GDPR Compliance
RMS France (“RMS France”, “we”, “our”, “us”) is fully committed to protecting personal data and respecting the privacy rights of individuals in accordance with the General Data Protection Regulation (GDPR) and applicable French and European Union laws.
This page explains how RMS France complies with GDPR and safeguards personal data processed through its services.
1. Our Commitment to GDPR
RMS France processes personal data lawfully, fairly, and transparently.
We apply strict technical and organizational measures to ensure data protection, confidentiality, and security at all times.
We apply strict technical and organizational measures to ensure data protection, confidentiality, and security at all times.
Our GDPR compliance principles include:
· Lawfulness, fairness, and transparency
· Purpose limitation
· Data minimization
· Accuracy
· Storage limitation
· Integrity and confidentiality
· Accountability
2. Data Controller
Company Name: RMS France
Address: Caen 14000, France
Website: www.rmsfr.com
Email: info@rmsfr.com
Phone: +33 7 46 33 22 00
Address: Caen 14000, France
Website: www.rmsfr.com
Email: info@rmsfr.com
Phone: +33 7 46 33 22 00
RMS France acts as the Data Controller for personal data processed through its platform.
3. Types of Personal Data Processed
Depending on service usage, RMS France may process:
· Identification data (name, email, phone number)
· Business and account information
· Billing and payment-related data
· Technical data (IP address, device, browser, logs)
· Operational restaurant data (orders, reservations, staff roles)
· Communication and support records
We only collect data that is necessary for providing our services.
4. Legal Bases for Processing
Personal data is processed based on one or more of the following GDPR legal bases:
· Performance of a contract
· Compliance with legal obligations
· Legitimate interests (service improvement, security, fraud prevention)
· Consent, where required (marketing communications, cookies)
5. Data Subject Rights
Under GDPR, you have the right to:
· Access your personal data
· Rectify inaccurate or incomplete data
· Request erasure (“right to be forgotten”)
· Restrict processing
· Object to processing
· Data portability
· Withdraw consent at any time
· Lodge a complaint with a supervisory authority (CNIL – France)
6. Data Security Measures
RMS France implements strong security measures, including:
· Secure hosting environments
· Encrypted data transmission
· Role-based access control
· Regular backups and monitoring
· Limited staff access to personal data
Despite all safeguards, no system can guarantee absolute security.
7. Data Retention
Personal data is retained only for as long as necessary:
· To deliver services
· To meet legal and regulatory obligations
· To resolve disputes and enforce agreements
Data is securely deleted or anonymized when no longer required.
8. Data Processors and Third Parties
RMS France may use trusted third-party processors such as:
· Hosting providers
· Payment gateways
· SMS and communication providers
All processors are bound by GDPR-compliant agreements and process data only under our instructions.
9. International Data Transfers
If personal data is transferred outside the European Economic Area (EEA), RMS France ensures:
· Adequate protection mechanisms
· Standard Contractual Clauses (SCCs)
· Compliance with GDPR cross-border transfer rules
10. Cookies and Tracking Technologies
RMS France uses cookies for:
· Essential website functionality
· Performance and analytics
· User experience improvement
Users can manage cookie preferences through browser settings or consent tools where applicable.
11. Data Breach Management
In the event of a personal data breach:
· RMS France will assess the risk promptly
· Notify the relevant supervisory authority where required
· Inform affected users without undue delay if there is a high risk to their rights and freedoms
12. Updates to GDPR Policy
This GDPR Compliance statement may be updated to reflect legal or operational changes.
Updates take effect upon publication on the website.
Updates take effect upon publication on the website.
13. Contact & Data Protection Requests
For GDPR-related inquiries or to exercise your rights, contact:
Last updated: January 2026