What we collect, why we collect it, and how we keep it safe — across every Swiftaw product, under the GDPR.
The short version: we collect what a product needs to work — your account details, what you share, and how you use things like Lifecheck. We use it to run and improve what we make, and to build new things. We keep it safe, we don't hold onto it longer than we need to, and we never sell it or hand it to advertisers. And you've got full control over it under the GDPR.
Swiftaw — a company based in the Île-de-France region of France — is the one responsible for the personal data that goes through its products, including Fortized and Lifecheck. We follow French law and the EU's GDPR. This policy is general and covers all of our products; a product can add its own privacy detail on top.
Depending on the product, this can be:
We collect data where it's actually needed, to:
We try to take the least a product needs to do those things.
We'd rather be trusted than squeeze value out of your data. So:
We don't sell your data, and we don't hand it to advertisers. We use it to run and improve what we make and to build new things — not as something to trade.
That's a promise on top of your legal rights below, not a replacement for them.
Under the GDPR we handle your data on a few grounds: to give you the product you signed up for, our legitimate interest in keeping it secure and improving it (weighed against your rights), your consent where we ask for it (which you can take back), and where the law requires us to keep or share something.
We don't sell your data. We only share it with the service providers who help us run our products — hosting and databases, for example — and only under contracts that tie them to protecting it and using it purely on our instructions. We'll also hand over data where the law requires it, or to keep our users and products safe.
We hold onto personal data only as long as we need it for the reason we collected it, or as long as the law says. Delete your content or your account and we remove the personal data tied to it — apart from copies we have to keep for legal or security reasons. Technical logs stick around for a limited time.
We use sensible technical and organisational measures — scrambled (hashed) passwords, access controls, encrypted connections. Nothing is ever perfectly secure, but we work to lower the risk and to move fast if something goes wrong, including telling you and the authorities when the law says we must.
The GDPR gives you the right to see your data, fix it, delete it, limit or object to how it's used, and get a copy you can take elsewhere. You can do most of this right inside a product's settings, or by asking us. You can also complain to your local authority — in France, the CNIL.
Any privacy question, or want to make a data request? Reach us through your Swiftaw account or the contact details on our product sites. We answer in French or English.