Last updated: 08 Sep 2025
ST37 Sport et Technologie (“we”, “our”, “us”) operates this online store and is committed to protecting your privacy. We comply with the General Data Protection Regulation (GDPR), the French Data Protection Act (Loi Informatique et Libertés), and other applicable international data protection laws.
1. Data Controller
ST37 Sport et Technologie (SAS)
Registered office: 5 Impasse Sully, 64290 Gan, France
RCS Pau: 841 505 670
VAT number: FR66841505670
Email: contact@st37.fr
Website: www.st37.fr
2. Personal Data We Collect
We may process:
- Identification and contact details (name, email, address, phone).
- Account data (login, purchase history, preferences).
- Payment data (processed securely by third-party providers).
- Technical and usage data (IP address, browser, cookies, device info).
- Marketing data (newsletter subscription, campaigns).
3. Purposes and Legal Basis
We process your personal data for:
- Managing your orders, account, and payments (contract).
- Customer support and communication (contract / legitimate interest).
- Compliance with legal and tax obligations (legal obligation).
- Sending newsletters and promotional offers (consent).
- Analytics, UX improvement, and advertising (legitimate interest / consent).
4. Third-Party Tools and Services
We use the following services, which may process your data as controllers or processors:
- Google Analytics & Google Ads (audience measurement, advertising) → Google Privacy Policy
- Google reCAPTCHA (fraud and bot protection) → Google Privacy Policy
- Facebook / Meta Pixel (advertising and remarketing) → Facebook Privacy Policy
- LinkedIn Ads & Insight Tag (advertising and analytics) → LinkedIn Privacy Policy
- Brevo (Sendinblue) (email marketing, CRM, automation) → Brevo Privacy Policy
- HubSpot (CRM, forms, campaigns) → HubSpot Privacy Policy
- Hotjar (UX analytics, heatmaps, session recording) → Hotjar Privacy Policy
- Piwik / Matomo (audience measurement and analytics, EU-hosted) → Matomo Privacy Policy
We ensure any international data transfers comply with GDPR safeguards (e.g., Standard Contractual Clauses).
5. Cookies and Tracking
Our website uses cookies for:
- Essential features (shopping cart, login).
- Analytics (Google Analytics, Matomo/Piwik, Hotjar).
- Advertising (Google Ads, Facebook Pixel, LinkedIn Ads).
- Security (Google reCAPTCHA).
When you first visit our site, a banner allows you to accept or reject non-essential cookies. You can manage preferences at any time through our Cookie Management Tool.
6. Data Retention
- Order/account data: retained while your account is active + 10 years for invoices.
- Marketing data: retained until you withdraw consent.
- Cookie/analytics data: retained per our Cookie Policy (maximum 13 months).
7. Your Rights
Under GDPR, you have the right to:
- Access your personal data.
- Rectify inaccurate or incomplete data.
- Request deletion (“right to be forgotten”).
- Restrict processing.
- Port your data.
- Object to processing (including marketing).
- Withdraw consent at any time.
- File a complaint with the CNIL (www.cnil.fr).
8. How to Exercise Your Rights
You can contact us to exercise your rights:
Email: contact@st37.fr
Postal address: ST37 Sport et Technologie, 5 Impasse Sully, 64290 Gan, France
We may require proof of identity. We will respond within one month, as required by law.
9. Security
We use appropriate technical and organizational measures to protect your data, including:
- SSL/TLS encrypted connections.
- Restricted access to personal data.
- Regular IT audits and updates.
10. Updates
We may update this Privacy Policy from time to time. The “Last updated” date above indicates the latest version.