Introduction
CODE75, a French company (société par actions simplifiée unipersonnelle) operating the Synoveo brand ("we," "our," or "us"), is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our WordPress plugin, API services, and website (collectively, the "Services"). This policy applies to all users of Synoveo, whether you use our WordPress plugin, direct API access, or visit our website.
Introduction
CODE75, a French company (société par actions simplifiée unipersonnelle) operating the Synoveo brand ("we," "our," or "us"), is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our WordPress plugin, API services, and website (collectively, the "Services"). This policy applies to all users of Synoveo, whether you use our WordPress plugin, direct API access, or visit our website.
Information We Collect
WordPress Plugin Usage
When you use the Synoveo WordPress plugin, we may collect:
- Business Information: Business name, address, phone number, website URL, operating hours, and other business profile data you configure
- Plugin Data: Information about installed WordPress plugins (WooCommerce, Bookly, Amelia, etc.), their configuration status, and available business data
- Google Business Profile Data: Information from your Google Business Profile that you authorize us to access via Google's official API
- WordPress Site Data: Site URL, WordPress version, plugin versions, and basic site configuration
- Usage Analytics: How you interact with the plugin dashboard, feature usage, and error logs for debugging
Direct API Usage
When you use our API services directly, we collect:
- API Credentials: API keys, authentication tokens, and access credentials
- Request Data: API endpoint usage, request frequency, response times, and error rates
- Business Data: Any business information you send through our API endpoints
- Technical Information: IP addresses, user agents, request headers, and system information
Website and General Usage
- Contact Information: Name, email address, and any information you provide when contacting us
- Account Information: Username, email, billing information for paid plans
- Device and Browser Information: Browser type, operating system, device identifiers
- Cookies and Tracking: We use cookies and similar technologies to improve your experience
How We Use Your Information
We use the collected information to:
- Provide Core Services: Sync your business data with Google Business Profile, detect compatible plugins, and maintain accurate business information
- API Operations: Process API requests, manage rate limiting, ensure service reliability and security
- Service Improvement: Analyze usage patterns, identify popular features, and improve plugin compatibility
- Customer Support: Respond to inquiries, troubleshoot issues, and provide technical assistance
- Security and Compliance: Monitor for suspicious activity, prevent abuse, and ensure data security
- Legal Compliance: Comply with applicable laws, regulations, and legal processes
- Business Operations: Process payments, manage subscriptions, and communicate service updates
Information Sharing and Disclosure
Google Business Profile Integration
We share your business information with Google through their official Business Profile API to update your business listing. This sharing is essential for our core service and occurs only with your explicit authorization through Google's OAuth system.
Third-Party Service Providers
We may share information with trusted service providers who assist us in:
- Cloud hosting and infrastructure (Railway, Vercel)
- Payment processing (Stripe)
- Customer support and communication tools
- Analytics and monitoring services
Legal Requirements
We may disclose your information if required by law, court order, or to protect our rights and safety.
Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the business transaction.
Data Security
We implement industry-standard security measures to protect your information:
- Encryption: All data transmission uses HTTPS/TLS encryption
- Access Controls: Strict access controls and authentication for our systems
- Google OAuth: We never store your Google passwords; authentication uses Google's secure OAuth system
- API Security: Rate limiting, request signing, and secure token management
- Regular Audits: Regular security assessments and vulnerability testing
- Data Minimization: We collect and retain only necessary information
Data Retention
- Active Accounts: We retain your information while your account is active and you use our services
- Inactive Accounts: Information is retained for 12 months after account deactivation
- Legal Requirements: Some information may be retained longer to comply with legal obligations
- API Logs: API usage logs are retained for 90 days for security and debugging purposes
- Plugin Analytics: Anonymized usage analytics may be retained indefinitely for service improvement
Your Rights and Choices
Access and Control
- Account Settings: Update your information through your WordPress admin or account dashboard
- Google Authorization: Revoke Google Business Profile access anytime through your Google account settings
- Plugin Deactivation: Deactivate the plugin to stop data collection and syncing
- API Access: Disable API keys to stop API data collection
Data Rights (GDPR/CCPA)
If you're in the EU or California, you may have additional rights:
- Access: Request a copy of your personal information
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Request your data in a portable format
- Opt-Out: Opt out of certain data processing activities
To exercise these rights, contact us at privacy@synoveo.com
🔒 Export Your Data
You can export your personal data stored in our systems:
Note: Data exports are logged for audit purposes in compliance with GDPR Article 30. If you need assistance with your data export, contact our privacy team at privacy@synoveo.com
Cookies and Tracking Technologies
We use cookies and similar technologies for:
- Essential Functions: Authentication, security, and core functionality
- Analytics: Understanding how you use our services (Google Analytics)
- Preferences: Remembering your settings and preferences
- Performance: Monitoring and improving service performance
You can control cookies through your browser settings, but some features may not work properly if disabled.
International Data Transfers
Your information may be processed and stored in countries other than your own. As a French company, CODE75 complies with European Union data protection regulations (GDPR). We ensure appropriate safeguards are in place for international transfers, including:
- Standard contractual clauses approved by the European Commission
- Adequacy decisions for certain countries
- Other lawful transfer mechanisms as required under GDPR
- Compliance with French data protection authority (CNIL) guidelines
French Legal Compliance
As a French company (CODE75), we comply with applicable French and European Union laws, including:
- GDPR: General Data Protection Regulation (EU) 2016/679
- French Data Protection Act: Loi Informatique et Libertés
- CNIL Guidelines: Commission Nationale de l'Informatique et des Libertés
- ePrivacy Directive: Cookie and electronic communications regulations
- Consumer Code: French consumer protection laws
If you are located in France or the European Union, you have additional rights under these regulations. You may file complaints with the CNIL or your local data protection authority.
Children's Privacy
Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you become aware that a child has provided us with personal information, please contact us immediately.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the updated policy on our website
- Sending email notifications to registered users
- Displaying notifications in the WordPress plugin dashboard
- Updating the "Last updated" date at the top of this policy
Contact Information
If you have questions about this Privacy Policy or our privacy practices, please contact us:
Company: CODE75
Legal Form: Société par actions simplifiée unipersonnelle
Share Capital: €1,000
Address: 16 Allée Pernette du Guillet, 75019 Paris, France
Registration: RCS Paris 948 211 941
Email: privacy@synoveo.com
Support: support@synoveo.com
Website: www.synoveo.com
Specific Service Information
WordPress Plugin Users
The Synoveo WordPress plugin operates locally on your website and communicates with our API servers. Your WordPress database remains under your control, and we only access information you explicitly configure for synchronization.
Direct API Users
When using our API directly, you are responsible for ensuring you have appropriate permissions for any data you send to our services. We recommend implementing proper authentication and rate limiting in your applications.
Google Business Profile Integration
Our integration with Google Business Profile is governed by Google's terms of service and privacy policy in addition to our own. We use only the minimum permissions necessary to provide our services.