Introduction

Last updated: August 5, 2025

CSWT (CyberSecurity Web Tools), is committed to protecting the privacy and security of your personal data. This privacy policy explains how we collect, use, store and protect your information when you use our cybersecurity platform.

Our commitment: As a cybersecurity solution, we apply the highest data protection standards and comply with all applicable regulations, including European GDPR and local data protection laws.

Data Controller

Email: support@cswt.io

Phone: +229 01 66 20 18 83

Data we collect

1. Identification and contact data

  • First and last name
  • Email address
  • Phone number
  • Job title and company
  • Company postal address

2. Technical and usage data

  • IP addresses and connection information
  • Browsing and platform usage data
  • Activity and security logs
  • Device information
  • Cookies and similar technologies

3. Cybersecurity data

  • Your organization's digital assets
  • Domains and subdomains
  • Perimeters and configurations
  • Threat monitoring data
  • Vulnerability analysis results

Important: We never collect sensitive data such as passwords, banking information or personal information not necessary for our service.

Use of your data

Processing purposes

Type of token Purpose Legal basis
Essential tokens Platform operation Legitimate interest
Security tokens Authentication and protection Legitimate interest
Performance tokens Usage analysis and improvement Consent

Note: Two-factor authentication set up in the platform settings will provide you with optimal operation of the CSWT platform.

Protection of minors

CSWT is a professional service intended for businesses and organizations. We do not knowingly collect personal information from persons under the age of 16.

If we discover that a minor has provided personal data, we will take steps to delete this information as soon as possible.

If you are a parent or guardian and believe your child has provided us with personal data, please contact us immediately.

Changes to this policy

We may update this privacy policy to reflect changes in our practices or for other operational, legal or regulatory reasons.

Change notification

  • Minor changes: Update of last modification date
  • Major changes: Email notification to active users
  • New purposes: Request for explicit consent if necessary

We encourage you to review this policy regularly to stay informed about how we protect your data.

Current version: 1.1.0 - Last updated: August 5, 2025

Contact and complaints

Data Protection Officer (DPO)

Name: CSWT Data Protection Service

Email: dpo@cswt.io

Phone: +229 01 66 20 18 83

Supervisory authorities

If you reside in the European Union, you may contact your national data protection authority. For other jurisdictions, contact the competent authority in your country.

Mediation

In case of dispute concerning the processing of your personal data, we are committed to seeking an amicable solution. You may also resort to mediation procedure with competent organizations.

Response time

  • General questions: 48 business hours
  • Exercise of rights: 30 days maximum
  • Security incidents: Immediate response
  • Complaints: 15 business days

Glossary

Important definitions

Personal data: Any information relating to an identified or identifiable natural person.

Processing: Any operation performed on personal data (collection, recording, organization, storage, adaptation, modification, extraction, consultation, use, communication, etc.).

Data controller: The natural or legal person who determines the purposes and means of processing personal data.

Data processor: The natural or legal person who processes personal data on behalf of the data controller.

Consent: Free, specific, informed and unambiguous expression of will by which the data subject accepts the processing of their data.

Data breach: Security breach resulting in destruction, loss, alteration, unauthorized disclosure of personal data.

Pseudonymization: Processing of personal data in such a way that they can no longer be attributed to a specific data subject without additional information.

Anonymization: Process of treating personal data so that it no longer allows identification of a person.

Annexes and complementary documents

Related documents

Certifications and compliance

  • GDPR compliance (General Data Protection Regulation)
  • ISO/IEC 27001 certification (Information Security Management)
  • Compliance with international data protection laws (e.g. CCPA, PIPEDA)
  • Regular security audits by independent third parties

Useful resources

Quality commitment: This privacy policy has been written in compliance with international best practices and is subject to regular review by our legal and technical experts.