Privacy Policy

Last updated: January 28, 2025

1. Introduction

DHANIS SRL (hereinafter "we", "our" or "Satisfact.io"), with its registered office at Rue des Robiniers 68, B-7024 Mons, Belgium, registered with the Crossroads Bank for Enterprises under number BE0790690946, is the data controller responsible for the processing of your personal data in connection with the use of the Satisfact.io platform, a SaaS software for customer feedback management and online reputation.

The purpose of this privacy policy is to inform you about how we collect, use, store and protect your personal data, in accordance with the General Data Protection Regulation (GDPR - Regulation EU 2016/679).

2. Data collected

In the context of using Satisfact.io, we collect:

  • Identification data: surname, first name, professional email address
  • Account data: organisation name, password (encrypted), language preferences
  • Feedback data: satisfaction survey responses, ratings, text comments
  • Technical data: IP address, browser type, operating system, pages visited, timestamps
  • Payment data: payment information is collected and processed directly by Stripe; we do not store your banking data

3. Processing purposes

Your data is processed for the following purposes:

  • Provision and management of the Satisfact.io service
  • Creation and management of your user account
  • Processing and analysis of satisfaction survey responses
  • Generation of analysis reports using artificial intelligence
  • Sending notifications and service-related alerts
  • Billing and subscription management
  • Continuous improvement of the service and technical support
  • Compliance with our legal and regulatory obligations

4. Legal basis for processing

  • Performance of a contract: processing is necessary for the performance of the service agreement to which you are a party
  • Legitimate interest: service improvement, fraud prevention, platform security
  • Consent: for sending marketing communications and the use of non-essential cookies
  • Legal obligation: retention of billing data

5. Data retention period

Feedback data (survey responses) is retained for a maximum period of 24 months from collection, after which it is anonymised.

Account data is retained for the duration of your subscription and deleted within 30 days after account closure, unless a longer legal retention obligation applies (in particular, billing data retained for 10 years).

6. Sub-processors and data transfers

To provide our service, we use the following sub-processors:

  • Supabase (PostgreSQL): database hosting (EU servers)
  • DigitalOcean, LLC: web application hosting (EU and US servers, with standard contractual clauses)
  • Stripe Inc.: payment processing (PCI DSS certified)
  • Mailjet (Sinch): sending transactional and notification emails
  • OpenAI: generation of AI analysis reports (transmitted data is anonymised and does not contain identifiable personal data)

Some of these sub-processors are located in the United States. In such cases, standard contractual clauses approved by the European Commission govern data transfers.

7. Your rights

In accordance with the GDPR, you have the following rights regarding your personal data:

  • Right of access: obtain a copy of your personal data
  • Right to rectification: correct inaccurate or incomplete data
  • Right to erasure: request the deletion of your data
  • Right to data portability: receive your data in a structured, machine-readable format
  • Right to object: object to the processing of your data
  • Right to restriction: restrict the processing of your data in certain cases

To exercise your rights, contact us at: [email protected]

You also have the right to lodge a complaint with the Data Protection Authority (DPA) in Belgium: www.autoriteprotectiondonnees.be

8. Cookie policy

Satisfact.io uses cookies to ensure the proper functioning of the platform and to improve your user experience.

Types of cookies used:

  • Essential cookies: necessary for the operation of the service (authentication, session). They do not require your consent.
  • Analytical cookies: audience measurement and service improvement. Subject to your consent.

You can manage your cookie preferences at any time via your browser settings.

9. Data security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, destruction or alteration, including: encryption of data in transit (TLS) and at rest, strict access controls, regular backups and security audits.

10. Contact

For any questions regarding this privacy policy or the protection of your personal data, you can contact us:

  • DHANIS SRL
  • Rue des Robiniers 68, B-7024 Mons, Belgium
  • Email: [email protected]
  • BCE: BE0790690946