Skip to main content
Heaats

Privacy Policy

Last updated: January 1, 2025

Heaats ("we", "our", "us") is committed to protecting the privacy of users of its SEO monitoring service. This privacy policy explains how we collect, use, and protect your personal data.

1. Data Controller

The data controller for personal data is:

Heaats SAS

  • Email: privacy@heaats.com

    For any questions regarding your personal data, you can contact us at the address above.

  • 2. Data Collected

    We collect the following categories of data:

    Identification data: name, surname, professional email address.

    Connection data: IP address, browser type, pages visited, date and time of connection.

    Billing data: for paying customers, information necessary for billing (processed by our payment provider Stripe).

    Technical data: URLs of your monitored websites, SEO metrics collected during analyses.

    3. Processing Purposes

    Your data is processed to:

    - Provide and improve our SEO monitoring service

    • Manage your user account

      • Send you SEO alerts and reports

        • Process your payments

          • Respond to your support requests

            • Inform you of service updates (with your consent)

              • Comply with our legal obligations

    5. Retention Period

    Your data is retained:

    - Account data: for the duration of your subscription + 3 years

    • Billing data: 10 years (legal obligation)

      • Connection data: 1 year

        • Monitoring data: duration of your subscription

    6. Your Rights

    In accordance with GDPR, you have the following rights:

    - Right of access: obtain a copy of your data

    • Right to rectification: correct inaccurate data

      • Right to erasure: request deletion of your data

        • Right to restriction: limit the processing of your data

          • Right to portability: receive your data in a structured format

            • Right to object: object to the processing of your data

              To exercise these rights: privacy@heaats.com

    7. Cookies

    We use cookies for:

    - Essential cookies: site and application functionality

    • Analytics cookies: measure audience (with your consent)

      You can manage your cookie preferences at any time via our consent banner.

    8. Data Transfers

    Your data is hosted in France (OVH). Some subcontractors may be located outside the EU:

    - Stripe (payments): Privacy Shield certified, standard contractual clauses

    • Resend (emails): standard contractual clauses

      We ensure these transfers meet the level of protection required by GDPR.

    9. Security

    We implement technical and organizational measures to protect your data:

    - Encryption of data in transit (TLS) and at rest

    • Restricted access to personal data

      • Security monitoring and alerts

        • Regular backups

          • Periodic security testing

    10. Contact and Complaints

    For any questions about this policy or to exercise your rights:

    Email: privacy@heaats.com

    You also have the right to lodge a complaint with the CNIL (French Data Protection Authority): www.cnil.fr