Nodal

Privacy policy

Last updated: September 4, 2026

This policy describes how Nodal handles personal data across the marketing site and the cloud platform, in line with the General Data Protection Regulation (GDPR).

Data controller

Nodal, sole proprietorship registered under SIREN 108 228 354, 4 Rue des Quatre Places, 13014 Marseille, France — contact@nodal-edge.com.

Data collected and purposes

Contact form: name, email address, message. Purpose: respond to your request. Legal basis: legitimate interest in handling incoming inquiries. Retention: 3 years from the last contact, unless a contractual relationship follows.

Platform account: email address, used for passwordless magic-link sign-in. Purpose: authentication and platform access. Legal basis: performance of the service agreement. Retention: for the lifetime of the account, then limited archiving as required by law.

Industrial telemetry data: measurements from customer-site PLCs and sensors. This data generally does not concern identifiable individuals; if an operator identifier were ever attached to a measurement, data-minimization applies — only the field strictly needed is kept.

Cookies and trackers

This site sets only cookies that are strictly necessary for it to work: a session cookie (platform sign-in), a language-preference cookie, and — only on the contact page, when the form is submitted — an anti-spam cookie (Cloudflare Turnstile).

No advertising or analytics cookie is set at this time. Your light/dark theme choice is remembered locally in your browser, not via a cookie.

Because these cookies are strictly necessary, they do not require prior consent — an information banner is still shown on this site for transparency.

Recipients and subprocessors

Vercel Inc. — application hosting.

Neon — Postgres database hosting.

Resend — transactional email delivery (Europe region, eu-west-1).

Sentry — application error monitoring (Europe region).

Cloudflare — anti-spam protection on the contact form (Turnstile).

Each subprocessor operates under a data processing agreement (DPA). This list is reviewed as the product evolves.

Transfers outside the European Union

Some subprocessors (notably Vercel and Cloudflare) are US companies that may process data outside the European Union. Where applicable, such transfers rely on the European Commission's standard contractual clauses or an equivalent mechanism under their DPA.

Your rights

Under the GDPR, you have the right to access, rectify, erase, restrict, object to, and port your data. You can exercise these rights by writing to contact@nodal-edge.com.

You also have the right to lodge a complaint with the CNIL (www.cnil.fr).

Security

Nodal applies security-by-design principles — encrypted transport, least privilege, read-only access to industrial buses — described in the project's compliance documentation.

Command palette