100
Privacy Policy
Privacy Policy
This Privacy Policy describes how MAGE, a simplified joint-stock company (SAS) with a share capital of 6,000 euros, whose registered office is located at 126 Rue Perronet, 92200 Neuilly-sur-Seine, registered with the Nanterre Trade and Companies Register under number 930066402 (hereinafter referred to as “MAGE” or “we”) collects, uses and protects the personal data of users (service providers and clients) of its application and websites (agencemage.fr and agencemage.com).
By using our platform, you accept the terms of this policy.
1. Collection of Personal Data
We collect information about you when you use our platform, including when you register, book services, or use messaging services. The data collected includes:
1.1 Identification Data
For all users:
-
Last name
-
First name
-
Email address
-
Phone number
For service providers:
-
Profile photo
-
Biography / professional description
-
Specialties
-
Activities offered
-
Languages spoken
-
Service area
-
SIRET proof (if applicable)
1.2 Information Related to the Service
Addresses
Residential address (for clients) or service address (for providers), in order to offer local recommendations.
GPS Coordinates
We automatically convert the addresses you provide into GPS coordinates (latitude and longitude) using the Nominatim service of OpenStreetMap.
These coordinates are stored in our databases and used only to facilitate geographic recommendations, calculate distances between providers and clients, and display them on our mapping tools.
These coordinates are not shared with third parties for advertising purposes.
1.3 Payment and Financial Data
Client payments
Client payments are managed via our secure partner, Stripe. Bank card data is never stored on our servers.
Provider IBAN
Providers must provide their IBAN to receive funds collected. The IBAN is stored only for the proper processing of transfers.
Stripe Connect Accounts
For providers using online payment, we create a Stripe Express account and store the associated information (Stripe account identifier, account type, payment activation status, payout status, balances). These data are necessary to manage fund transfers to providers and are retained in accordance with Stripe's requirements and legal obligations.
Financial Register (Ledger)
We maintain a detailed register of all financial transactions, including:
-
amounts (credits, debits)
-
platform commissions
-
Stripe processing fees
-
Stripe transaction identifiers (charges, transfers, balance transactions)
-
net amounts for providers
-
transaction statuses
This register is necessary for accounting, managing payments to providers, and complying with tax and accounting obligations.
Provider Wallet
For providers, we store information about their wallets, including available and pending balances, transaction history, and payout history. These data are necessary for providers' financial management.
1.4 Technical Data
Connection information
-
IP address
-
Browser type
-
Operating system
-
Information relating to your device
IP address during signature
During the electronic signature of a contract, we capture and store your IP address at the time of signature to ensure the evidentiary value of the electronic signature, in accordance with Articles 1366 and 1367 of the French Civil Code.
Security data
To prevent abuse and ensure the application's security, we record attempts to perform user actions (reservation creation, review submissions, quote requests, etc.) with the user identifier, action type, and timestamp.
These data are stored temporarily and automatically deleted after expiration of the limitation window (generally 1 hour).
1.5 Data Collected via the Quote Generator
When you provide information (surface area, frequency, characteristics of the premises, number of floors, time slots, contract duration, etc.) in order to establish a quote, these data are collected to offer you a price estimate and, if validated, to establish the contract.
They are kept for the time necessary to study your request or, in case of a contract, for the time necessary for its execution and compliance with legal obligations.
1.6 Electronic Signatures and Contracts
Electronic signatures
When signing a contract, we collect and store an electronic signature, including your full name, your IP address at the time of signature, your user identifier, and a precise timestamp.
This signature has evidentiary value in accordance with Articles 1366 and 1367 of the French Civil Code, provided that it allows identification of the signer and guarantees the integrity of the document.
The signed contract PDFs are stored in our file management system (Media Manager).
Contract data
In the event of validation and signature of a contract, all quote data are stored with the acceptance status, the electronic signature and the PDF of the contract for contract execution and compliance with legal obligations.
