Telluris
Privacy policy
Legal information and terms for the Telluris private beta.
Who processes your data?
TELLURIS SAS, 138 avenue Victor Hugo, 75116 Paris, SIREN 109 572 016, controls processing for its contacts, customer relationships, service operations and security, and its own audience measurement. Contact us at contact@telluris.ai.
For personal data in dossiers managed on behalf of a customer organisation, Telluris acts as a processor under that organisation’s instructions and the DPA. The organisation determines the purposes and informs the individuals concerned.
Data, purposes and legal bases
Contacts and commercial relationships: identity, professional contact details, organisation and correspondence, to answer requests and manage the agreement. Legal basis: pre-contractual steps or the contract where the individual is the customer; legitimate interest in communicating with customer representatives otherwise.
Accounts and collaboration: identity, email, profile, organisation, roles, invitations and activity needed to manage access. Depending on Telluris’s role and relationship with the person, operating the service relies on the contract or the legitimate interest in providing and securing the service. Processing on behalf of the customer follows its instructions and its own legal basis.
Security and diagnostics: technical identifiers, request information, errors, traces and logs to prevent abuse and investigate incidents; legitimate interest in service security and operation. Sentry receives the user ID and, from the web app, the user’s email when available.
Billing, where applicable: customer details and accounting records, to perform the contract and meet accounting and tax obligations.
Audience and experience measurement: page visits and interactions; in the app, user ID, role and active organisation, and masked replay when enabled. This optional PostHog processing relies on consent to improve the product, without advertising or commercial targeting.
Data necessary to manage accounts and permissions are required to provide access. Refusing analytics does not prevent service use. A customer may provide your contact details in an invitation, to offer the relevant access.
Providers and recipients
Only authorised Telluris personnel and providers involved in the relevant purposes access the necessary data. Other users see data according to the organisation’s granted access and sharing permissions.
Scaleway hosts the primary infrastructure, database and files. Resend handles transactional emails and processes recipients, messages and delivery information. Sentry receives technical diagnostics. PostHog receives authorised optional measurements. Geoapify processes address searches sent by our server. Google Workspace hosts the contact mailbox and processes incoming and outgoing correspondence and attachments.
The website and application also load fonts from Google Fonts: the browser sends Google its IP address and the technical information needed for these requests. Map backgrounds load directly from OpenStreetMap servers. When displayed, those servers receive your browser’s IP address and requested tile references, corresponding to the displayed area.
Operational tools include Tailscale for private infrastructure access and GitHub/Blacksmith for builds and deployment. Their presence does not mean customer dossiers are systematically sent to them. This presentation website is served by the same Scaleway infrastructure as the application.
Locations and transfers
The application database and files are configured at Scaleway in the Paris region. Sentry uses German ingestion endpoints; PostHog defaults to its European endpoint. These facts alone do not guarantee the absence of access or transfers outside the European Economic Area.
Resend states that it stores customer data, including message content and delivery logs, in the United States even when a European sending region is selected. Geoapify states that its servers are in the European Union and also uses network providers.
Before final publication, Telluris must confirm each provider’s contracting entities, processing locations and applicable transfer safeguards (an adequacy decision or appropriate safeguards, as applicable), and how to obtain a copy. This draft does not claim those checks have already been completed.
Retention
Account and dossier data are needed while providing the service. Their treatment on closure is agreed with the customer in the special terms and DPA, subject to statutory retention obligations and the defence of legal claims.
PostHog acceptance or refusal is valid for 180 days. On the landing, it is remembered in the browser. In the application, it is saved in account preferences and applies to all devices signed into that account. These two choices remain independent. This is the choice’s lifetime, not the retention period for transmitted events.
Retention periods for PostHog events and replays, Sentry diagnostics, Resend messages, contact correspondence, accounting archives and backups, and account and dossier deletion deadlines must be determined and matched to actual settings before final publication.
Cookies, local storage and choices
Authentication uses the mechanisms needed for the session. The browser also remembers language and theme preferences. Application privacy choices are linked to the account; a local marker recognises devices already informed of this scope.
PostHog starts only after consent. The landing measures visits and clicks, without replay. In the app, replay, when enabled, masks text and inputs and blocks images and sensitive areas. Authentication and invitation pages are excluded from this application collection.
Accept, refuse or withdraw consent through “Privacy choices”. Withdrawal stops future collection; it does not automatically erase previously sent events. You may request erasure under applicable rights. Signing in, accepting service terms or continuing to browse does not constitute analytics consent.
Your rights
Subject to the GDPR’s conditions, you have rights of access, rectification, erasure, restriction, objection and portability. Where processing relies on consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
Write to contact@telluris.ai describing your request and the relevant account or organisation. We may request proportionate information to verify your identity. For data processed on a customer organisation’s behalf, we assist it in responding. You may also complain to the French data protection authority, the CNIL, including through cnil.fr.