Privacy Policy
Last updated: 10 August 2026
DataOne (“DataOne”, “we”, “us” or “our”) is committed to protecting your personal data and respecting your privacy. This Privacy Policy explains what personal data we collect, how we use it, who we share it with, and the rights you have. It applies to our website https://dataone.eu (the “Website”) and to our dealings with visitors, customers, suppliers, job applicants, and other individuals we interact with.
Please read this policy together with our Cookie Policy, which explains how we use cookies and similar technologies.
1. Who we are (Data Controller)
DataOne is the data controller responsible for your personal data.
● Email: hello@dataone.eu
If you have any questions about this policy or how we handle your data, you can contact us using the details above.
2. The personal data we collect
We collect and process the following categories of personal data:
Information you give us directly, for example when you fill in a contact form, request information, apply for a job, subscribe to our newsletter, or communicate with us:
● Identity and contact details — name, email address, telephone number, company and job title.
● Recruitment data — CV/résumé, work history, qualifications, and any information you include in your application.
● The content of your messages and any other information you choose to provide.
Information we collect automatically when you use the Website:
● Technical data — IP address, browser type and version, device information, operating system.
● Usage data — pages visited, time spent, links clicked, and how you navigate the Website.
● Cookie data — see our Cookie Policy for details.
Information from third parties, for example business partners, recruitment platforms, publicly available sources, or analytics providers.
We do not intentionally collect special categories of data (such as health, religion, or political opinions) through the Website. Please do not send us such information unless specifically requested.
3. How we use your data and our legal basis
Under the EU General Data Protection Regulation (GDPR), we must have a lawful basis for using your personal data. We use your data for the following purposes:
| Purpose | Legal basis |
|---|---|
| Responding to your enquiries and providing information you request | Legitimate interests / steps to enter into a contract |
| Managing our relationship with customers, suppliers and partners | Contract / legitimate interests |
| Processing and assessing job applications | Legitimate interests / steps prior to a contract |
| Sending newsletters and marketing communications | Consent (you may withdraw at any time) |
| Operating, securing and improving the Website | Legitimate interests |
| Using analytics and non-essential cookies | Consent |
| Complying with legal and regulatory obligations | Legal obligation |
Where we rely on legitimate interests, we make sure those interests are not overridden by your rights.
4. Cookies and tracking
Our Website uses cookies and similar technologies. Non-essential cookies (such as analytics and marketing) are only used with your consent, which you can manage at any time. For full details, please see our Cookie Policy.
5. Who we share your data with
We do not sell your personal data. We may share it with:
● Service providers who help us operate our business and Website (for example IT, hosting, email, analytics, and recruitment tools), who process data on our
behalf under contract.
● Professional advisers such as lawyers, auditors and accountants.
● Group companies and affiliates where relevant to the purposes described above.
● Authorities and regulators where required by law.
● A buyer or successor in the event of a merger, acquisition or reorganisation.
6. International data transfers
DataOne operates internationally, including offices and projects in France, the United States, and other locations. Where we transfer your personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as the European Commission’s Standard Contractual Clauses or transfers to countries recognised as providing an adequate level of protection. You may contact us for more information about these safeguards.
7. How long we keep your data
We keep your personal data only for as long as necessary for the purposes described in this policy, including to satisfy any legal, accounting or reporting requirements. Typical retention periods:
● Enquiries and general correspondence — [e.g. 24 months] after last contact.
● Unsuccessful job applications — [e.g. 6–12 months], unless you agree to us keeping it longer.
● Customer and supplier records — for the duration of the relationship plus the period required by law.
● Newsletter subscriptions — until you unsubscribe.
When data is no longer needed, we securely delete or anonymise it.
8. How we protect your data
We use appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or misuse, including access controls, encryption where appropriate, and secure hosting. While no method of transmission over the internet is completely secure, we work to protect your data and review our measures regularly.
9. Your rights
Under the GDPR, you have the following rights in relation to your personal data:
- Access — request a copy of the data we hold about you.
- Rectification — ask us to correct inaccurate or incomplete data.
- Erasure — ask us to delete your data in certain circumstances.
- Restriction — ask us to limit how we use your data.
- Objection — object to processing based on our legitimate interests, and to direct marketing at any time.
- Portability — receive your data in a portable format, or have it transferred to another provider.
- Withdraw consent — where we rely on consent, withdraw it at any time (this does not affect processing done before withdrawal).
To exercise any of these rights, contact us at hello@dataone.eu. We will respond within the timeframes required by law (usually one month). You also have the right to lodge a complaint with your local data protection authority — in France, this is the CNIL (www.cnil.fr).
10. Third-party links
The Website may contain links to third-party websites or services that we do not control. This Privacy Policy does not apply to those sites, and we are not responsible for their content or privacy practices. We encourage you to review their privacy policies.
10. Children's privacy
The Website is not directed at children, and we do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will take steps to delete it.
10. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational or regulatory reasons. The revised version will be posted on this page with a new “Last updated” date. We encourage you to review it periodically.
10. Contact us
If you have any questions, requests, or concerns about this Privacy Policy or how we handle your personal data, please contact us: hello@dataone.eu