Skip to content
Leaid

Legal information

Privacy policy

Details of how the personal data of users of the Leaid website is collected, processed and protected.

Article 1 – Purpose and data controller

The purpose of this policy is to inform users of how their personal data is collected and processed when they use the site.

The data controller is Leaid, a single-shareholder simplified joint-stock company (SASU), registered with the Trade and Companies Register (RCS) under number 931 736 235.

For any questions relating to personal data, users may contact Leaid at the following address: contact@leaid.ai.

Article 2 – Data collected

Leaid may collect identification and contact data, such as surname, first name, email address, telephone number and, where applicable, professional information provided by the user when making contact.

Technical data may also be processed during browsing, including information relating to the device and browser, log data, and identifiers linked to cookies where these are used in accordance with the regulations.

Article 3 – Purposes of processing

Personal data is processed in order to respond to requests submitted via the site, to follow up on professional and commercial exchanges, to manage the pre-contractual or contractual relationship, to secure the site, to improve its operation, and to comply with the applicable legal and regulatory obligations.

Article 4 – Legal bases

Depending on the circumstances, processing is based on the user's consent, on the performance of pre-contractual measures or of a contract, on compliance with a legal obligation, or on Leaid's legitimate interest, in particular for the security of the site and the handling of incoming requests.

In practice: responding to contact requests and booking appointments rely on pre-contractual measures (Article 6(1)(b) GDPR) and on Leaid's legitimate interest in answering professional enquiries (Article 6(1)(f)); audience measurement relies on consent (Article 6(1)(a)); technical logs and site security on legitimate interest (Article 6(1)(f)); the retention of certain data on compliance with legal obligations (Article 6(1)(c)).

Article 5 – Mandatory nature of data

The information strictly necessary to process a request is indicated as mandatory at the time of collection. If this information is not provided, Leaid may be unable to respond to the request or to provide the service requested.

Article 6 – Recipients and processors

The data is intended for Leaid's authorised teams. It may also be processed by technical service providers acting as processors, in particular for hosting, email services, technical management of the site, audience measurement and security, to the extent necessary for their tasks and in accordance with Leaid's instructions.

Leaid neither sells nor assigns personal data to third parties.

Article 7 – Transfers outside the European Union

Leaid favours service providers that process data within the European Economic Area. Website hosting, audience measurement, routing of contact-form messages, professional email and online appointment booking rely on service providers, some of which are established in the United States; server-side processing and message storage are carried out in the European Union (Paris region).

Transfers of data to the United States that these services may involve are covered by the safeguards provided for in Article 46 GDPR — the European Commission's standard contractual clauses incorporated into the data processing agreements concluded with these providers — and, where the provider is certified under the EU–US Data Privacy Framework, by the adequacy decision relating to that framework.

Article 8 – Retention periods

Contact data relating to a request is retained for a maximum of three years from the last exchange, unless otherwise required by law or necessary for the handling of a dispute. Contractual data is retained for the duration of the contractual relationship and then archived in accordance with the applicable legal obligations.

Article 9 – Rights of data subjects

In accordance with the regulations, users have the rights of access, rectification, erasure, restriction and objection and, in certain cases, the right to portability of their data. Where processing is based on consent, users may withdraw their consent at any time.

These rights may be exercised by contacting Leaid at contact@leaid.ai. Users also have the right to lodge a complaint with the CNIL (French data protection authority).

Users may also set out instructions regarding the retention, erasure and disclosure of their data after their death (Article 85 of the French Data Protection Act).

Article 10 – Cookies and consent management

The site uses no advertising or personalisation trackers. The only items stored in the user's browser are strictly necessary for the operation of the site or for recording the user's choice, and are therefore exempt from the consent requirement: “leaid-consent” (local storage: the user's choice regarding audience measurement, kept for six months and then requested again); “leaid-theme” (local storage: light or dark display preference, kept until deleted by the user); “leaid_admin” (authentication cookie for the administration area, for Leaid's use only, valid for seven days).

Audience measurement on the site is carried out by a tool that uses neither cookies nor persistent identifiers: visits are counted from a hash of the request, which is deleted after twenty-four hours, and only aggregated statistics are kept — pages viewed, referring site, country, device type, browser, display performance, and anonymous interactions such as clicking the appointment booking link or submitting the contact form. This tool neither identifies visitors nor tracks their browsing across sites.

Leaid has nevertheless chosen to enable them only with the user's consent, obtained through the banner displayed on the first visit: refusing is as simple as accepting, no measurement script is loaded before a choice is made, the choice is kept for six months and then requested again, and it can be changed at any time via the “Manage cookies” link in the footer. The site's administration area is excluded from this measurement.

Article 11 – Security

Leaid implements appropriate technical and organisational measures to preserve the confidentiality, integrity and security of personal data and to limit the risks of unauthorised access or disclosure.

Article 12 – Updates

Leaid may amend this policy to reflect changes to the site, to its processing operations or to the regulations. The applicable version is the one published on the site on the date it is consulted.

Last updated: 22 August 2026.