Privacy Policy
How the AxInfos group collects, uses, and protects your personal data across all its platforms.
Last updated: August 2026
1. Data Controller
The data controller for your personal data is the AxInfos Group, publisher of the AxInfos, AxInfos Afrique, AxInfos Events, and AxInfos Sport platforms.
Data Protection Officer (DPO):
Email: contact@axinfos.com
2. Data Collected
Depending on the services you use, we collect:
Data minimisation principle: we only collect data strictly necessary for each purpose. No sensitive data (opinions, health, sexual orientation) is requested.
3. Purposes and Legal Bases
| Processing | Purpose | Legal Basis |
|---|---|---|
| Newsletter | Editorial information, reader engagement | Consent (double opt-in) |
| Contact form | Responding to enquiries | Legitimate interest |
| User account | Personalisation, premium access | Performance of contract (ToU) |
| Analytics (exempt) | Statistics, site improvement | Legitimate interest |
| Advertising cookies | Personalised advertising | Consent (CMP) |
| Subscription | Premium access, billing | Performance of contract |
| Rights requests | GDPR compliance | Legal obligation |
4. Retention Periods
| Data | Duration | Final action |
|---|---|---|
| Newsletter | Until withdrawal; inactive subscribers deleted after 3 years | Deletion (proof retained 5 years) |
| Contact | 12 months after last exchange | Deletion |
| Account | Duration of account; 2 years of inactivity | Deletion / anonymisation |
| Analytics | 25 months maximum | Automatic purge |
| Cookies | 13 months max (cookie); 25 months (data) | Purge |
| Security logs | 6 to 12 months | Automatic purge |
| Rights requests | 5 years (proof) | Deletion |
5. Recipients and Transfers
Your data is accessible to internal AxInfos group teams authorised on a need-to-know basis.
Sub-processors:
- Hosting: secure infrastructure (EU)
- Email service: newsletter delivery (DPA signed)
- Payment: Stripe (PCI-DSS certified)
- Analytics: CNIL-compliant solution in exempt mode
Transfers outside the EU: Any transfer relies on Standard Contractual Clauses (SCC 2021) supplemented by a transfer impact assessment. No transfer is made without adequate safeguards.
6. Your Rights
Under the GDPR, you have the following rights:
- Access — obtain a copy of your data (Art. 15)
- Rectification — correct inaccurate data (Art. 16)
- Erasure — request deletion (Art. 17)
- Restriction — restrict processing (Art. 18)
- Portability — receive your data in a structured format (Art. 20)
- Objection — object to processing, including direct marketing (Art. 21)
- Withdrawal of consent — at any time, without affecting the lawfulness of prior processing (Art. 7.3)
7. Security
The AxInfos group implements appropriate technical and organisational measures:
- TLS encryption across all platforms
- Passwords hashed using a robust algorithm
- Multi-factor authentication on administration accounts
- Role-based access control (RBAC)
- Logging of all access to personal data
- Encrypted backups tested regularly
- Environment segregation (production / development)
In the event of a data breach posing a risk to your rights, we will notify you without undue delay, in accordance with Articles 33 and 34 of the GDPR.
8. Contact
Personal data / DPO
General enquiries
Exercise your rights
Supervisory authority