Compliance with the General Data Protection Regulation (GDPR)

Regulation No. 2016/679, known as the General Data Protection Regulation (GDPR), requires us to make some changes to the website www.abcdaires.com

“Explicit” and “positive” consent

Newsletter

Subscribing to our newsletter now includes a "Marketing Consents" section (the term isn't great, but we didn't choose it) where the "Email" checkbox allows us (or not) to send you emails.

Of course, if you accidentally forget to check the "Email" box, it will be much harder for you to receive anything from us. But if you resubscribe using the same email address and check that box, your information will be updated, and you’ll finally be able to receive our newsletter. Additionally, you can unsubscribe from our newsletter at any time by clicking the unsubscribe link automatically included at the bottom of each newsletter.

For subscribers who signed up before May 25, 2018, we assume that if you haven’t clicked the unsubscribe link included in each newsletter, it means you’re at least somewhat interested in our newsletter, and that we have your consent to continue sending you more—each one more exciting than the last.

Comments

If you’d like to leave a comment (a positive one, of course) on the blog section of abcdaires.com, and you’d like to save your personal information (so you can leave a second positive comment, for example) in a cookie on YOUR computer, you’ll need to check the “Save (…)” box

The data entered in the comment form, as well as your IP address and browser user agent, are collected to help us detect spam. Visitor comments may be checked through an automated spam detection service. Please be polite :). The comment and its metadata are retained indefinitely. This also allows us to automatically recognize and approve subsequent comments instead of holding them in the moderation queue.

Cookies

For the recipes, click here.

Cookies expire after six months.

If you have an account and log in to this site, a temporary cookie will be created to determine whether your browser accepts cookies. It does not contain any personal data and will be automatically deleted when you close your browser.

When you log in, we will set a few cookies to save your login information and screen display preferences. A login cookie lasts for two days, and a display preference cookie lasts for one year. If you check “Remember Me,” your login cookie will be stored for two weeks. If you log out of your account, the login cookie will be deleted.

Embedded content from other websites

Articles on this site may include embedded content (such as videos, images, articles, etc.). Embedded content from other sites behaves in the same way as if the visitor were visiting that other site directly.

These websites may collect data about you, use cookies, embed third-party tracking tools, and track your interactions with this embedded content if you have an account logged in on their website.

Comments and Avatars

When you leave a comment on our website, the data entered in the comment form, as well as your IP address and your browser’s user agent, are collected to help us detect spam.

An anonymized string created from your email address (also known as a hash) may be sent to the Gravatar service to check whether you are using it. The Gravatar service’s privacy policy is available here: https://automattic.com/privacy/. Once your comment has been approved, your profile picture will be publicly visible next to your comment.

Online sales

You must create an account to place an order online on our website. This is a legitimate reason for collecting the information necessary to process your order.

Data retention

When you make a purchase on our website, we DO NOT collect your credit card information during the payment process. All such information is collected by CM-CIC Bank.

Customer data will be retained for a maximum of two years after the last recorded activity on the website.

For users who register on our site (where available), we store the personal data they provide in their profile. All users can view, edit, or delete their personal information at any time (except for their username). Site administrators can also view and edit this information.

Right to erasure

The tool for deleting your data is now available. Please use the contact form on our website (https://www.abcdaires.com/nous-contacter/) or email us at contact@abcdaires.com to request that your data be deleted.

We will respond as soon as possible, and within one month at the latest. You will receive an email to confirm your request and verify that you are the one who submitted it. Once we have received your confirmation, your data will be deleted.

The data will be deleted from our website AND from our email database.

All requests will be logged for tracking purposes.

Right to data portability

The data portability tool is now available. Use the contact form on our website (https://www.abcdaires.com/nous-contacter/) or email us at contact@abcdaires.com to request data portability.

We will respond as soon as possible, and within one month at the latest. You will receive an email to confirm your request and verify that you are the one who submitted it. Once we have received your confirmation, we will send you the data via email.

The data will be exported from our website and the email database.

All requests will be logged for tracking purposes.

the principles of “data protection by design” and “security by default”

Security

The website www.abcdaires.com has been updated to use the HTTPS protocol. All information is encrypted during data exchanges between your browser and our website. Your information is stored in a database in France with our hosting provider OVH for everything related to our website www.abcdaires.com, and in the U.S. with our service provider MailChimp for all email campaigns (the U.S. is considered adequate by the EU with regard to data protection). Security has been enhanced with two-factor authentication for logins to both OVH and MailChimp. This means that both a password and a code received via text message are required to log in and access the data.

Subcontracting

Visitor comments may be moderated using an automated spam detection service. OVH and MailChimp are data processors forAtelier des ABCDaires the GDPR and comply with this regulation. Learn more about OVH’s implementation of the GDPR: https://www.ovh.com/fr/protection-donnees-personnelles/gdpr.xml Learn more about MailChimp’s implementation of the GDPR: http://eepurl.com/c97Tcr

Data Breach Notifications

Procedures for reporting data breaches to the CNIL have been established. These procedures will be implemented in the event that a security breach on our website allows a malicious individual to copy your data, and will be initiated as soon as such a breach is detected.