data subject or of another natural person;
- Processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the controller;
- Processing is necessary for the purposes of the legitimate interests pursued by the controller or by a third party, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subject which require protection of personal data.
ARTICLE 3: PERSONAL DATA COLLECTED AND PROCESSED DURING BROWSING ON THE SITE
Article 3.1: Data collected
The personal data collected on the site are as follows:
- Contact information (Name, Email, Phone) via email or phone links.
These data are collected when the user performs one of the following operations on the site:
- Contacting the firm.
The controller will keep all the collected data in its site's computer systems under reasonable security conditions for a period of: 3 years.
The collection and processing of data meet the following purposes:
- Managing requests for information and appointments.
Article 3.2: Data hosting
This site is hosted by GitLab, Inc., the parent company of GitLab France SAS. The office of GitLab, Inc. is located at 268 Bush Street #350 San Francisco, CA 94104-3503, USA. Email address: caroline.rasigade@rosace-audit.fr.
ARTICLE 4: DATA CONTROLLER AND DATA PROTECTION OFFICER
Article 4.1: The data controller
Personal data are collected by ROSACE audit, SAS with a capital of 10,000 €, whose registration number is 983 179 961 R.C.S. Rennes.
The controller can be contacted as follows:
- By mail: , 35000 Rennes;
- By phone: 07 45 29 75 28;
- By email: caroline.rasigade@rosace-audit.fr.
Article 4.2: The data protection officer
The data protection officer for the company or the controller is: Caroline Rasigade; reachable at the email address caroline.rasigade@rosace-audit.fr
If you believe, after contacting us, that your "Information Technology and Liberties" rights are not respected, you can send information to the CNIL.
ARTICLE 5: USER RIGHTS REGARDING DATA COLLECTION AND PROCESSING
Any user concerned by the processing of their personal data can avail themselves of the following rights, in application of European Regulation 2016/679 and the Data Protection Act:
- Right of access, rectification and right to erasure of data (set out respectively in Articles 15, 16 and 17 of the GDPR);
- Right to data portability (Article 20 of the GDPR);
- Right to restriction (Article 18 of the GDPR) and to object to data processing (Article 21 of the GDPR);
- Right not to be subject to a decision based solely on an automated process;
- Right to determine the fate of the data after death;
- Right to seize the competent supervisory authority (Article 77 of the GDPR).
To exercise your rights, please send your letter to ROSACE audit, , 35000 Rennes or by email to caroline.rasigade@rosace-audit.fr
ARTICLE 6: CONDITIONS FOR MODIFYING THE PRIVACY POLICY
The editor of the site ROSACE audit reserves the right to modify this Policy at any time to ensure compliance with current law.
The user is invited to read this Policy each time they use our services, without it being necessary to formally notify them.
This policy, published on August 8, 2023, was updated on September 29, 2026.