1.7 Client Reviews
After a service, we collect your reviews, including:
-
a rating out of 5 stars
-
an optional review text
-
an indication of recommendation of the provider
These data are used to calculate provider ratings, improve service quality, and maintain transparency for future clients.
1.8 Availability Data (Providers)
For providers, we store their availability slots, including available days, hours, and the next available date. These data are used to facilitate client connections and manage bookings.
1.9 Service Statistics
We calculate and store the number of completed services per provider (jobCount) to improve visibility and transparency of the service.
1.10 Notification History
We keep a history of notifications sent, including the type of notification, the content, the read status, the creation date, and the targeted audiences. This history is kept to improve the service and comply with legal obligations.
We process these data on the following legal bases (Article 6 of the GDPR):
-
Performance of a contract (account management, payment processing, service bookings, cleaning services)
-
Compliance with legal obligations (URSSAF declarations, tax management, contract retention, accounting obligations)
-
Legitimate interest (service improvement, application security, abuse prevention)
-
Consent (for certain marketing or advertising notifications)
2. Use of Collected Data
Personal data collected through our application are used for the following purposes:
User account management: allowing access to and management of service provider and client accounts (legal basis: performance of a contract).
Personalization of recommendations: suggesting service providers or clients close to your residence or service location using GPS coordinates and addresses (legal basis: performance of a contract or legitimate interest).
Payment management: processing financial transactions via secure payment service providers, managing transfers to service providers, and maintaining the financial ledger (legal basis: performance of a contract + compliance with legal obligations).
Internal messaging: enabling communication between service providers and clients for scheduling or service follow-up (legal basis: performance of a contract).
Improvement of our services: analyzing application usage to improve features and user experience, calculating service statistics, and managing the review system (legal basis: legitimate interest).
Security: preventing abuse, detecting fraudulent behavior via the rate limiting system, and ensuring application security (legal basis: legitimate interest).
Contract management: establishing, electronically signing, and storing service contracts (legal basis: performance of a contract + compliance with legal obligations).
3. Location and Geographic Recommendations
There is no real-time geolocation on the MAGE platforms.
However, we use the residential addresses (clients) or service addresses (service providers / professional clients) that you have provided to recommend service providers or clients located nearby.
These addresses are converted into GPS coordinates (latitude, longitude) via the Nominatim service of OpenStreetMap to facilitate distance calculations and geographic recommendations.
These data (addresses and GPS coordinates) are used solely for recommendation personalization purposes and are not shared with third parties for advertising purposes.
4. Messaging and Exchanges via the Application
When you communicate through the messaging tool integrated into our platforms to organize appointments or ask questions related to services, these exchanges are recorded and may be used to facilitate service management.
These messages are stored as long as necessary to ensure the proper execution of services and compliance with legal obligations.
5. Data Retention
Your personal data are stored only for the time necessary to fulfill the purposes for which they were collected, namely:
Data related to the use of the application: stored for the duration of your account usage.
Data related to payments and financial transactions: stored for the period required by applicable legislation (e.g. 5 years for financial transactions and accounting data).
Financial register: stored for 5 years in accordance with accounting and tax obligations.
Stripe Connect data: stored for the duration of the service provider account and according to legal requirements (5 years for financial data).
Electronic signatures and contracts: stored for the entire duration of contract execution and according to legal retention obligations for contracts (generally 10 years after the end of the contract).
GPS coordinates: stored for the duration of account usage unless deletion is requested.
Messages: stored for 12 months from the last interaction.
Client reviews: stored indefinitely unless deletion is requested, in order to maintain transparency and service quality.
Rate limiting data: stored temporarily and automatically deleted after expiration of the limitation window (generally 1 hour).
IP addresses and technical logs: stored for the time strictly necessary for application security and proper functioning (6 months), unless specific legal obligations apply.
IP addresses captured during signature: stored with signed contracts according to legal contract retention obligations (generally 10 years).
