Privacy policy
Version 2026-09-25
This policy covers the personal data we decide what to do with: the data of people who visit our website and of the people who use our dashboard on behalf of a customer. For that data, iAdvize is the controller.
What this policy does not cover
Conversations between a shopper and an assistant on a merchant's website. There, the merchant determines the purposes and the means of the processing: the merchant is the controller and we act as its processor, on its instructions. The merchant's own privacy policy is the shopper's primary source, and what we do with that data is described in the shopper data-usage notice. The same applies to a conversation held on a hosted assistant page we serve on a merchant's behalf.
The rest of this page is about our side of the line.
Who we are, and how to reach us
iAdvize SAS, a French société par actions simplifiée, registered office Euronantes Gare, Le Berlingot bât. B, 9 rue Nina Simone, 44000 Nantes, France. The full company details are in our legal notice.
For anything about your personal data, including the rights described below, write to our data protection officer at privacy@iadvize.com, or to the registered office above.
What we collect, why, and on what basis
If you visit our website
We run no advertising script, we set no advertising cookie, and we do not build a profile of you.
Our servers and our infrastructure providers process technical request data (the address you asked for, your browser's characteristics, your network address) to serve the page and to protect the service against abuse. The basis is our legitimate interest in running a website that works and is not abused.
Our hosting provider measures our audience and how our pages perform. On every page of our website and of the dashboard, except the shopper notice, it counts visits and records how fast the page loads and responds on your device. The measurement is served from our own domain and sets no cookie. Before anything leaves your browser, the part of the page address after ? or # is removed. Visits are told apart by a value computed from the request, which the provider discards after 24 hours, so no identifier is kept beyond that and no profile of you is built. If you object to measurement from the assistant panel's menu on our documentation pages, neither measurement is sent from your browser on any of our pages.
Our documentation pages carry our own assistant, the same product we sell, so that we use it ourselves. On those pages it behaves as it does on a customer's site, and here we are the controller of what it records.
What we record when you visit:
| What | Why | Basis |
|---|---|---|
Audience and performance measurement: the page address without what follows ? or #, the site you came from, your approximate location, your device type, operating system and browser, and how fast the page loaded and responded | To know which pages are read and how well the site and the product perform | Our legitimate interest in knowing how the site and the product perform |
| A key scoped to your browsing session, and a record that the assistant was available on the page and whether a conversation started | To measure how the assistant is used on our own documentation | Our legitimate interest in knowing whether our own product works |
| Your conversation with it, if you open it and write something | To answer you | Our legitimate interest in answering a question you asked us |
| A cookie that lets the assistant recognise your own conversation as you move between pages | Strictly necessary to provide the conversation you started | Not consent-based: it does only what you asked for |
The session key is cleared when you close the tab. The measurement it produces is kept for 24 months and the conversation for 12 months. You can object to the measurement from the assistant panel's own menu, which is the same control a shopper has on a customer's site, and the shopper notice describes it in full. That notice is written for a customer's storefront, so where it names the store as the controller, on our own pages that is us.
If you use the dashboard
You have an account because the company you work for is our customer. The audience and performance measurement described in the visitor section above also runs on the dashboard's pages. We process:
| What | Why | Basis |
|---|---|---|
| Your email address, name and profile picture | To create your account, sign you in, show who did what to your colleagues, and contact you about the service | Performance of our contract with your employer, and our legitimate interest in running the service for the people who actually use it |
| Your chosen language and time zone | To show the interface and every date in a form that makes sense to you | The same |
| Your multi-factor authentication settings | To let you protect your account with a second factor | Our legitimate interest, and yours, in an account that is hard to take over |
| Which organisation you belong to and what you are allowed to do in it | To show you your organisation's data and nobody else's | Performance of our contract with your employer |
| A record of the actions you take that change your organisation's configuration, including your name and email as they stood at the time, the address your browser connected from, and your browser's user-agent string | So your organisation can see who changed what, and so we can investigate a security incident | Our legitimate interest in accountability and security, and your employer's own obligation to account for what happens in its account |
| The messages you type when you test an assistant in the playground, and the replies it generates | To run the test, and to let you and your colleagues review it afterwards | Performance of our contract with your employer. These messages are sent to a model provider outside the European Union, like any other conversation with the assistant |
| Your email address, and the record of you opting in, if you subscribe to a product email | To send you the emails you asked for | Your consent |
Providing your email address is necessary to have an account. Without it we cannot create one. Everything else in that table follows from using the service.
