1. Overview and purpose
This privacy policy describes how Digital Squad (hereinafter "Squadata"), publisher of the squadata.net platform, collects and processes your personal data as part of its data marketing activities.
Squadata's business is to send commercial offers by email or SMS to individuals who have consented to receive advertising communications, based on their browsing behaviour on the sites of its publisher partners.
Squadata complies with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (GDPR) as well as the amended French Data Protection Act.
2. Data controller
- Company: Digital Squad
- Address: 5, impasse Morel — 69003 Lyon, France
- DPO email: dpo@squadata.net
3. Data collected
As part of its activities, Squadata may collect and process the following categories of data:
- Behavioural browsing data: pages visited, products viewed, abandoned carts, visit duration — collected via tags placed on partner sites.
- Identification data: email address, last name, first name, phone number — sourced from the opt-in databases of publisher partners or advertiser clients.
- Technical data: IP address, operating system, browser type and version, cookie identifiers.
- Hashed and encrypted data: email addresses are secured by hashing and encryption to enable data matching without exposing raw data.
4. Purposes of processing
The data collected is processed for the following purposes:
- Creating personalised advertising profiles based on browsing behaviour;
- Delivering personalised or standard advertising via email or SMS;
- Linking and enriching complementary data sources;
- Connecting different devices belonging to the same user (cross-device);
- Measuring the effectiveness of advertising campaigns and producing performance reports;
- Improving targeting and segmentation algorithms.
The legal basis for this processing is the consent of the individuals concerned, collected by partner publisher sites at the time of data collection.
5. Retention period
Browsing data and hashed/encrypted identification data are retained for a maximum of 13 months from the date of collection.
After this period, the data is deleted or anonymised.
6. Cookies and similar technologies
Squadata uses tracking technologies to collect behavioural data:
- Web beacons: invisible images embedded in emails or web pages to confirm receipt or viewing.
- Conversion pixels: lightweight scripts placed on partner pages to track visitor actions.
- Advertising tags: triggers that initiate automated actions (email or SMS send) in response to browsing behaviour.
- Cookies: text files stored in the browser to remember preferences and track visits.
These technologies collect, in particular, the IP address, operating system and browser type used.
7. Data recipients
Data processed by Squadata may be shared with:
- Squadata's advertiser clients, for the execution of ordered campaigns;
- Technical subcontractors responsible for hosting, security or platform operations;
- Competent authorities upon legal or regulatory request.
Squadata does not sell or transfer your data to third parties for purposes other than those described in this policy.
8. Your rights
Under the GDPR, you have the following rights regarding your personal data:
- Right of access: obtain a copy of the data held about you;
- Right of rectification: correct inaccurate or incomplete data;
- Right to erasure: request the deletion of your data ("right to be forgotten");
- Right to restriction: temporarily suspend the processing of your data;
- Right to object: object to the processing of your data for prospecting purposes;
- Right to portability: receive your data in a structured, readable format.
To exercise any of these rights, contact our Data Protection Officer:
- By email: dpo@squadata.net
- By post: Digital Squad — DPO, 5, impasse Morel, 69003 Lyon
You may also lodge a complaint with the CNIL (www.cnil.fr) if you believe your rights are not being respected.
9. Data security
Squadata implements appropriate technical and organisational measures to protect your data against loss, alteration, unauthorised access or disclosure. Email addresses are systematically hashed and encrypted during cross-database matching operations.
10. Policy updates
This privacy policy may be updated at any time to reflect legal, regulatory or operational changes. The date of the last update is shown at the bottom of the page. We encourage you to check this page regularly.
Last updated: May 2026