← Back to home

Privacy policy

Last updated: 18 August 2026. Drawn up under the Swiss Federal Act on Data Protection (FADP, as at 1 September 2023) and its ordinance (DPO).

CadranZero is a professional platform: a supplier declares its environmental data once, then chooses which watch houses it shares that data with, and at what level of detail. This page explains what personal data we process, in what capacity, and what you may require of us.

1. Two distinct roles, not to be confused

This is the most important point on this page, and the one that determines who you should address.

Controller for account data and technical data. We alone decide why and how it is processed: creating accounts, platform security, invoicing, support.

Processor for business data deposited by a client company: life cycle assessments, carbon footprints, questionnaire responses, purchase volumes and values, and the names of staff appearing in them. We process it solely on the instructions of the company that entered it, which remains responsible for it. If you are an employee of a client company and wish to assert a right over this data, address your employer; we assist them, we do not act in their place.

2. Contact details

Controller: the publisher of CadranZero, in Switzerland. Any question about the data, any request to exercise your rights and any incident report: hello@cadranzero.ch. The publisher's full identity and postal address are provided on request to this address. As the publisher is established in Switzerland and offers no service in the European Union, it has not appointed a representative within the meaning of article 27 GDPR.

3. What data, why, on what basis

Account data : surname and first name, business e-mail address, role, company, location, telephone if you provide it, password in hashed form. Purpose: opening and maintaining your access, identifying you, contacting you about the service. Legal basis: performance of the contract between the publisher and you, or your employer.

Business data : life cycle assessments, carbon footprints, questionnaire responses, purchase volumes and values entered by the watch houses. Purpose: delivering the service. Here we act only as a processor, on the instructions of the client company.

Technical data : IP address, date and time of sign-ins, failed sign-in attempts, and a log of actions performed on life cycle assessments (who created, modified, published, shared or revoked what, and when). Purpose: platform security, evidence in the event of a dispute over a share, incident diagnosis. Legal basis: legitimate interest in protecting the service and the data deposited in it.

Contact requests : the information you enter yourself in the access request form. Purpose: replying to you. Legal basis: your approach and our legitimate interest in following it up.

No profiling, no automated individual decisions, no advertising, no resale or rental of data. No sensitive data within the meaning of article 5 FADP is collected. Data deposited is never used to train a model, to produce commercialised statistics, or to compare one client company with another without its written consent.

4. Who sees your data

Each organisation sees only its own data. A watch house sees a life cycle assessment only if the supplier has explicitly shared it, and at the level of detail the supplier chose: total only, breakdown by stage, or full line detail. A share is revocable at any time and ends immediately. A supplier's internal action log, in particular the names of its staff, is never visible to the houses.

This separation is not merely a display rule: it is enforced at the source of every query and verified by a set of automated tests run on every code change.

Single sub-processor: Infomaniak Network SA, Geneva, for hosting, on infrastructure located in Switzerland. No other third party has access to the data. No data is transferred outside Switzerland. The publisher may access the data solely for technical operation and support, and those accesses are logged.

Data is disclosed to an authority only under a legal order the publisher cannot avoid, and the company concerned is informed to the extent the law permits.

5. For how long

Account and business data: for as long as the account is active, then twelve months after it is closed so that it can be reactivated, unless earlier erasure is requested. Technical and sign-in logs: twelve months at most. Log of actions on life cycle assessments: kept as long as the assessment itself, since it establishes its history. Contact requests: twenty-four months. Daily backups: a rolling thirty days, then automatic deletion.

An erasure request covers the active databases and takes effect immediately; backups already made are not altered, they disappear of their own accord once the thirty days have elapsed.

6. Cookies

Two cookies at most, none for tracking. The first, cz_session, is strictly necessary to sign in: it is signed, marked Secure, HttpOnly and SameSite, and your session closes automatically after twelve hours, or after one hour of inactivity. The second, cz_langue, remembers the language you chose. No advertising cookies, no audience measurement cookies, no third-party scripts: the site's security policy technically forbids loading any external resource.

7. Security

Traffic encrypted with TLS 1.2 and 1.3, passwords and access codes hashed with argon2, request forgery protection on every form, rate limiting on sign-in attempts, strict security headers, per-organisation data separation verified by automated tests, daily backups whose restoration has been tested, security updates applied automatically, detection and blocking of repeated access attempts. Hosting in a Swiss data centre certified to ISO/IEC 27001.

In the event of a data security breach entailing a high risk to the persons concerned, the publisher notifies the Federal Commissioner as soon as possible, in accordance with article 24 FADP, together with the client companies affected, so that they can meet their own obligations.

8. Your rights

You may request access to your data and information about how it is processed, its rectification if it is inaccurate, its erasure, its release or transfer in a common, machine-readable format, or object to processing based on our legitimate interest. Write to hello@cadranzero.ch from the address linked to your account: we reply within thirty days, free of charge, and may ask you for proof of identity if any doubt remains. If your request concerns business data deposited by your employer, we will refer you to them.

If our reply does not satisfy you, you may refer the matter to the Federal Data Protection and Information Commissioner (FDPIC), Feldeggweg 1, 3003 Bern.

9. Changes

This policy evolves with the service. The date of the latest update appears at the top of the page. A substantial change, in particular the addition of a processor or of a purpose, is announced to signed-in users and to client companies before it takes effect.

See also: Legal notice