We do not make any decision about you by automated means that produces legal effects for you or affects you in a comparably significant way.
Cookies on our own site and dashboard
Every cookie we set exists to make something work, not to learn about you. None is used for advertising or profiling, and none is shared with anyone.
| Cookie | What it does | How long |
|---|---|---|
wos-session | Keeps you signed in | Up to 400 days, the default of our identity library. ⚠ TODO legal: confirm this is the duration we want to run and publish |
wos-callback-retry | Recovers a sign-in that failed on the way back from the identity provider, so it is retried once instead of showing you an error | Minutes |
NEXT_LOCALE, tz | Remember the language and time zone you chose | Until you change them |
avatarUrl | Shows your profile picture without a round trip on every page | One year |
CURRENT_SITE | Remembers which of your sites you were last working on | One year |
sidebar_state | Remembers whether you collapsed the navigation | Seven days |
| Report filter cookies | Remember the date range and filters you last chose on a report, so it opens where you left it | Up to one year |
Our identity provider also sets a short-lived cookie during sign-in to protect the exchange against interception.
⚠ TODO legal: confirm that this set qualifies for the consent exemption for cookies strictly necessary to a service the user asked for, so that no banner is required.
The assistant on our documentation pages sets one further cookie, described in the visitor section above.
Who else sees this data
We use a small number of providers to run the service. Each is named, with what it does and where it operates, on our sub-processor page.
⚠ TODO legal: confirm that each provider's data-processing terms are accepted before this page states that they are.
Your data is not sold, and it is not shared with anyone for their own purposes.
Where your data is
What we store durably is stored in the European Union, in Frankfurt.
Several things are processed elsewhere: your identity, held by our identity provider in the United States; any email we send you, handled by our email provider in the United States; the messages you type in the playground, sent to a model provider outside the European Union; on every request, the session processing that our hosting platform's routing layer performs in whichever of its regions is nearest you; and the audience and performance measurement, which our hosting provider processes outside the region we pin (⚠ TODO legal: the United States according to its data processing agreement, to confirm with the provider). Its control plane, its backups and its image delivery are also global. The sub-processor page lists all of this per provider.
⚠ TODO legal: the safeguard relied on for those transfers, per provider.
How long we keep it
| What | How long |
|---|---|
| Your account and its settings | For as long as you have an account. See what happens when it ends, below. |
| The record of configuration changes in your organisation | 365 days by default. We can set a different window for an organisation on request. |
| Playground test conversations | 12 months, then deleted by the same purge that governs every conversation |
| The measurement taken on our documentation pages | 24 months |
| Audience and performance measurement by our hosting provider | The value that tells visits apart is discarded after 24 hours. ⚠ TODO legal: how long the provider keeps the measurement itself |
| Your newsletter subscription | Until you unsubscribe. We keep the record that you consented and then withdrew, as proof we were entitled to email you. ⚠ TODO legal: how long that record is kept |
| Technical logs | ⚠ TODO legal: infrastructure log retention, per provider |
When an account or an organisation ends. Today we remove a person's access on request, and the retention periods above continue to run on what remains. One record deliberately outlives the rest: which version of the terms an organisation accepted, when, and who accepted it, because that is the proof the organisation agreed to them. ⚠ TODO legal: the full account and organisation deletion process, which is not yet built.
Your rights
You can ask us to give you a copy of your data, correct it, delete it, restrict what we do with it, or hand it to you in a portable form. You can object to processing we base on our legitimate interest. Where we rely on your consent, you can withdraw it at any time, and for product emails you can do that from any email we send you without writing to anyone.
Write to privacy@iadvize.com. We answer within one month.
If your request concerns your employer's account rather than your own data, we will tell you and ask them.
If you think we have got this wrong, you can complain to the French data protection authority, the CNIL (3 place de Fontenoy, 75007 Paris, cnil.fr), or to the authority where you live or work.
Changes to this policy
When this policy changes, the version date at the top of the page changes with it. If a change materially affects what we do with your data, we tell the people it affects rather than relying on you to notice.