Privacy Policy

Last updated: August 1, 2025

Quark Security, a simplified joint‑stock company incorporated in the Paris Trade and Companies Register under number 944 681 725, with its registered office at 60 rue François 1er, 75008 Paris, attaches paramount importance to the protection of the personal data of its users, partners and customers.

This policy aims to inform you transparently about how we collect, use, store, protect and share your personal data, in compliance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and the amended French Data Protection Act.

1. Data Controller

Quark Security
SAS registered with the Paris Trade and Companies Register under No. 944 681 725
Head office: 60 rue François 1er, 75008 Paris
Contact: 📧 contact@quark-security.io

2. Data Collected

We collect only the data strictly necessary for the purpose of the processing:

A. Data provided via the contact form

  • Last name, first name
  • Professional email address
  • Telephone number
  • Company name
  • Message content

B. Data collected automatically

  • IP address
  • Browser and operating system
  • Pages visited, session duration
  • Traffic source (referrer, advertising campaigns)

C. Data via cookies

See our Cookie Policy

3. Purposes of the Processing

Your personal data are processed for the following purposes:

  • Responding to your requests via the contact form
  • Providing commercial information about our services
  • Managing the pre‑contractual or contractual relationship
  • Analyzing website audience and improving our content
  • Securing the site against malicious attempts
  • Carrying out targeted advertising campaigns (with your consent)

4. Legal Basis

Processing is based on the following legal grounds:

  • Consent (contact form, marketing cookies)
  • Legitimate interest (statistical analysis, site security, B2B prospecting)

Performance of a contract or pre‑contractual measures (communications with prospects/clients)

5. Recipients of the Data

Personal data are accessible only to authorised personnel of Quark Security and, in limited cases, to our service providers for strictly technical or contractual needs (hosting, CRM, emailing tool, audience measurement).

All processors comply with GDPR requirements and act only on documented instruction.

6. Transfers Outside the European Union

Data may be transferred outside the European Economic Area via certain tools (Google, Facebook, etc.) with appropriate safeguards: Standard Contractual Clauses (SCCs), services subject to the Data Privacy Framework (DPF) or equivalent recognised mechanisms.

You can request the list of these safeguards by contacting contact@quark-security.io.

7. Retention Period

  • Contact form data: 3 years from the last contact
  • Contractual data: 10 years (accounting obligations)
  • Cookies: maximum 13 months
  • Technical logs: 12 months

8. Your Rights

In accordance with the GDPR, you have the following rights:

  • Right of access to your data
  • Right to rectification in case of error
  • Right to erasure (“right to be forgotten”)
  • Right to restriction of processing
  • Right to object, in particular to direct marketing
  • Right to data portability

📧 To exercise your rights: contact@quark-security.io

We undertake to respond within 30 days. In the event of an unresolved dispute, you may refer the matter to the CNIL.

9. Data Security

Quark Security implements all appropriate technical and organisational measures to ensure a level of security appropriate to the risk: encryption, access control, auditing, secure hosting, etc.

10. Updates

This policy may be amended to reflect regulatory or technical developments. The last update date is shown at the top of the document.