Mentions légales
Politique de confidentialité
Template for legal review. This document is a starting point prepared for ChurchBright. It has not been reviewed by a lawyer and must be checked and completed (every item in [square brackets]) by qualified legal counsel before it is relied on.
Last updated: [date]
Who we are
[Company legal name] ("we") operates ChurchBright. You can contact us at [privacy email] or [address]. [Name your data protection officer or representative if required.]
Two different roles
- Our own customers and visitors. For information about church administrators, people who contact us, and visitors to this marketing website, we decide how the information is used (we are the controller).
- Church data. Churches store information about their members and visitors in ChurchBright. For that information the church is the controller and we act on its instructions as a processor. Members should contact their church about how it uses their data.
What we collect
- Account details: names, email addresses, phone numbers and roles of church team members.
- Enquiries: what you send through our contact, demo and partner forms.
- Billing: plan and payment records. Card details are handled by our payment providers; we do not store full card numbers.
- Usage and technical data: sign-in times, IP addresses, device and browser information and security logs.
How we use it
To provide and secure the service, create and manage accounts, process payments, respond to enquiries, send service messages, improve the product and meet legal obligations. [List the lawful bases that apply in your jurisdictions, for example contract, legitimate interests, consent and legal obligation.]
Sharing
We share information only with service providers who help us run the service — for example hosting, email delivery, SMS and voice delivery, payment processing and customer support tools — under contracts that protect it. [Link to or list sub-processors.] We do not sell personal information.
International transfers
Data may be processed in [countries]. Where required we use appropriate safeguards such as [standard contractual clauses / adequacy decisions].
How long we keep it
We keep account information while your account is active and for [period] afterwards; enquiry records for [period]; and billing records for as long as tax law requires. Churches control how long church data is kept.
Security
We use encryption in transit, encryption of stored payment and messaging credentials, role-based access, two-factor sign-in and activity logs. See our security page.
Your rights
Depending on where you live you may have rights to access, correct, delete or export your information, and to object to or restrict certain processing. Contact [privacy email]. You can also complain to your data protection authority [name the relevant authorities, e.g. NDPC (Nigeria), ICO (UK)].
Children
The marketing website is not directed at children. Churches that store information about children through ChurchBright are responsible for having an appropriate basis to do so.
Cookies
See our cookie policy.
Changes
We will post any changes here and update the date above. Material changes will be notified to account owners.