GDPR Compliance Policy

Last Updated: 07/08/2024

Bonjour Stranger (“we,” “us,” “our”) is committed to ensuring that your privacy is protected. This GDPR Compliance Policy explains your rights under the General Data Protection Regulation (GDPR) and how we handle your personal data.

1. Introduction The General Data Protection Regulation (GDPR) (EU) 2016/679 is a regulation in EU law on data protection and privacy in the European Union (EU) and the European Economic Area (EEA). It also addresses the transfer of personal data outside the EU and EEA areas.

2. Data Controller and Data Processor

  • Data Controller: Bonjour Stranger acts as the data controller for the personal data you provide to us.
  • Data Processor: We may also act as a data processor when processing personal data on behalf of another data controller.

Contact Information for Data Controller: Email: [email protected]

3. Legal Basis for Processing We process personal data based on the following legal grounds:

  • Consent: You have given clear consent for us to process your personal data for a specific purpose.
  • Contract: The processing is necessary for a contract we have with you, or because you have asked us to take specific steps before entering into a contract.
  • Legal Obligation: The processing is necessary for us to comply with the law.
  • Legitimate Interests: The processing is necessary for our legitimate interests or the legitimate interests of a third party, unless there is a good reason to protect your personal data which overrides those legitimate interests.

4. Data Collection and Use We collect and use personal data in the following ways:

4.1 Personal Data We Collect

  • Account Information: Name, email address, date of birth, username, and password.
  • Usage Data: IP address, browser type, operating system, referring URLs, access times, and page views.
  • Communications: Any communications you have with us, including emails, messages, and support requests.

4.2 How We Use Personal Data

  • To Provide Services: To create and manage your account, provide customer support, and operate our services.
  • To Improve Services: To understand how users interact with our services and make improvements.
  • To Communicate: To send you updates, newsletters, marketing communications, and other information.
  • To Enforce Policies: To ensure compliance with our terms of service and other policies.
  • To Comply with Legal Obligations: To comply with applicable laws and regulations.

5. Data Sharing and Transfers We do not sell your personal data. We may share your personal data with:

  • Service Providers: Third-party service providers who perform services on our behalf, such as hosting, payment processing, and customer support.
  • Legal Authorities: Law enforcement, government officials, or other third parties if required by law or if we believe that disclosure is necessary to protect our rights or comply with a legal process.
  • Business Transfers: In the event of a merger, sale, or acquisition, your personal data may be transferred as part of the business assets.

6. Data Security We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption: Encrypting personal data during transmission and at rest.
  • Access Controls: Restricting access to personal data to authorized personnel only.
  • Regular Audits: Conducting regular security audits and assessments.

7. Data Retention We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. When we no longer need your personal data, we will securely delete or anonymize it.

8. Your Rights Under GDPR You have the following rights regarding your personal data:

  • Right to Access: You have the right to request access to your personal data.
  • Right to Rectification: You have the right to request correction of any inaccurate or incomplete personal data.
  • Right to Erasure: You have the right to request the deletion of your personal data under certain circumstances.
  • Right to Restrict Processing: You have the right to request the restriction of processing your personal data under certain circumstances.
  • Right to Data Portability: You have the right to request a copy of your personal data in a structured, commonly used, and machine-readable format and to transfer it to another data controller.
  • Right to Object: You have the right to object to the processing of your personal data under certain circumstances.
  • Right to Withdraw Consent: If you have given consent for the processing of your personal data, you have the right to withdraw your consent at any time.

9. Exercising Your Rights To exercise any of your rights, please contact us at:

Email: [email protected]

We will respond to your request within one month. If your request is complex or you have made numerous requests, it may take us longer. In such a case, we will notify you and keep you updated.

10. International Data Transfers Your personal data may be transferred to and processed in countries other than the country in which you are resident. These countries may have data protection laws that are different from the laws of your country. However, we take measures to ensure that any such transfers comply with applicable data protection laws and that your information remains protected to the standards described in this GDPR Compliance Policy.

11. Complaints If you have any concerns about our use of your personal data, you can make a complaint to us using the contact information provided above. You also have the right to complain to a data protection authority. For more information, please contact your local data protection authority.

12. Changes to This GDPR Compliance Policy We may update this GDPR Compliance Policy from time to time. If we make significant changes, we will notify you by email or through a notice on our website. Your continued use of our services after any such changes constitutes your acceptance of the new GDPR Compliance Policy.

13. Contact Information If you have any questions or concerns about this GDPR Compliance Policy or our data practices, please contact us at:

Email: [email protected]

Effective Date: 07/08/2024