Last updated: May 1, 2026

Privacy policy

The MVP is designed to minimize data collection: drafts stay in your browser while you work, checkout stores an encrypted recovery copy with the Stripe payment session for seven days, sensitive portal credentials are not requested, and generated outputs are not kept server-side by default.

Controller

ControllerLEPHAY Yann
StatusEntrepreneur individuel
SIRET899 650 204 00022
Address53 Avenue Charles de Gaulle, 57530 Courcelles-Chaussy, France
Emailcontact [at] 83belectiondesk.com

Data we process

Draft answersFacts you enter in the wizard, stored in browser localStorage while you work. If you continue to checkout, the packet facts needed for recovery are encrypted before being copied into the Stripe payment session metadata; optional notes and duplicate email fields are excluded.
Generated outputsPacket preview, checklist, and passport generated from your inputs.
Billing and recoveryEmail, transaction ID, amount, product, payment status, and the checkout recovery copy when checkout is enabled.
SupportMessages and attachments you choose to send to support.
Technical logsIP address, user agent, timestamps, errors, and security events.

Data we do not want in the MVP

  • Portal credentials, OTP codes, security questions, or government account passwords.
  • Full SSNs, ITINs, dates of birth, payment card PANs, CVV codes, or bank credentials unless a future reviewed workflow expressly requires them.
  • Signed documents, IDs, brokerage account credentials, or generated PDFs/passports unless you explicitly send them for support.
  • Customer content for training general-purpose AI models.
  • Session replay, keystroke logging, clipboard capture, or heatmaps on sensitive wizard pages.

Why we process data

  • To run the wizard and generate your packet/passport.
  • To process payments and issue billing records.
  • To answer support, billing, privacy, or security requests.
  • To keep the service secure and diagnose technical failures.
  • To comply with accounting, tax, fraud-prevention, and legal obligations.

Processors

The production service uses application infrastructure managed through Coolify, Cloudflare for DNS/CDN/security, Stripe for checkout and billing, and transactional email infrastructure for paid-document delivery.

Customer wizard content is not sent to a general-purpose AI model for training or extraction.

Retention

Browser draftsStored locally until you reset the wizard, clear browser storage, or overwrite the draft.
Checkout recovery copyEncrypted and available for seven days after the Stripe payment session is created so a paid packet can be restored. Recovery access then closes. Expired recovery metadata is removed when the link is revisited and by the scheduled cleanup where configured. Minimal billing records remain subject to accounting, fraud, dispute, and legal retention duties.
Generated PDFs/passportsNot stored server-side by default after generation in the MVP.
Billing recordsKept as long as needed for accounting, tax, chargeback, and fraud-prevention obligations.
Support attachmentsDeleted after resolution plus a short operational window unless retention is required for a dispute.
Security logsKept for a limited period unless needed for incident response, abuse prevention, or legal hold.

Your rights

Depending on where you live, you may have rights to access, correct, delete, export, restrict, or object to certain processing. Contact contact [at] 83belectiondesk.com to exercise privacy rights.

If GDPR applies, you may also complain to a competent data protection authority.

Security

  • HTTPS on production domains.
  • Least-privilege access for admin tools.
  • Payment processing through a PCI-focused processor.
  • No collection of official portal credentials.
  • Data minimization by default.