What is the use of this policy?

We attach great importance to the protection and confidentiality of your personal data, which represents for us a pledge of seriousness and trust.
The data privacy policy specifically demonstrates our desire to ensure compliance with the applicable data protection rules and, in particular, those of the General Data Protection Regulation ("GDPR").
In particular, the privacy policy aims to inform you about how and why we process your data in the context of the services we provide.

Why do we process your data?

As part of the services offered, we are necessarily required to process your personal data for the following reasons and bases :
● To browse our website messagesfromheartists-accor.com, benefit from our services and so that we can respond to your requests (eg: requests for information, complaints, etc.) on the basis of our general conditions of use and our legitimate interest in providing you with the best possible service.
● To operate videos posted on our site based on your prior consent.
● To guarantee and strengthen the security and quality of our services on a daily basis (e.g. statistics, data security, etc.) on the basis of the legal obligations weighing on us, our general conditions of sale and our legitimate interest in ensuring the proper functioning of our services.
● Finally, we can also install "Cookies" on your terminal. For more information on the use of "Cookies", we invite you to consult our Cookies policy.

Your data is collected directly from you when you connect to our website and use our services.
We never carry out commercial prospecting (eg emailing, sending SMS, etc.) as part of our activity and we undertake to process your data only for the reasons described above. On the other hand, when you voluntarily publish content on the pages that we publish on social networks, you acknowledge that you are fully responsible for any personal information that you may transmit, regardless of the nature and origin of the information provided.

What data do we process and for how long?

We have summarized the categories of personal data that we collect as well as their respective retention periods.
If you wish to obtain even more details on the retention periods applicable to your data, you can contact us at the address: data.privacy@accor.com.
● Personal identification data for consumer and professional customers for professionals (e.g. surname, first name, position, company, etc.) and contact details (e.g. personal or professional email address, Linkedin , etc.) kept for the duration of the provision of the service to which are added the legal limitation periods which are generally 5 years.
● data relating to the viewing of our videos which are anonymized and stored indefinitely.
● Connection data (eg: logs, IP address, etc.) kept for a period of 1 year.
● Cookies which are generally kept for a maximum of 13 months. For more details on the use we make of your cookies, you can consult our cookies policy accessible at any time on our website.

At the end of the retention periods summarized above, we delete all your personal data in order to guarantee your confidentiality for future years.
The deletion of your personal data is irreversible and we will no longer be able to communicate them to you after this period. At most, we can only keep anonymous data for statistical purposes.
Please also note that in the event of litigation , we have an obligation to keep all the data concerning you for the duration of the processing of the file, even after the expiry of their retention periods described above.

What rights do you have to control the use of your data?

The applicable data protection regulations grant you specific rights that you can exercise, at any time and free of charge , in order to control the use we make of your data.
● Right of access and copy of your personal data as long as this request is not in contradiction with business secrecy, confidentiality, or the secrecy of correspondence.
● Right to rectification of personal data that is erroneous, obsolete or incomplete.
● Right to oppose the processing of your personal data implemented for commercial prospecting purposes.
● Right to request the erasure ("right to be forgotten") of your personal data which is not essential to the proper functioning of our services.
● Right to the limitation of your personal data which allows to photograph the use of your data in the event of dispute on the legitimacy of a treatment.
● Right to the portability of your data which allows you to recover part of your personal data in order to store them or transmit them easily from one information system to another.
● Right to give instructions on the fate of your data in the event of death either through you, or through a trusted third party or a beneficiary.

For a request to be considered , it must be made directly by you to data.privacy@accor.com. Any request that is not made in this manner cannot be processed.
Requests cannot come from anyone other than you. We may therefore ask you to provide proof of identity in the event of doubt about the identity of the applicant.
Please note that we can always refuse to respond to any excessive or unfounded request, particularly with regard to its repetitive nature.

Who can have access to your data?

We only communicate your data to persons duly authorized to use them to implement our services (eg security and technical service providers in charge of data hosting).

How do we protect your data?

We implement all the technical and organizational means required to guarantee the security of your data on a daily basis and, in particular, to combat any risk of destruction, loss, alteration, or unauthorized disclosure of your data (e.g.: training, access control, passwords, antivirus, backup servers, "https", etc.).

Can your data be transferred outside the European Union?

Unless it proves to be strictly necessary and exceptionally, we never transfer your data outside the European Union and your data is always hosted on European soil . In addition, we do our best to only recruit service providers who host your data within the European Union.
In the event that our service providers are nevertheless required to transfer personal data concerning you outside the European Union, we scrupulously ensure that they implement the appropriate guarantees in order to ensure the confidentiality and protection of your data.

Who can you contact for more information?

Our Data Protection Officer ("DPO") is always available to explain to you in more detail how we process your data and to answer your questions on the subject at the following address: data.privacy@accor.com.

Can the policy be changed?

We may modify our privacy policy at any time to adapt it to new legal requirements as well as to new treatments that we may implement in the future. You will of course be informed of any changes to this policy.