Privacy policy
Below is our statement on the processing of personal data by our company bright company SA, in accordance with Swiss legal requirements and with the EU General Data Protection Regulation (Europa Lex GDPR).
Our statement on the processing of data (which may be called a privacy policy) was last updated on 1 September 2023.
Glossary
Browser: a computer program used to display websites (Chrome, Firefox, Safari and others).
Cookies: text files that the web server places on the user’s computer by way of the browser in use. The information stored in cookies may hold both an identifier (cookie ID) for recognition purposes and content data, such as sign-in status or information about the websites visited. The browser returns the cookie information to the web server with every new request, on repeated later visits to those sites. Most browsers accept cookies automatically. Cookies can be managed through the browser’s own functions (usually under “Options” or “Settings”). Cookie storage can be disabled this way, or made dependent on the user’s approval in a given case, or restricted. Cookies can also be deleted at any time.
GDPR: Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation), available at https://eur-lex.europa.eu/legal-content/FR/TXT/HTML/?uri=CELEX:32016R0679&from=FR
Personal data : any information relating to an identified or identifiable natural person. An identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier, or one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
Profiling : any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to a natural person, in particular to analyse or predict aspects concerning that natural person’s performance at work, economic situation, health, personal preferences, interests, reliability, behaviour, location or movements.
Services: the offerings of ours to which this data privacy statement applies.
Tracking: the collection of data, and its evaluation, concerning visitors’ behaviour in response to our services.
Tracking technologies: actions can be tracked either through activity records (log files) stored on our web servers, or by collecting data from end devices through pixels, cookies or similar tracking technologies.
Processing: any operation or set of operations performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
Pixel: pixels are also called tracking pixels, web beacons or web bugs. They are small, invisible graphics in HTML emails or on websites. When a document is opened, that small image is downloaded from a server on the internet and the download is recorded there. This lets the server operator see whether and when an email was opened, or a website visited. The function is usually carried out by calling a small program (JavaScript). Certain kinds of information can be detected on your computer system this way and shared, such as the content of cookies, the time and date of the visit, and a description of the page the tracking pixel sits on.
SSL -TLS: TLS is a protocol that secures the confidentiality of exchanges between communication applications and users on the internet. When a server and a client communicate, TLS makes sure that no third party can intercept or tamper with a message. TLS succeeds the SSL
Collection and use of personal data
Personal data is information that can be used to identify or contact a specific person.
In the course of using our services, we may ask you for personal information such as your surname, first name, postal address and email address, in order to improve our services.
You are under no obligation to give us your personal data. If you choose not to, however, we will not always be able to provide our services, or even to answer your questions.
Use of your personal data & disclosure to third parties
The personal data collected is used only by our platform, our staff and our experts. All of the data is secured. You may contact us at any time to learn what data we hold about you, and to ask us to erase it from our systems.
The website, powered by the open-source solution WordPress, does not collect personal data directly. All of the data is passed to two third-party management and marketing solutions, Pipedrive and Mailchimp. The technology solutions contracted by our company bright company SA comply with European data processing regulation. For any question concerning the use of your personal data by Pipedrive Inc., please consult their data management statement at the following URL: pipedrive.com/article/pipedrive-and-gdpr. For questions concerning The Rocket Science Group LLC d/b/a Mailchimp, please consult their data management statement at the following URL: https://mailchimp.com/legal/privacy/
bright company SA may at times make certain personal data available to third parties in order to provide or improve our services, in particular to carry out qualitative studies or annual reports on the platform’s content and data. In such cases we require those third parties to process that data in accordance with the applicable laws and with European data processing regulation.
bright company SA does not sell personal information, and that information is never passed to third parties for marketing purposes. Every relationship with our clients is covered by a confidentiality agreement. It cannot be passed to third parties.
Protection of personal data
bright company SA takes the security of your personal data very seriously. Online services, such as the fantastics solution or access to the support centre, protect your personal data in transit through SSL TLS encryption (https). Where your personal data is stored, we use computer systems with restricted access, installed in premises using physical security measures.
Cookies and other technologies
The bright platform and the sites that make it up, the online services, the interactive applications and the emails may use “cookies” and other audience tracking technologies, such as “Pixel tags”, HTML tags and variables in URLs. These technologies let us understand user behaviour better, and tell us which parts of our websites are most visited. That anonymous data lets us improve the quality of our interfaces and of the content we publish. If a theme draws more of an audience than the average, for instance, we can identify it and invest in developing it — either as a new advisory practice, or by continuing to write content on that theme.
We treat the data collected by cookies and other technologies as non-personal data.
In the same way, where non-personal data is associated with personal data, we treat the information so associated as personal data.
bright company SA also uses cookies and other technologies to remember your personal data when you use a website, online services and applications. Here our aim is to make your visit more convenient, and to personalise it. Knowing your first name, for instance, lets us welcome you by name the next time you sign in to our portal.
For marketing or transactional emails we use “ destination URLs ” tied to the content of our platform. When clients or experts click one of those URLs, they pass through another web server before arriving at the destination page on our website.
We track that click data to gauge the interest shown in certain subjects and to measure the effectiveness of our client communications. If you would rather not be tracked this way, you should not click the text or graphic links in the emails. “ Pixel tags ” let us send emails in a format clients can read, and tell us whether the messages were opened. We may use that information to reduce or stop the messages sent to clients.
Audience analysis
The bright platform may use anonymised internet audience analysis technologies, in order to improve our site continuously. The tool “Hotjar” is used for non-personal analysis of how the platforms are used, and for statistical evaluation.
We sometimes run A/B tests and multivariate tests using the tool “Optimizely”, which allows several versions of the website or of the smartphone applications to be presented.
In doing so, information is recorded about the operating system, the browser, the geographic origin (country only), the pages viewed during the visit and the interactions (mouse movements, clicks and entries on the website, for instance).
How to refuse or configure the use of cookies
Most internet browsers accept cookies automatically. You can, however, set your browser to private browsing so that it accepts no cookies, or asks your permission before accepting a cookie from a website you are viewing. You can also delete cookies from your computer or mobile device using the corresponding function of your browser. To learn how, please consult your browser’s help or manual under “cookie”. To decide which cookies you wish to accept or refuse on our platform, you may change the use of cookies at any time by clicking this link and following the instructions : Manage cookie settings.
Amendment and updating
bright company SA reserves the right to revise this document at any time. The version in force is the one published on our website. Please re-read our statement on the processing of data regularly, so as to be informed of what happens when you use our services and view the content of our bright platform.
Liability & jurisdiction
Subject to mandatory legal provisions, in particular article 100 of the Swiss Code of Obligations, the parties are not liable to each other for any indirect damage, such as loss of profit, loss of revenue or non-material harm, arising from non-performance or imperfect performance of the contract.
Relations between the parties are governed by Swiss law. Any dispute arising between them concerning the interpretation or performance of this document shall be settled by the ordinary courts of the Canton of Vaud, City of Lausanne, and where applicable by the Federal Supreme Court.
Contacts
bright company SA is a Swiss company with its registered office in the canton of Vaud – Rue du Grand-Pré 2A, 1007 Lausanne – hellobright.swiss
bright
Business Hacking

