Hiliv (hereinafter the "Provider" or “Hiliv”), committed to respecting the privacy of its users (hereinafter the "Users"), establishes this privacy policy (hereinafter the "Policy"). This Policy aims to define the methods of collection, processing and use of Users' personal data by the Provider.
This Privacy Policy applies to any user who accesses the Hiliv website or the Hiliv platform. Each user is responsible for reading and understanding this Privacy Policy, in particular whenever the Privacy Policy is amended.
The Provider collects Users' personal data when the User orders Services and when the User contacts the Provider via the contact form, by email or via the Provider's social networks.
The mandatory or optional nature of the data provided is indicated at the time of collection by an asterisk.
The personal data collected may include in particular: the User's identity (surname, first name), postal address, phone number, email address or any other data voluntarily shared by the User.
The Provider processes Users' personal data for the following purposes:
The Provider only processes Users' personal data for purposes strictly necessary to achieve the above purposes.
The Provider retains Users' personal data for a period not exceeding that necessary to achieve the purposes for which they were collected.
Thus, Users' personal data relating to a client account will be retained for as long as the client account is active. Users' personal data relating to a Service are retained for a period of 3 years from the date of order.
The Provider implements appropriate technical and organisational security measures to ensure the protection of Users' personal data and to prevent any unauthorised access, alteration, disclosure or destruction of such data, including:
As an independent assurance activity, the most recent penetration test (controlled offensive security assessment of information systems) was completed in May 2026.
In accordance with the regulations in force on the protection of personal data, Users have the following rights: right of access, rectification, erasure, restriction of processing, objection and portability. To exercise their rights, Users may contact the Provider at the following email address: contact@hilivsolution.com
The Provider may access certain data from the User's Google account only if the User chooses to use the following features:
| Google services (optional) | Data collected | Purpose | Legal basis |
|---|---|---|---|
| Sign in with Google | email address, name, first name, profile photo, unique Google identifier | Sign in to services | Consent (GDPR Article 6.1(a)) |
| Google Calendar sync | Read and write access to the User's Google Calendar, strictly limited to events created by Hiliv | Synchronisation of administrative appointments. | Consent (GDPR Article 6.1(a)) |
Data from Google sign-in is stored in the database hosted by Supabase solely for account management and authentication. The Provider does not transfer Users' Google data for advertising or third-party marketing purposes.
The Provider shares Users' Google data only with the following technical service providers, necessary for the operation of the service:
These providers act as sub-processors within the meaning of the GDPR, exclusively on Hiliv's instructions, and are contractually required to guarantee an adequate level of protection of personal data.
Data from the User's Google Calendar is never transmitted to Mistral AI or any artificial intelligence system.
Google data is never used to train AI models.
The User may disable Google Calendar synchronisation at any time from their account settings. The User may completely revoke the Provider's access to their Google data via the Google account permissions page.
The Provider shares data from Google APIs only when strictly necessary for the operation of the service or pursuant to a legal obligation.
The Provider may modify this Policy at any time.
Any questions regarding Hiliv's Privacy Policy may be sent by email to contact@hilivsolution.com