Entity Identification
Name: BoldCyberNet
Address: 27 Rue Miollis, 75015 Paris, France
Email: [email protected]
Phone: +33 6 45 96 80 91
Activity: Proactive threat intelligence, attack surface monitoring, zero-trust perimeter defense
1. Privacy Policy
1.1 Controller & Scope
BoldCyberNet, registered at 27 Rue Miollis, 75015 Paris, France, is the data controller for personal data processed through our website, consultation forms, and security service engagements. This Privacy Policy describes what we collect, why we process it, how long we retain it, and the rights available to you under Regulation (EU) 2016/679 (General Data Protection Regulation).
1.2 Categories of Personal Data
We may process the following categories of personal data:
- Identity and contact details (name, business email, phone number, company affiliation)
- Project and technical details you voluntarily submit when requesting an assessment or engagement
- Payment-related metadata processed by our Stripe payment provider (we do not store full card numbers)
- Device and usage data such as browser type, approximate location, pages viewed, and cookie identifiers
1.3 Legal Bases for Processing
We rely on the following GDPR legal bases:
- Legitimate interests — operating our security practice, responding to inquiries, improving service delivery, and securing our infrastructure
- Contract — preparing quotes, delivering contracted cybersecurity services, and managing client relationships
- Consent — optional analytics cookies, marketing communications you opt into, and certain form submissions
- Legal obligation — tax, accounting, and regulatory record-keeping requirements applicable in France and the EU
1.4 Purposes & Recipients
We process personal data to respond to contact requests, deliver cybersecurity assessments and defensive services, invoice and collect payments, maintain security of our systems, and meet legal duties. Recipients may include our hosting, email, analytics, and payment processors, as well as professional advisors and public authorities where required. We do not sell personal data.
1.5 International Transfers
We aim to keep operational data within the European Economic Area. Where a processor operates outside the EEA, we implement appropriate safeguards such as Standard Contractual Clauses and supplementary technical measures appropriate to the sensitivity of the data.
1.6 Retention
Inquiry records are generally retained for up to 24 months unless a contract, legal obligation, or ongoing client relationship requires longer retention. Security engagement records may be retained for the duration of the engagement plus applicable limitation periods. Cookie data is retained according to the periods stated in our Cookie Policy.
1.7 Your Rights
Subject to legal conditions, you may exercise the right of access, rectification, erasure, restriction, data portability, and objection. You may withdraw consent at any time where processing relies on consent, without affecting prior lawful processing. To exercise these rights, email [email protected] or write to BoldCyberNet, 27 Rue Miollis, 75015 Paris, France.
You also have the right to lodge a complaint with the Commission Nationale de l'Informatique et des Libertés (CNIL) or your local supervisory authority.
1.8 Security Measures
BoldCyberNet applies technical and organizational measures aligned with our own zero-trust philosophy: access controls, encryption in transit, least-privilege administration, monitoring of production systems, and vendor due diligence. No method of transmission or storage is perfectly secure; we continuously improve controls to reduce residual risk.
2. Terms of Service
2.1 Agreement to Terms
These Terms of Service govern access to the BoldCyberNet website and the commercial use of our cybersecurity services. By engaging BoldCyberNet, submitting a consultation request, or accepting a quote, you agree to these Terms together with any statement of work (SOW) or master service agreement (MSA) executed between the parties.
2.2 Services
BoldCyberNet provides proactive threat intelligence, automated attack surface monitoring, zero-trust perimeter design, security audits, training, retainer-based penetration testing, and incident response support. Specific scope, deliverables, timelines, and fees are defined in the applicable SOW. Services described on our website are illustrative and do not constitute a binding offer until confirmed in writing.
2.3 Client Responsibilities
You agree to provide accurate information, timely access to relevant systems and personnel, and lawful authorization for testing activities you request. You remain responsible for your own production decisions, patching, identity management, and business continuity choices, even where BoldCyberNet provides recommendations.
2.4 Fees & Payment
Fees, currencies, and payment milestones are specified in the relevant SOW. Payments are due according to those milestones. Secure online payment is available through Stripe via our payment link. Late payments may incur charges permitted by applicable law. All amounts are exclusive of taxes unless otherwise stated.
Pay Securely →
2.5 Intellectual Property
Upon full payment of the fees for a project, and except for pre-existing materials, third-party tools, and reusable frameworks owned by BoldCyberNet, intellectual property in client-specific deliverables is assigned to you as described in the SOW. BoldCyberNet retains the right to use anonymized, non-confidential patterns and methods that do not disclose your confidential information.
2.6 Confidentiality
Both parties will protect confidential information disclosed in connection with the services and will use it only for the engagement. These obligations do not apply to information that is public, independently developed, or required to be disclosed by law, provided the disclosing party receives prompt notice where legally permitted.
