GDPR & Cookie Policy
Last updated: June 20, 2026
GDPR compliance
Florarise processes EU personal data in compliance with GDPR (Regulation 2016/679). We act as a data processor for your customers' review data — you are the data controller. Our Data Processing Agreement (DPA) is available on request at privacy@florarise.net.
Your rights as a data subject
- ·Right of access: Request a copy of your personal data we hold
- ·Right to rectification: Correct inaccurate or incomplete data
- ·Right to erasure: Request deletion of your data (subject to legal retention obligations)
- ·Right to portability: Export your data in a machine-readable format
- ·Right to object: Object to processing for direct marketing purposes
- ·Right to restrict processing: Limit how we use your data in certain circumstances
To exercise these rights, email privacy@florarise.net. We respond within 30 days.
Cookies we use
| Name | Purpose | Duration | Required? |
|---|---|---|---|
| florarise_session | Authentication session | Session | Yes |
| florarise_locale | Preferred language | 1 year | Yes |
| florarise_cookie_consent | Cookie preference | 1 year | Yes |
| _fla_analytics | Usage analytics (privacy-first, no personal data) | 1 year | No (opt-in) |
Data transfers
Florarise servers are located in the EU. If we transfer data outside the EU, we use Standard Contractual Clauses (SCCs) to ensure adequate protection.
Contact our DPO
Data protection questions: privacy@florarise.net