Privacy Policy
1. Introduction
Welcome to Veridian. Veridian is a business-to-business (B2B) software platform provided by Veridian SAS ("we," "our," or "us"). Access to Veridian is granted exclusively to employees and authorized users of organizations that have an active Master Services Agreement (MSA) or contract with us.
This Privacy Policy explains how we collect, use, and protect your personal information when you access and use the Veridian platform, regardless of the authentication method you choose.
2. Information We Collect
To provide secure access to Veridian, we collect basic identifying information when you create an account or log in. Depending on how you choose to authenticate, we collect the following:
-
When using Email and Password: We collect your email address. Passwords are created by you and are securely encrypted; we do not have access to your plain-text password.
-
When using Third-Party Identity Providers (Google or Microsoft Sign-In): We request specific information from your Google or Microsoft account to verify your identity and create your user profile. The data we request from these providers is limited to:
-
Email Address: To identify your account and communicate with you regarding your service.
-
Basic Profile Information: Such as your name and profile picture, to display within your Veridian account.
-
OpenID: To securely associate your Veridian account with your Google or Microsoft identity.
-
3. How We Process and Store Your Data
We use a third-party authentication and identity management service, Clerk, to securely process all logins. Clerk acts as a data processor and handles your authentication data (including encrypted passwords and OAuth tokens) in compliance with strict industry security standards. Your personal data is not sold, rented, or shared with external third parties for marketing or advertising purposes.
4. How We Use Your Information
The personal data collected during sign-up and authentication is used exclusively to:
-
Provide you with secure access to the Veridian platform.
-
Ensure your account is tied to your employer's authorized organization.
-
Deliver the core functionalities of the Veridian software as stipulated in our contract with your organization.
-
Send you technical notices, security alerts, and support messages.
5. Data Retention
Your personal data is retained for as long as your organization maintains an active contract with us, or until your employer requests the deletion of your account. Upon termination of the contract or at the request of the authorized organization administrator, your personal data will be securely deleted or anonymized, in accordance with our enterprise Data Processing Agreements (DPA).
6. Your Rights (GDPR)
Under the General Data Protection Regulation (GDPR), you have the right to access, rectify, or request the erasure of your personal data. Because Veridian is a B2B platform, we recommend routing data access or deletion requests through your organization's IT or administrative team, who will then coordinate with us directly. Furthermore, you have the right to lodge a complaint with the French data protection authority, the CNIL (Commission Nationale de l'Informatique et des Libertés), if you believe your data rights have been violated.
7. Contact Us
If you have any questions about this Privacy Policy or how we handle your data, please contact us at:
-
Address: Veridian SAS, 99 AVENUE ACHILLE PERETTI, 92200 NEUILLY-SUR-SEINE, France