2.7 Testing Ethics & Authorization
All adversarial testing (including penetration testing and red-team exercises) is performed strictly within authorized scopes. You must confirm in writing that you are authorized to instruct testing against the systems named in the SOW. Unauthorized testing is prohibited under these Terms and may violate applicable law.
2.8 Limitation of Liability
To the fullest extent permitted by law, BoldCyberNet's total aggregate liability arising out of or related to the services is limited to the fees actually paid by you to BoldCyberNet for the relevant engagement in the twelve (12) months preceding the claim. Neither party is liable for indirect, incidental, special, or consequential damages. Nothing in these Terms limits liability for fraud, wilful misconduct, or any liability that cannot be limited under applicable law.
2.9 Term & Termination
Either party may terminate an engagement as allowed by the SOW. Upon termination, you will pay for services properly performed and non-cancellable third-party costs committed for the engagement. Provisions that by nature should survive (including confidentiality, IP, payment, and liability limitations) will survive termination.
2.10 Governing Law
These Terms are governed by French law, without regard to conflict-of-law principles. Courts of Paris, France have exclusive jurisdiction over disputes arising from these Terms, subject to mandatory consumer protections where applicable.
3. Cookie Policy
3.1 What Cookies Are
Cookies are small text files stored on your device when you visit a website. Similar technologies such as local storage and pixels may be used for the same purposes. This policy explains how BoldCyberNet uses such technologies on our site.
3.2 Categories We Use
-
Strictly necessary cookies — required for core site function, security session integrity, and remembering your consent choice (for example, the localStorage key that hides the consent banner after you accept).
-
Analytics cookies — help us understand aggregate traffic patterns and improve the clarity of our services. Where required, these are activated only after consent.
-
Preference cookies — remember interface choices such as language or dismissed notices.
3.3 Third-Party Cookies
Our pages may load third-party resources such as Google Fonts, the Tailwind CSS CDN, and an embedded Google Map for our Paris headquarters at 27 Rue Miollis, 75015 Paris, France. These providers may set cookies under their own policies. We do not control their processing and encourage you to review their documentation.
3.4 Managing Your Choices
Most browsers allow you to block or delete cookies through their settings. Blocking strictly necessary storage may affect site function, including cookie banner persistence. You can also clear site data at any time to re-trigger the consent banner.
3.5 Contact
Questions about this Cookie Policy can be sent to [email protected] or BoldCyberNet, 27 Rue Miollis, 75015 Paris, France.
4. Refund Policy
4.1 Purpose
BoldCyberNet aims to be fair and transparent when commercial engagements end early or fail to deliver due to causes within our control. This Refund Policy outlines when refunds may be issued and how requests are handled.
4.2 Deposits & Milestone Payments
Deposits secure scheduling, planning, and tooling commitments for the agreed engagement. Except where required by law or expressly stated in the SOW, deposits are non-refundable once work has commenced. Milestone invoices are payable for work completed and accepted (or deemed accepted) under the SOW.
4.3 Cancelation Windows
-
Before kickoff — if you cancel in writing before any substantive work has begun, prepaid amounts may be refunded minus non-cancellable third-party costs and administrative fees of up to 10% of the deposit.
-
After kickoff — prepaid amounts corresponding to work not yet performed may be refunded on a pro-rata basis, adjusted for committed costs and completed deliverables.
-
Retainer months — monthly retainers (for example, continuous penetration testing at $1,450/mo) may be canceled with written notice at least thirty (30) days before the next billing cycle. Unused prepaid retainer time is refunded pro-rata for unstarted services, less any third-party or dedicated resource commitments already incurred.
4.4 Non-Refundable Situations
Refunds are not available for: services fully delivered as specified; deliverables rejected solely due to preference changes after acceptance windows; client-caused delays; non-payment; breaches of these Terms or applicable law; or time and effort already consumed in planning, tooling setup, or third-party licensing committed on your behalf.
4.5 Remedies Before Refunds
If a deliverable does not meet the agreed specification, please notify us in writing within fourteen (14) days of delivery with objective evidence. We will correct material non-conformities within a reasonable period at no additional fee. Where correction is not commercially sensible, a partial refund may be offered at our discretion in proportion to non-conformity.
4.6 How to Request a Refund
Email [email protected] from your account email, including the invoice number, project name, and a concise description of your request. We aim to acknowledge requests within five (5) business days and to communicate a decision within fourteen (14) business days. Approved refunds are issued to the original payment method via Stripe, typically within ten (10) business days of approval.
4.7 Payment Processing
Online payments are processed by Stripe. For payment issues unrelated to BoldCyberNet service delivery, contact our desk at [email protected] first so we can escalate efficiently.
Open secure payment portal →
4.8 Contact for This Policy
BoldCyberNet, 27 Rue Miollis, 75015 Paris, France — [email protected]
This documentation is provided for transparency between BoldCyberNet and its clients and visitors. If any clause conflicts with a signed statement of work or master service agreement, the signed agreement controls for that engagement. For questions, contact
[email protected].