1. Purpose and roles
The salon (controller) entrusts Bellisy (processor) with processing end-client data within the services. Bellisy acts only on the salon’s documented instructions.
2. Processor obligations
- Process data only on the controller’s documented instructions.
- Ensure confidentiality (staff commitment).
- Implement the security measures in Annex II.
- Assist the controller with data subject rights and impact assessments.
- Notify any breach without undue delay.
- Delete or return data at the end of the contract.
- Allow audits and provide necessary information.
3. Data breaches
Bellisy notifies the salon of any confirmed breach as soon as possible and at the latest 72 hours after becoming aware of it, providing the information needed for the salon to meet its obligations.
4. Annex I — Description of processing
| Item | Detail |
|---|---|
| Subject | Appointment and client-relationship management |
| Duration | Term of the subscription contract |
| Nature | Collection, storage, consultation, deletion |
| Purpose | Booking, reminders, AI assistance |
| Persons | Salon end clients |
| Data | Identity, contacts, bookings, preferences, (optional) health/photos |
5. Annex II — Security measures
- Encryption in transit (TLS) and at rest (AES-256).
- Role-based access control and MFA.
- Daily encrypted backups (30 days), restoration tests.
- Logging, monitoring and incident management.
- Hosting within the EU (OVH).
6. Annex III — Sub-processors
| Sub-processor | Role | Location |
|---|---|---|
| OVH | Hosting | EU |
| Stripe | Payments | EU/USA (SCC) |
| PayPal | Payments | EU/USA (SCC) |
| Meta (WhatsApp/Instagram) | Messaging | EU/USA (SCC) |
| AI provider | AI responses | EU/USA (SCC) |
| E-mail service | Notifications | EU |
7. End of contract and return of data
At the end of the contract, the salon can export its data. Bellisy deletes or returns it within 30 days, save any legal retention obligation. DPO contact: dpo@bellisy.fr.