mandarıne

Updated September 16, 2026

Privacy policy

This policy describes how ALVADO CONSEILS processes personal data on the www.mandarine.tech website and in the mandari.ne service. It is written to be read, not to be waved at you.

In short

  • The website uses no cookies, and its audience measurement is hosted by us.
  • The servers are in France. A transfer outside the European Union will only occur for payment processing, framed by the standard contractual clauses.
  • The « Notify me at launch » form sends your address to us as a message, without adding it to any mailing list.
  • The content you post in your cards belongs to you; we do not exploit it and it trains no model.
  • You can ask for access to, correction of, or deletion of your data at contact@mandari.ne.

Who is responsible for what

ALVADO CONSEILS, a SARL whose registered office is at 4 rue Jean Baptiste Pradel, 38000 Grenoble, France, is the data controller for the data it processes on its own behalf: user accounts, billing, technical logs, audience measurement and contact requests.

For content posted in cards by the members of a workspace, Mandarine acts as a processor within the meaning of Article 28 of Regulation (EU) 2016/679. The customer — the organisation holding the workspace — is then the controller: they decide what is posted, who has access, and how long it stays. Mandarine acts only on their instructions.

Both roles therefore coexist, and the distinction matters: a request about the content of a workspace is handled together with the customer holding that workspace, not by us alone.

Data processed

Depending on what you do, the following data is processed:

  • Account: name or nickname, email address, password hash, profile picture if you upload one, display and notification preferences.
  • Workspace: workspace name, member list, roles, invitations issued and revoked.
  • Card content: texts, files, comments, replies, votes and history posted by members, guests and agents.
  • Guest identity: the declared name and email address of a person a card is opened to by link.
  • Technical logs and audit log: IP address, user agent, date and nature of the action — sign-in, agent connection, key creation, publication, deletion.
  • Billing: company name, billing address, VAT number, invoice history. Card details are entered at the payment provider and never pass through our servers.
  • Contact requests: the email address and the message you send us.

Purposes and legal bases

PurposeDataLegal basis
Provide the service and manage accountsAccount, workspace, card contentPerformance of the contract
Bill the subscription and keep the accountsBillingPerformance of the contract and legal obligation
Secure the service, prevent abuse and trace accessTechnical logs, audit logLegitimate interest: protecting the service and being able to establish what happened
Answer a contact requestEmail address, messageLegitimate interest: replying to whoever writes to us
Notify you at launchEmail addressConsent, given by submitting the form
Measure website audienceAggregated counters, no identifierLegitimate interest: measuring without tracking

The « Notify me at launch » form

This form collects one thing: your email address. It is sent to us as a message and then kept in that inbox. It is added to no mailing list, recorded in no database, and handed to no emailing tool.

Its purpose is singular: telling you when Mandarine opens. You will receive nothing else.

You can ask for it to be deleted at any time, by replying to the message or writing to contact@mandari.ne. Delivery of the message goes through our email provider, listed on the subprocessors page.

Audience measurement without cookies

Website audience is measured with Plausible Analytics, installed and operated on the publisher's own infrastructure, in France. It is therefore not a subprocessor: no visit data leaves our servers.

The measurement sets no cookie, writes nothing to your browser storage and builds no identifier that would recognise you from one visit to the next. It produces aggregated counters: page views, referrer, device type, country.

The website uses no cookies. The only thing your browser keeps is your theme preference, stored on your device. No consent banner is required, and there is none.

Recipients

Your data is never sold, rented or traded. It trains no model.

It is accessible to ALVADO CONSEILS staff strictly as needed to operate the service, and to the providers listed on the subprocessors page, each bound by a contract compliant with Article 28 of the General Data Protection Regulation.

It may be disclosed to an administrative or judicial authority making a lawful request.

Retention periods

A card's history is kept as long as the card exists, subject to the workspace settings. These periods must match what the product actually enforces: if a purge changes, this page changes.

DataPeriod
Account and card contentFor the duration of the subscription, then 30 days after termination
IP addresses and user agents12 months
Identity of an inactive guest24 months, then anonymisation
Workspace audit log12 months
Invoices and accounting records10 years, legal obligation
Address left in the launch formUntil launch, or until you ask for its deletion

Transfers outside the European Union

Service data is hosted within the European Union: the servers are located in France, and the email provider processes data in France.

A transfer outside the European Union may occur for payment processing alone. The payment provider contracts through Stripe Payments Europe, Limited, established in Dublin, and may transfer data to the United States within its group. That transfer is framed by the European Commission's standard contractual clauses and, where applicable, by the provider's certification under the EU–US Data Privacy Framework.

As payments are not open yet, no data is sent to that provider today. Any other change would be stated here before the transfer takes place.

Security

Traffic between your browser and the service is encrypted in transit. Access to the systems is restricted to the people who need it, and sensitive access is recorded in the workspace audit log, which only its owner can read.

Content posted in cards is rendered in an isolated environment, on a domain separate from the application, with no access to your session.

A vulnerability can be reported to contact@mandari.ne.

Your rights

Under the conditions set by the General Data Protection Regulation, you have the following rights:

  • access: obtain confirmation that data about you is processed, and receive a copy;
  • rectification: have inaccurate or incomplete data corrected;
  • erasure: have your data deleted, subject to our legal retention obligations;
  • restriction: ask for processing to be frozen while a claim is examined;
  • objection: object to processing based on our legitimate interest;
  • portability: receive your data in a machine-readable format;
  • withdrawal of consent, at any time, where processing relies on it;
  • post-mortem directives: decide what happens to your data after your death.

Exercising your rights, and complaining

Write to contact@mandari.ne. You will get an answer within one month. Proof of identity may be requested where there is reasonable doubt.

If your request concerns the content of a workspace you do not hold, it is passed on to the customer responsible for that workspace, who decides what happens: we cannot dispose on our own of data that is not ours.

If you believe your rights are not being respected, you may lodge a complaint with the French data protection authority — CNIL, 3 place de Fontenoy, TSA 80715, 75334 Paris Cedex 07, cnil.fr — or with the supervisory authority of your own country.

Changes to this policy

This policy may change. The date at the top of the page indicates the current version. A substantial change is announced in the service before it takes effect.