Privacy Policy

1. Preamble

This Privacy Policy is addressed to the Users of the Hack4Values website (hereinafter the “Site”) who browse the Site and its main purpose is to inform them about the way their personal data may be collected and processed by Hack4Values during their browsing.

Respect for privacy is a fundamental right and one of Hack4Values’ core values as we strive to make our users information systems a safer place.

The respect of privacy and personal data is of the utmost importance to Hack4Values and has been since its creation by its founders. That is the reason why we commit ourselves to treat them in the strictest respect of the regulations in force concerning the protection of personal data (hereafter the “Regulations”), in particular the French Data Protection Act of January 6, 1978 (hereinafter the “LIL”) as amended and the General Data Protection Regulation of April 27, 2016 (hereinafter the “GDPR”) known as Regulation EU 2016/679 of the European Parliament and of the Council of April 27, 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC.

In view of the boom in personal data transfers and the non-negligible risks to the fundamental rights and freedoms of European citizens, Hack4Values ensures:

  • To make the respect of the principles of privacy by default and by design (article 25 of the RGPD) a priority ;
  • To process personal data in a lawful, fair and transparent manner for legitimate, explicit and specified purposes (article 5 of the GDPR) ;
  • To facilitate, at any time, the exercise of the rights of the Users of the Site in particular via the e-mail address [email protected]

In addition, Hack4Values commits itself  host data in the most secure way possible , in accordance with the recommendations of the protection authorities and more particularly the European Data Protection Board (EDPB). This is the reason why Hack4Values chose a French company to host its platform, Outscale, in order to avoid any transfer to the United States in view of the invalidation of the Privacy Shield via the so-called “Schrems II” ruling.

2. Definitions

Personal Data: has the same meaning as given by the RGPD and more specifically concerning you: your name, first name, job title, telephone number, IP address and other data described below. These are all data that can identify you directly or indirectly as a natural person.

Site: when reference is made to the Site, it refers to the Hack4Values website accessible at https://hack4values.eu , a secure site via the choice of an SSL certificate as indicated by the padlock at the bottom left of your URL. This site is our showcase site where you can learn about our free security services for NGOs and nonprofits.

Sub-processor: means a natural or legal person, public authority, agency or other body which processes personal of the Data Processor and that has been entrusted by the Data Processor to do so

3. Origin of Personal Data

Hack4Values may collect and process personal data when you fill in the contact form to be contacted by the Hack4Values team. That’s all, we don’t collect any other Personal Data when you are navigating on this website.

4. Cookies

For analytics purposes, we use the solution Matomo, which is entirely respectful of user privacy and has been approved by the CNIL, the French Data Protection Authority. This solution doesn’t collect any personal data of yours. For more information on the cookies we collect (none others than Matomo), you can read our Cookie Policy available at the footer of the site at any time.

5. Data processing and data retention

What are the Personal Data we are processing?

We do not collect any Personal Data, except for the data you intentionally provide by filling in the contact form so that we can contact you.

What are the retention periods?

At Hack4Values, in accordance with the GDPR, we do not retain personal data for longer than the purpose for which we collected it.

Where is your data hosted?

Since the invalidation of the Privacy Shield and the so-called Schrems II ruling, the transfer of personal data of European citizens must be subject to additional measures to ensure that they are processed in compliance with the GDPR. Hack4Values has chosen a French hosting provider for its Platform, Outscale, whose Tier VI data centers are located in France. The website is hosted thanks to Scaleway which datacenters are also located in France .

6. Security at first : the Technical and Organizational Measures

In compliance with article 32 of the GDPR, Hack4Values has implemented technical and organizational measures in order to secure the access to his Site https://hack4values.eu

7. Modification

The Privacy Policy might be modified as time goes by. We invite you to read this section regularly.

8. Contact details of the Data Protection Officer

If you want to reach out to us in order to enforce your right of access, your right to erasure, right of restriction of processing, right to object and right to data portability, you can send your request to the following email address : [email protected]