6. Data Security
We implement appropriate technical and organizational measures to protect your data against unauthorized access, disclosure, modification or destruction.
These measures include:
Encryption: sensitive data (payments, electronic signatures) are encrypted.
Restricted access: financial data (Ledger) and rate limiting data are accessible only to administrators.
Stripe security: Stripe Connect data are managed according to PCI-DSS standards via Stripe.
Security protocols: implementation of security protocols for server access and data protection.
7. Data Sharing with Third Parties
Your data are not sold or rented to third parties.
However, we may share your data with:
Service providers (e.g. Stripe for payments, Nominatim/OpenStreetMap for geocoding) acting as processors and required to respect data confidentiality.
Legal or tax authorities (URSSAF, CESU) when necessary to comply with legal obligations or facilitate administrative procedures.
In all cases, we ensure that these third parties comply with data protection regulations.
8. Your Rights Regarding Personal Data
In accordance with the General Data Protection Regulation (GDPR), you have the following rights:
Right of access: you may request a copy of the personal data we hold about you.
Right to rectification: you may request correction of inaccurate or incomplete data.
Right to erasure: you may request deletion of your personal data, unless these data are necessary for contract execution or compliance with legal obligations (e.g. financial data, signed contracts).
Right to restriction of processing: you may request restriction of data processing in certain situations.
Right to data portability: you may request to receive your data in a structured, commonly used and machine-readable format.
Right to object: you may object to certain processing of your data, particularly for reasons relating to your specific situation.
To exercise your rights, you may contact us at:
We commit to processing your request within 30 days.
You also have the possibility to lodge a complaint with the competent supervisory authority, in France the CNIL (Commission Nationale de l'Informatique et des Libertés).
9. Use of Cookies
We use cookies to improve the user experience on our application.
Some cookies are necessary for the proper functioning of the application, while others allow analysis of feature usage.
You may manage your cookie preferences through your device or browser settings.
In the case of non-essential cookies (analytics, marketing), your consent will be requested via a banner or settings during your first visit.
10. Notifications
10.1 Service Notifications
We send notifications to ensure the proper functioning of the application's services. These notifications include:
reminders regarding service bookings
confirmations or cancellations of services
notifications regarding messaging between service providers and clients
requests for reviews after a service
These notifications are essential for managing your account and the services you book or provide.
10.2 Marketing and Promotional Notifications
With your consent, we may also send notifications for marketing or promotional purposes, such as special offers or new services available on the application.
You may manage your preferences for these notifications at any time in the application settings.
10.3 Notification Management
You can manage your notification preferences directly in your account settings or on your mobile device.
You may choose to disable promotional notifications while keeping service notifications.
10.4 Notification History
We store a history of notifications sent, including the type, content, read status, and date. This history is used to improve the service and comply with legal obligations.
11. Integration with URSSAF and CESU APIs
To manage social declarations and services, we use APIs from URSSAF and CESU to facilitate administrative and tax procedures for service providers and clients.
These integrations notably allow:
facilitating the declaration of services and income of service providers to URSSAF
managing declarations and payments of social contributions for users employing providers through CESU
The data required for these declarations, including identification information of service providers and clients, transaction amounts and tax data, are transmitted securely via these APIs.
We ensure that all data transmitted in this context comply with GDPR requirements and are used only to fulfill the legal obligations of users.
12. Modification of the Privacy Policy
We reserve the right to modify this Privacy Policy at any time.
Users will be informed of any significant modifications through a notification via the application.
The updated version will be published with the date of the latest modification.
13. Director of Publication
The director of publication of the MAGE application is Pierre WAGE, in his capacity as president of MAGE SAS.
For any legal question concerning the use of the application or the protection of your personal data, you may contact:
Registered office address
126 Rue Perronet
Neuilly-sur-Seine 92200
Email: contact@agencemage.com
14. Contact
For any questions regarding this Privacy Policy, you may contact us by email at:
contact@agencemage.comDate of last update: 25/11/2025