Skip to main content

Legal / Privacy

Privacy policy & GDPR notice

How MASLOV Solutions collects, uses, stores and protects personal data when you contact us or use this website.

1. Data controller

MASLOV SOLUTIONS, SIREN 911 590 768, with registered office at 44 rue Francis de Pressensé, 95870 Bezons, France, acts as the data controller for personal data collected through this website, contact forms, email exchanges and commercial discussions.

For any request regarding privacy or data protection, contact us at contact@maslov.solutions.

2. Personal data we collect

Contact data: name, email, phone number, company, role and any information you include in a message.

Project data: the problem, category, expected impact, systems involved, budget and timeline ranges, and technical constraints entered in the diagnostic form. File uploads are not accepted in the first release.

Website and security data: request logs, page/locale identifiers, campaign attribution, anti-abuse signals and a short-lived salted IP hash where implemented.

3. How we use personal data

We use personal data to respond to requests, prepare proposals, deliver services, maintain security, improve the website and comply with legal obligations.

We do not sell personal data and we do not use contact form data for unrelated advertising without consent.

4. Legal basis

Pre-contractual measures and legitimate interest: receiving, assessing and responding to a business or project inquiry.

Consent: optional marketing communications and any audience measurement that the DPO determines requires consent.

Legitimate interest: website security, abuse prevention and proportionate B2B relationship management.

Legal obligation: accounting, tax, compliance or regulatory requests where applicable.

5. Sharing and processors

The production service chain uses OVH for hosting, Supabase Postgres in Paris for durable lead storage, HubSpot with EU hosting for CRM, Brevo for transactional email, and Plausible only if audience measurement is enabled under the applicable consent rules.

Sanity stores public marketing content only and must not receive lead data or confidential client information. Processors receive only the data needed for their role and are reviewed before production use.

EU hosting is selected where offered. Any transfer outside the EEA must rely on an applicable contractual safeguard and is included in the final DPO review.

We may disclose data if required by law, court order or a competent authority.

6. Retention periods

Business inquiries: up to 3 years after the last meaningful contact unless a project starts.

Project and contractual data: for the duration of the project, then archived according to legal and accounting requirements.

Technical logs: kept for a limited period necessary for security, troubleshooting and abuse prevention.

7. Cookies and analytics

This website does not use Google Tag Manager, Google Analytics or reCAPTCHA. First-party locale and display-theme preferences may be stored after the user makes an explicit choice.

Plausible may be enabled without PII only after the DPO validates the final configuration. If consent is required, analytics remains disabled until consent; launch does not depend on analytics.

8. Your GDPR rights

You may request access, rectification, erasure, restriction, portability or object to certain processing operations.

You may also withdraw consent where processing is based on consent.

To exercise your rights, email contact@maslov.solutions. We may need to verify your identity before processing a request.

You may lodge a complaint with the CNIL or another competent supervisory authority.

9. Required fields and automated decisions

Required form fields are identified in the interface. Without them, MASLOV SOLUTIONS may be unable to assess or respond to the request.

Qualification rules may help prioritise a human response, but the first release does not make a legal or similarly significant decision solely by automated means.

10. Security

We apply technical and organisational measures designed to protect personal data against unauthorised access, loss, alteration and misuse.

No website or transmission method is completely risk-free, but we work to keep risks proportionate and controlled.

11. Updates to this notice

We may update this privacy notice to reflect legal, technical or business changes. The latest version is published on this page.