Hally Pharma is committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR – EU 2016/679). For any questions: [email protected]
1. Site Publisher
This website is published by:
- Company: Hally Pharma
- Legal form: SAS (Simplified Joint-Stock Company)
- Share capital: €4,000
- Registered office: 58 avenue Leclerc, 69007 Lyon, France
- SIRET: 943 731 976 00016
- Trade Register: Lyon
- Email: [email protected]
2. Hosting
Landing site (hally-pharma.fr)
- Host: Hostinger International Ltd
- Address: 61 Lordou Vironos Street, 6023 Larnaca, Cyprus
- Website: www.hostinger.fr
SaaS application (app.hally-saas.fr)
- Host: OVH SAS
- Address: 2 rue Kellermann, 59100 Roubaix, France
- Website: www.ovhcloud.com
3. Data Controller
The data controller for your personal data is Hally Pharma, reachable at:
4. Data Collected
4.1 Automatically Collected Data
When you browse hally-saas.fr, we automatically collect certain technical information:
- IP address and approximate location data
- Browser type and version
- Operating system and device type
- Browser timezone and language
- Pages visited, visit duration, referrer pages
- Technical and session cookies
4.2 Voluntarily Provided Data
You may directly provide us with:
- First and last name
- Professional email address
- Company name and industry
- Phone number (if provided)
- Payment information (processed by our secure payment provider)
- Messages sent via the contact form
5. Purposes of Processing
Your data is processed for the following purposes:
- Providing and improving the Hally Pharma service
- Managing your user account and authentication
- Processing your demo or contact requests
- Billing and subscription management
- Generating anonymized usage statistics
- Detecting and preventing abuse and fraudulent activities
- Sending service-related communications (updates, security alerts)
- Compliance with our legal and regulatory obligations
6. Legal Basis for Processing
In accordance with GDPR, each data processing activity is based on one of the following legal grounds:
- Contract performance: processing necessary to provide our services
- Legitimate interest: security, fraud prevention, service improvement
- Consent: optional cookies, marketing communications
- Legal obligation: retention of billing data
7. Retention Period
We retain your data only for as long as necessary for the purposes for which it was collected:
- Account data: duration of subscription + 3 years after termination
- Billing data: 10 years (legal accounting requirement)
- Technical logs: 12 months maximum
- Contact data (form): 3 years from last contact
- Cookies: 13 months maximum
8. Data Security
The security of your data is our absolute priority. We implement appropriate technical and organizational measures:
- Encryption of data in transit (TLS/HTTPS) and at rest
- Restricted access to personal data (least privilege principle)
- Hosting on certified servers located in France
- Regular backups and business continuity plans
- Training our teams in security best practices
No data transmission over the Internet can be guaranteed 100% secure. In the event of a data breach, we will comply with our notification obligations under GDPR.
9. Cookies
Our site uses cookies to improve your experience:
- Functional cookies (required): user session, language preference — do not require consent
- Analytics cookies (optional): anonymized audience measurement — subject to your consent
You can manage your cookie preferences at any time through your browser settings.
10. User Rights (GDPR)
Under GDPR, you have the following rights regarding your personal data:
- Right of access: obtain a copy of data about you
- Right to rectification: correct inaccurate or incomplete data
- Right to erasure: request deletion of your data ('right to be forgotten')
- Right to data portability: receive your data in a structured, readable format
- Right to object: object to the processing of your data
- Right to restriction: restrict processing in certain cases
- Withdrawal of consent: withdraw your consent at any time
To exercise these rights, contact us at [email protected]. We will respond within one month. In case of dispute, you may file a complaint with the CNIL.
11. Data Transfers Outside the EU
Your personal data is hosted on servers located in France and is not transferred to countries outside the European Union. If such a transfer were to occur, we would ensure it is governed by appropriate safeguards (EU standard contractual clauses, etc.).
12. Changes to This Notice
We reserve the right to modify these legal notices at any time. In case of substantial changes, we will notify you by email or via a notification on our site. The date of the last update is indicated at the top of this page.
13. Contact
For any questions regarding this policy or your personal data: