Legal
Privacy Policy - AlphaEdge
Last updated: April 28, 2026
1. Preamble
AlphaEdge attaches the utmost importance to the protection of personal data and respect for privacy. This policy describes how we collect, use, and secure your data in accordance with the General Data Protection Regulation (GDPR) and the French Data Protection Act.
As an Artificial Intelligence company, we apply "Privacy by Design" and "Data Minimization" principles to ensure that only the data necessary for the operation of our models is processed.
2. Data Controller
Data processing is carried out by AlphaEdge, a SAS whose registered office is located at:
18 RUE DU HUIT MAI 194549124 SAINT-BARTHELEMY-D'ANJOU
DPO / Data contact: dpo@alphaedge-ai.com
3. Categories of Data Collected
We collect only the data strictly necessary for our activities:
- Identity and contact data: Last name, first name, professional email address, phone number.
- Professional data: Company name, job title, SIRET number for billing.
- Browsing and technical data: IP address, connection logs, API usage metadata (request volume, response times) to ensure security and billing.
- Content data (AI inputs): Files, texts, or streams transmitted to our APIs for processing. This data remains the exclusive property of the Client.
4. Data Processing by Artificial Intelligence
This is a point specific to our Deeptech expertise:
- Zero Retention Policy: AlphaEdge applies a policy of not retaining content data (Inputs) after processing. Once the API has generated and sent the response to the Client, the source data (texts, files, streams) is immediately and permanently deleted from our compute servers.
- Anonymization: AlphaEdge may use anonymized technical metadata (which does not allow any direct or indirect identification) to improve the performance and robustness of its ELM/SLM architectures.
5. Purposes and Legal Bases
| Purpose | Legal basis |
|---|---|
| Managing customer relationships and performing contracts | Contract performance |
| Providing and maintaining our APIs and AI solutions | Contract performance |
| Securing infrastructure and detecting fraud | Legitimate interest |
| Sending newsletters or invitations (AI/Tech events) | Consent |
| Complying with accounting and tax obligations | Legal obligation |
6. Recipients and Hosting
- Recipients: Your data is accessible only to authorized AlphaEdge employees and our technical service providers (e.g. accountant, CRM).
- Hosting: AlphaEdge prioritizes hosting your data and its computing infrastructure on servers located within the European Union.
- No resale: AlphaEdge does not sell or exchange any personal data for third-party commercial purposes.
7. Retention Period
- Contractual data: Retained for the duration of the relationship, then archived for 10 years to meet legal obligations (accounting, evidence).
- Prospecting data: Retained for 3 years from your last contact.
- Content data (AI inputs): No retention (immediate deletion after API processing).
- Technical logs: Retained for a maximum of 12 months for security and debugging purposes, without including request content.
8. Security
We implement rigorous security measures:
- Traffic encryption (HTTPS/TLS/SSL).
- Strict access protocols (IAM) for Cloud and GPU resources.
9. Your Rights
In accordance with applicable regulations, you have the following rights:
- Access, rectification, and deletion of your data.
- Portability of your data to another provider.
- Restriction of and objection to processing on legitimate grounds.
- Withdrawal of consent at any time (for marketing communications).
To exercise these rights, contact us by email at: dpo@alphaedge-ai.com
You also have the right to lodge a complaint with the CNIL.
10. Changes
AlphaEdge reserves the right to amend this policy to reflect legislative or technical developments in Artificial Intelligence. Clients will be informed of any substantial change.