Privacy Policy

At LOREAU LIMITED, your coaches Jérémy Loreau and the entire team are committed, as part of our activities and in accordance with the GDPR, to ensuring the protection, confidentiality, and security of your personal data. LOREAU LIMITED owns the website jeremyloreau.com.

1. LOREAU LIMITED, the data controller

  • Collects the personal data of its clients and prospects fairly and transparently.
  • Does not collect personal data without informing the individuals concerned.
  • Collects this data to provide the services requested by its clients, meet customer and prospect management needs, and inform them of how it is used.
  • Ensures the relevance of the personal data collected in order to better understand its clients and provide quality service.
  • Informs website users about the placement of cookies and other trackers on the websites it publishes.
  • Uses the personal data collected as part of its business activities.
  • Ensures the confidentiality of the personal data entrusted to it and, from the design stage of services, websites, and applications, complies with data protection principles.
  • Uses clients' personal data to authenticate them, provide the subscribed service, and offer them solutions tailored to their needs.
  • Only shares personal data with authorized service providers and ensures that they comply with strict confidentiality, usage, and data protection requirements.
  • Does not share personal data with business partners.
  • Implements security measures appropriate to the sensitivity of personal data in order to protect it against malicious intrusion, loss, alteration, or disclosure to unauthorized third parties. Accordingly, LOREAU LIMITED takes the necessary measures to ensure the security of personal data.
  • Grants access authorizations to its information system only to people who are clients and up to date with their subscription.
  • Raises awareness among its staff regarding the protection of the personal data made available to them as part of their duties and ensures that they comply with current rules and the company's code of ethics.
  • Requires its service providers to comply with its security principles.
  • Complies with personal data retention periods.
  • Limits the retention of personal data to the period defined by law or declared in the processing register.
  • Commits to deleting data from its databases at the end of this period.
  • Informs its clients and prospects of their rights regarding personal data.
  • Informs them of their right to access, receive, and rectify their data.
  • Informs them of their right to object to commercial prospecting operations.
  • Informs them of the possibility of exercising:
    • The right to erasure, or right to be forgotten, except where there is an overriding legal obligation to retain the data.
    • The right to restriction of processing.
    • The right to data portability.

2. Data collection through forms

Typeform creates a record of all submitted forms. Your data may be deleted by the website administrator. You can request a report of the stored data linked to your email address. Here is Typeform's privacy policy for more details.

Typeform only stores data briefly for each submission. Uploaded files are or may remain on the server. Some data may be shared with other services, including (a list of services such as Typeform, Stripe, and LOREAU LIMITED's accounting software).

3. Use of SSL/TLS to encrypt a connection to a database instance

To protect your personal data, we take reasonable precautions and follow industry best practices to make sure it is not lost, misused, accessed, disclosed, altered, or improperly destroyed.

If you provide us with your credit card information, it will be encrypted through the use of SSL security protocol and stored with AES-256 encryption. Although no method of transmission over the Internet or electronic storage is 100% secure, we follow all PCI-DSS requirements and implement additional standards generally recognized by the industry.

4. How is data collected?

4.1. Registration on the website as a 'member'.

We ask you for the following information: 

  • Your username (last name, first name).
  • Your email.
  • Your password.

We ask you to check the following boxes:

  • I consent to this website storing my submitted information so that I can be registered as a member. To do so, you must accept the General Terms and Conditions of Sale and the Terms of Use.
  • I have read the legal notice.
  • I have read and accept the General Terms and Conditions of Sale.
  • I have read and accept the website Terms of Use.
  • I comply with the website Terms of Use and will make strictly personal use of the website.
  • I consent to this website storing my information, which I may modify at any time. This consent allows me to register as a client of LOREAU LIMITED and use the website jeremyloreau.com.
  • Optionally, I would like to receive the LOREAU LIMITED newsletter.

4.2. When you browse the website.

  • We automatically receive your computer's Internet Protocol address (IP address), which allows us to obtain more details about the browser and operating system you are using.
  • Email marketing (where applicable): with your permission, we may send you emails about our method, new products, and other updates.

4.3. Hosting.

  • Our website is hosted on Amazon AWS and we use the Webflow service to conceptualize our services and products.
  • Your data is stored in Amazon AWS's data storage system and databases, and in Webflow's general application.
  • Your data is kept on a secure server protected by a firewall.

4.4. Contact forms.

When you contact us using the form provided for this purpose, whatever the nature of your request, you must complete the required fields so that we can ensure we are able to respond to your request.

4.5. Newsletter.

When you subscribe to our newsletter, you may provide your first name and email address. This information will only be used for sending our newsletter.

We currently use the Convertkit service to send our newsletters. Accordingly, by filling out a registration form for one of our guides, you agree that the information you provide will be transferred to Convertkit for processing, in accordance with their Terms of Use and privacy policy.

5. What do we store?

If you create an account, we store your full identity, photographs, age, height, weight, dietary plan, and all data necessary to follow the program.

We generally store your information for as long as we need it for the purpose for which we collect and use it, and we are not legally required to continue keeping it. For example, we store payment information for five years for tax and accounting purposes. This includes your identity and email.

6. Changing your account

At any time, in your personal account, you can modify your information and ask us to delete your account.

7. Who on our team has access to the data?

7.1. Members of our team have access to the information you provide to us.

  • Our team has access to this information to support you in the program and improve service quality.

7.2. What we share with others.

  • We share data with third parties, such as Stripe, who help us manage payments for services or purchases on the website.

8. The payment processor

We accept payments through Stripe. When processing payments, some data will be transmitted to Stripe, including information required to complete the payment, such as the total amount or billing information. Here is Stripe's privacy policy for more details.

If you make your purchase through a direct payment gateway, then Stripe (our payment provider) will store your credit card information. This information is encrypted in accordance with the Payment Card Industry Data Security Standard (PCI-DSS). Information relating to your purchase transaction is retained only as long as necessary to finalize your order. Once your order is finalized, information relating to the purchase transaction is deleted.

All direct payment gateways comply with PCI-DSS, managed by the PCI Security Standards Council, which is the result of the joint effort of companies such as Visa, MasterCard, American Express, and Discover. PCI-DSS requirements help ensure the secure processing of credit card data by our website.

9. Age of consent

By using this website, you declare that you are at least the age of majority in your state or province of residence, and that you have given us your consent to allow any minor dependent on you to use this website.

10. Changes made to this privacy policy

We reserve the right to modify this privacy policy at any time. Please check this page frequently. Changes and clarifications will take effect immediately upon their publication on the website.

If we make changes to the content of this policy, we will notify you here that it has been updated, so that you know what information we collect, how we use it, and under what circumstances we disclose it, if applicable.

If our website is acquired by or merged with another company, your information may be transferred to the new owners so that we can continue to provide services to you. The invalidity of one contractual clause does not result in the invalidity of this privacy policy.

11. How to exercise your rights

You may exercise your rights at any time by submitting a request to object to or delete your information. To do so, you can contact us by email at admin@jeremyloreau.com. You will need to provide your last name, first name, and email address. In the event of reasonable doubt about your identity, we may ask you for a copy of your ID.

If you are not satisfied with our exchanges, you may refer the matter to the Commission Nationale de l’Informatique et des Libertés (CNIL) at the following address: CNIL – 3 place de Fontenoy – TSA 80715 – 75334 Paris cedex. You may also submit a request electronically at this address.