Personal data
This English version is provided for convenience only. The French version is the sole legally binding text.
Last updated: 15 September 2026
This site is deliberately simple: it sets no cookie, calls on no external analytics service and asks you to create no account. We count page views with an in-house mechanism that tracks nobody, described in section 8. The only personal data we process is what you send us yourself, by email.
GRAVOSIG, 1 rue Saint Materne, 67220 Neubois, France — company number 852 566 009, operating the RB2S Conseil and RB2S IT Services brands. For any question about personal data: contact@rb2s.com. Given the nature and volume of our processing, we are not required to appoint a data protection officer; requests are handled by the company president.
We collect no special category data within the meaning of Article 9 GDPR, and we neither buy nor sell prospecting lists.
Your data is neither shared nor sold to third parties for commercial purposes. It is accessible only to those within GRAVOSIG who need it, and to the following providers:
Our processing takes place within the European Union. The hosting and colocation services we offer are delivered exclusively in France, in our machine room in Sélestat, on dedicated hardware: no extraterritorial legislation such as the US Cloud Act applies to them. The only possible transfers are those listed in section 5, covered by appropriate safeguards.
You have the right to access, rectify, erase, restrict and object to the processing of your data, the right to data portability, and the right to set instructions on what happens to your data after your death. To exercise them, write to contact@rb2s.com; we answer within one month. If our answer does not satisfy you, you may lodge a complaint with the French data protection authority (CNIL), 3 place de Fontenoy, TSA 80715, 75334 Paris Cedex 07 — www.cnil.fr, or with the supervisory authority of your own country.
This site places no cookie on your device: no analytics cookie, no advertising cookie, no social network cookie. No consent banner is therefore needed.
Our audience measurement is in-house and anonymous. For each page viewed, our server records the page address, the language and, where applicable, the domain name of the site that brought you here. To tell visitors apart without identifying them, your IP address and browser are reduced to a short fingerprint, hashed with a salt that changes every day: from one day to the next no correlation is possible, and the fingerprint cannot be traced back to you. Nothing is stored on your device, nothing is sent to a third party, and nothing is cross-referenced with any other processing. Only daily totals are kept, for at most thirteen months.
Loading typefaces from Google Fonts, mentioned in section 5, places no cookie but does involve a connection to a third-party server.
The site is served over HTTPS only. Our accounts are protected by multi-factor authentication, backups are encrypted, and access to client systems is named and logged. In the event of a data breach likely to create a risk to your rights, we notify the CNIL within 72 hours and inform you without undue delay.
This policy may be updated to reflect technical, legal or organisational changes. The date of the last update appears at the top of the page.