Data and infrastructure
This is a translation. The French version prevails.
Last updated: 6 October 2026.
This page gives the information required by Articles 26 and 28 of Regulation (EU) 2023/2854 on data (the "Data Act") and by Article 17.8 of Fondiva's general terms of sale.
Where your data is
Each customer has its own Instance in the Fondiva application, with its own database, separate from those of other customers. The application's databases and servers are hosted in France, in Paris.
| Provider | Role | Location | Country of the company |
|---|---|---|---|
| Supabase Pte. Ltd | Database, authentication and storage | Paris (eu-west-3 region) | Singapore |
| Vercel Inc. | Hosting of interfaces and functions; gateway to AI models | Paris (cdg1 region); global delivery network | United States |
| Plus Five Five, Inc. (Resend) | Sending emails | Ireland | United States |
| AI model providers | Running AI models, without retaining requests | Depends on the provider; European Union with the "AI in Europe" option | List kept in the application |
Measures against access by foreign public authorities
These measures protect your data, including data that is not personal data:
- your data is hosted in France, in a separate Instance for each customer;
- exchanges are encrypted; only the people who need it have access, with named accounts; an append-only log records actions: a recorded action cannot be changed;
- AI model providers do not retain requests and do not use them to train their models;
- the standard contractual clauses in our contracts with Vercel and Supabase require them to inform us of a public authority's request for access to personal data, where the law allows, and to challenge an unlawful request;
- if Fondiva receives from an authority of a country outside the European Union a request for access to a customer's data, it checks that the request complies with EU law, informs the customer unless the law forbids it, challenges a request that does not comply and only discloses what is strictly necessary.
Register of exportable data
- Structure: your data is organised into Objects (for example your customers, projects or quotes), Records (each given customer or quote) and Attributes (an amount, a status, a date), with their relations, timestamps and the history of actions.
- Formats: CSV or JSON, UTF-8 encoded, for data; original format for documents; PDF for audit deliverables. A data dictionary describes each Object and each Attribute.
- Open interface: the MCP protocol (Model Context Protocol), an open standard, lets you connect your own assistants or AI agents to your Instance.
- Export: at any time, from your Instance or on request to support@fondiva.com, free of charge.
Switching provider
- Notice: on a monthly plan, you can terminate until the day before renewal. On an annual plan, you can ask to switch provider with two months' notice; your quote then states the amount of the early termination fee.
- Full export: no later than 30 days after the end of the contract, Fondiva gives you all your data, with the data dictionary.
- Transition: for 30 days, your Instance remains available for reading and export, or with all its features if you ask before the end of the contract, at the subscription price pro rata. You can ask once to extend this period.
- Retrieval: you then have at least 30 days to check the export and ask for anything missing.
- Deletion: Fondiva then deletes your data, no later than 60 days after the end of the contract without extension, and confirms it in writing on request.
Switching provider and exporting are free of charge. For any request: legal@fondiva.com.