01.Privacy policy
This is a translation provided for convenience. In case of any discrepancy, the French version of this document prevails.
02.Data controller
SigmaGravity operates a SaaS platform for digital business cards and NFC media. For any question about privacy, or to exercise your rights, write to [email protected].
Where Moroccan law applies, the processing of personal data is governed in particular by Law No. 09-08 on the protection of individuals with regard to the processing of personal data.
03.Data we process
The data varies with how you use the platform. We limit collection to what is useful for operation, security and improvement of the service.
- Account data: name, email address, technical identifiers and preferences.
- Profile content: photo, role, phone, links, portfolio, professional location and whatever information you choose to publish.
- Usage data: pages viewed, actions in the dashboard, technical logs and information needed for diagnosis.
- Scan and telemetry data: date, device type, browser, approximate IP address and the origin of the tap or QR scan. Precise location is only requested with the browser’s permission.
- Messages sent to support or through the contact form.
04.Why we use this data
- To create, secure and administer your account.
- To display and update your public digital profile.
- To link your NFC cards and QR codes to the right profile.
- To produce the engagement statistics and logs available in your dashboard.
- To answer support requests and prevent abuse.
- To improve the performance, accessibility and reliability of the service.
- To meet our legal obligations and defend our rights.
05.Legal bases
Depending on the context, processing rests on the performance of the service requested, your consent, our legitimate interest in securing and improving the platform, or compliance with a legal obligation. You may withdraw consent where consent is the basis of the processing.
06.Sharing and processors
We do not sell your personal data. Some data may be processed by technical providers that are indispensable to hosting, email, security, storage or performance measurement. We seek to limit the information transmitted and to bind those providers contractually.
Where processing or a transfer involves another country, the safeguards and formalities required by the applicable regulation must be observed.
07.Retention period
Data is kept for as long as needed to provide the service, handle your request and meet applicable obligations. Technical logs and backups may persist for a limited period after an account is deleted.
08.Security
We use technical and organisational measures proportionate to the risk: access control, authentication, encryption of communications, logging and backups. No system can, however, guarantee zero risk.
09.Your rights
Moroccan Law No. 09-08 provides in particular for rights of information, access, rectification and objection. Other rights, such as erasure, restriction or portability, may apply depending on your situation and the jurisdiction concerned.
Write to [email protected] setting out your request. Reasonable identity verification may be required. If you believe your rights are not being respected in Morocco, you may also seek information from, or lodge a complaint with, the CNDP.
11.Minors
The platform is intended for professionals and is not designed to knowingly collect children’s data. If you believe a minor has provided us with data, contact us so that we can look into it.
12.Changes to this policy
This policy may change with the product or the regulation. The update date is shown at the top of the page. Where a change is significant, further information may be displayed within the platform.