Privacy policy
Translation provided for information purposes only. In the event of any discrepancy, the French version shall prevail.
Data controller
PP2P TECHNOLOGIES, a French simplified joint-stock company (SASU) with share capital of one hundred euros — SIREN 995 286 689, Bastia Trade and Companies Register. Registered office: 4 Strada di a Padulella, 20253 Barbaggio, France. Contact: contact@narvalio.com.
The principle: we cannot read your documents
Your files are encrypted in your browser (AES-256-GCM) before they are uploaded. We store encrypted data only. Neither their content nor their names are accessible to us: the key is derived from your password and never leaves your browser. We cannot reconstruct it, and there is no recovery procedure.
To open a backup vault we ask you for no name, no e-mail address and no telephone number. This applies to creating a vault as well as to activating a prepaid card.
What we process
- For your backup vault — a random identifier, the fingerprint of your authentication key, cryptographic parameters, the encrypted size of your files, and dates. Those dates are recorded to the day, never to the second. No personally identifying data.
- If you write to us — the contact form sends us your name, your e-mail address and your message, for the sole purpose of handling your request. This data is not kept on our servers: it reaches us by e-mail and is never linked to a backup vault.
- If you apply as a reseller — the application form sends us your contact details (last name, first name, position, e-mail address, telephone number), your company information (company name, registration number, website, number of outlets) your shop delivery address and how you heard about us. Your application is stored on our servers while it awaits a decision, and erased twelve months after we receive it if we do not take it further. A reseller record is created only afterwards, and only if we do.
- For payment — billing data and your means of payment are collected and stored by our payment provider, on its own servers. They do not pass through ours. We keep the transaction reference, its amount, its currency and its date, together with the name and postal address you entered with that provider: we use them to ship your cards, and they appear on the parcel label. These items accompany the sales record and are kept for ten years, as it is.
- For security — our public forms are protected against automated submissions. To that end your IP address is turned into a non-reversible fingerprint, kept for thirty seconds at most. The address itself is never recorded, and the fingerprint does not allow it to be recovered. Our host's technical logs, which are separate from our own files, retain connection addresses according to its own policy.
Cookies
The site sets a technical session cookie, required for the service to work, together with temporary storage in your browser during the payment journey, erased as soon as your vault is created.
We set no tracker, no analytics and no advertising cookie. No third-party script can be loaded by our pages: our content security policy forbids it. No consent banner is therefore required.
Legal bases
Performance of the contract for providing the service and taking payment; a legal obligation for the proof of your waiver of the right of withdrawal and for accounting records; our legitimate interest for the security of the service and for tracking our business correspondence; your consent for the newsletter, which you may withdraw at any time.
Retention periods
- Your vault and its contents — 90 days. After that date a daily task erases them automatically: encrypted files, metadata and the vault itself. It only processes a vault once seven days have passed after the deadline, a period during which nothing is accessible any more.
- Proof of waiver of the right of withdrawal — 5 years. It contains only the digest of the payment reference and a date; no vault identifier.
- Log of our business correspondence — 12 months.
- Sales record of a card batch — 10 years: the payment reference, its amount, its currency and its date. It is the link to the invoice, which our payment provider keeps on its side.
- Shipping address of a batch — erased 12 months after delivery, or after the batch was assigned to a reseller if it was never delivered. It serves to send you the parcel, and stops serving once it has arrived.
- Resellers — the record is erased when the business relationship ends, as soon as we become aware of it; an annual review checks for this. A record marked as declined is then erased automatically, 3 years after being so marked.
- Unanswered partner applications — 12 months from receipt. An approved application becomes a reseller record and follows the period above; a rejected one is erased at once.
- Newsletter — 3 years from your unsubscription, so that this withdrawal can be evidenced.
- Encrypted backups — 30 days. Erased data may therefore survive in a backup for up to thirty days before disappearing for good.
Processors and transfers outside the European Union
Stripe Payments Europe, Limited (Ireland) for payment. Stripe transfers data to the United States. That transfer is governed by the standard contractual clauses adopted by the European Commission. You may obtain a copy of them by writing to us at the address above.
Infomaniak Network SA (Switzerland) for hosting and storage. Switzerland is the subject of an adequacy decision of the European Commission: this transfer requires no additional safeguard.
Your rights
You have the rights of access, rectification, erasure, restriction, portability and objection.
These rights are exercised with us, the data controller, at the address above. We reply within one month.
Two limits follow from the design of the service, and we would rather state them:
- We cannot return your documents in the clear. We do not hold the key. A portability request can only result in the encrypted files being handed over, which you alone can open.
- You can delete each of your documents at any time, from your vault. The vault itself and its technical metadata are erased at the deadline; there is currently no function to delete the whole vault immediately. You may ask us to do so.
The billing data held by our payment provider is subject to accounting obligations: an erasure request does not make those records disappear.
You may lodge a complaint with the CNIL, the French data protection authority, or with the supervisory authority of your own country.
Last updated: 30 August 2026.