Data Controller
Personal Data Collected
Account Data
- Veterinarian's first and last name
- Login email
- Veterinary clinic information (name, address, phone)
- Password (encrypted and secured)
- Date of acceptance of terms of use
Usage Data
- Analyses performed and their textual results
- AI diagnosis history
- Satisfaction ratings (emoticon rating system)
- Contact messages and support requests
- Anonymized connection logs and usage statistics
Use of Data
Processing Purposes
- Service operation: Providing AI-powered assistance
- Account management: Authentication, personal history, preferences
- Service improvement: Optimization of the artificial intelligence algorithm
- Technical support: User assistance and troubleshooting
- Communication: Important information about the service
Legal Basis (GDPR)
- Contract execution: For the service provided
- Legitimate interest: For service improvement and security
- Consent: For marketing communications (optional)
Images and Medical Confidentiality
⚠️ Important: Uploaded medical images are never stored on our servers.
The process:
- You upload an image
- It is transmitted directly and securely to the artificial intelligence API
- The AI analyzes the image and returns a textual diagnosis
- The image is not saved
- Only the textual result is kept in your history
Data Sharing
No Commercial Sharing
Your data is never sold, rented, or transmitted for commercial or advertising purposes.
Technical Services Used
- Hosting: OVH (France) - GDPR compliance guaranteed
- Artificial Intelligence: OpenAI API - secure image processing
- Emails: Secure sending service for notifications
Your Rights (GDPR)
In accordance with the General Data Protection Regulation, you have the following rights:
- Right of access: Obtain a copy of all your personal data
- Right to rectification: Correct inaccurate or incomplete information
- Right to erasure: Delete your account and all your data
- Right to portability: Retrieve your data in a readable format
- Right to object: Object to the processing of your data
- Right to restriction: Limit processing in certain circumstances
To exercise your rights:
Email: contact@vet-ia.fr
Subject: "Exercise of GDPR rights - [your request]"
Response time: Maximum 30 days
Retention Period
- Active account data: As long as the account is used
- Analyses and history: 3 years after last login
- Technical logs: Maximum 12 months
- Billing data: 10 years (legal accounting obligation)
Data Security
We implement appropriate technical and organizational measures to protect your data:
Technical Measures
- Secure password encryption (Sodium/Argon2id)
- Secure connections (HTTPS/TLS)
- Certified secure hosting in France
- Regular encrypted backups
- Monitoring and intrusion detection
Cookies and Similar Technologies
Our site uses cookies essential for operation:
- User session: Maintaining connection
- Preferences: Saving your interface choices
- Security: Protection against attacks (CSRF)
No advertising or tracking cookies are used.
International Transfers
The use of the OpenAI API may involve data transfer to the United States. This transfer is carried out within the framework of appropriate safeguards and adequacy decisions of the European Commission.
Changes to This Policy
This privacy policy may be updated to reflect changes in our practices or regulations. Important changes will be notified to you by email.
Contact and Complaints
Supervisory authority: If you believe your rights are not respected, you can file a complaint with CNIL (French Data Protection Authority) at: www.cnil.fr