Privacy
Privacy policy
Last updated: September 2026
This policy describes how OHMO processes your personal data when you use the OHMO mobile app, the ohmo.fr website and the power bank rental service, in accordance with the General Data Protection Regulation (GDPR) and the applicable French data protection law.
Data controller
- Company
- OHMO
- Registered office
- 181 avenue Victor Hugo, 75016 Paris, France
- Trade register (RCS)
- RCS Paris 103 318 416
- Personal data contact
- support@ohmo.fr
Data we process
Account and authentication: your mobile phone number is your account identifier. It is verified with a one-time code (OTP) sent by SMS; the code is never stored in plain text. Name and e-mail address are optional.
Rentals: pick-up and return stations, timestamps, rental status and billed amounts. This history is available in the app.
Payment: payments are processed by our provider Stripe. OHMO never stores your full card number — we only keep a payment reference, the last four digits and the transaction status. To prevent abuse of the free period, we also keep the technical card fingerprint provided by Stripe — a stable identifier of the physical card that is neither your card number nor data that directly identifies you.
Rental from a station screen: no identity or contact data is collected. The contactless payment is processed by Stripe (Stripe Terminal); OHMO only receives a payment reference, the last four digits, the card network and, where applicable, the technical card fingerprint described above, used to link the rental to the payment method, issue the receipt and prevent fraud. The rental tracking page is reached through a tokenised link shown as a QR code, without signing in. The station screen also sends, through the same channel, technical events tied to the station, a screen session identifier and a timestamp — without name or contact details: journey steps, payment outcome and errors, but also screen diagnostics (crash reports of the station application with the error message and stack trace, from which receipt links, payment identifiers and technical tokens are removed on the device before sending; degraded-mode starts; opening and closing of maintenance access by a technician). They are used to monitor the service, diagnose failures and secure the stations, and can be matched to a rental by station and time.
Geolocation: with your permission (phone settings), your position is used in the app to show the nearest stations on the map. It is processed on your device and is not sent to OHMO servers.
Technical data: device model, platform, app version, push notification token (if you enable notifications), and technical logs (IP address, timestamps) needed to keep the service secure. On ohmo.fr, audience statistics are collected with Matomo in the consent-exempt configuration defined by the CNIL: aggregate, anonymous statistics with no cookies and no cross-site tracking, hosted in the European Union. You can object at any time (see “Your rights”).
Mobile app telemetry: the app sends a limited set of technical state events — app launch, successful sign-in, station list load, scan result, rental request, power bank dispensed or returned, payment method setup steps, receipt displayed — together with the app version and the major operating system version. These events come from a closed list defined by the server: the app cannot attach free text, identifiers or the content of your data to them. iOS also exposes crash and freeze diagnostics (MetricKit); the app reduces them to plain counters before anything is sent — no crash report, stack trace or memory content leaves your device. The events are sent from a signed-in session, but we deliberately do not record your account or session identifier alongside them; they are kept in our technical logs and are not stored in a database. Separately from this telemetry, the Stripe payment SDK bundled with the app itself collects two categories of data: the payment data you enter — captured by the input field provided by Stripe itself and sent directly to Stripe, so that your full card number is neither transmitted to OHMO’s servers nor stored by us — needed to operate the payment; and interaction data about the use of the payment interface, used both to operate the payment and for Stripe’s own analytics.
Support assistant (chat): if you use the assistant chat on our websites, the text of your messages is processed to generate an automated answer and screened by a moderation filter. A visitor conversation is anonymous (not linked to an account); it is deleted automatically 30 days after it starts. We recommend not entering personal data in the chat; the IP address is used only for rate limiting (abuse prevention).
Support assistant — signed-in mode: if you use the chat while signed in to your account, the conversation is linked to your account and remains available in the chat. To answer you, the assistant can look up data from your account (current rental status, recent rentals, pricing, billing state); only the information strictly needed for the answer is passed to the generation provider. You can ask for the conversation to be handed over to a human operator, who replies in the same chat.
Purposes and legal bases
Account creation, SMS authentication, provision of the rental service and billing: performance of the contract (Article 6(1)(b) GDPR).
Fraud and abuse prevention (SMS rate limiting, prevention of free-period abuse via the card fingerprint, service security) and technical logs: legitimate interest (Article 6(1)(f)).
Mobile app technical telemetry (monitoring service availability and quality, diagnosing rental and payment failures): legitimate interest (Article 6(1)(f)).
Technical events and diagnostics from station screens (service and conversion monitoring, diagnosis of payment, dispensing and crash failures, maintenance-access log for station security): legitimate interest (Article 6(1)(f)).
Support assistant (chat) — automated answers to your questions about the service and moderation of the exchanges: legitimate interest (Article 6(1)(f)) — assisting you without a human operator for every question.
Support assistant in signed-in mode (help with your rentals and payments, handover to a human operator): performance of the contract (Article 6(1)(b)).
Marketing communications: only with your consent (opt-in checkbox), withdrawable at any time (Article 6(1)(a)).
Retention of billing data: legal accounting and tax obligation (Article 6(1)(c)).
Processors and recipients
- Infobip
- Delivery of verification SMS (one-time codes)
- Stripe
- Secure payment processing
- Fly.io
- Platform hosting (servers in Frankfurt, European Union)
- Matomo (Matomo Cloud)
- Website audience statistics — anonymous, aggregate, EU-hosted
- OpenAI
- Support assistant (chat) answer generation and content moderation
We do not sell your data and only share it with the providers listed above, to the extent necessary for their role, or where the law requires us to.
Transfers outside the European Union
Your data is hosted in the European Union (Frankfurt). Some providers may nevertheless process data outside the EU/EEA; in that case the transfer is governed by the European Commission’s standard contractual clauses or another mechanism recognised by the GDPR.
Retention periods
- Customer account
- While the account is active, then deletion or anonymisation
- SMS verification codes
- A few minutes (code validity period)
- Rental history and invoices
- 10 years (accounting obligations)
- Technical logs
- Up to 12 months
- Mobile app telemetry
- Kept in the technical logs (up to 12 months)
- Card fingerprint (abuse prevention)
- 24 months from last use
- Technical events from station screens
- 12 months from the event
- Assistant conversations (visitors)
- 30 days
- Assistant conversations (account)
- While the account is active; deleted after 24 months of inactivity or with the account
- Site language cookie
- 12 months
- Analytics consent cookie
- 6 months
Your rights
You have the right of access, rectification, erasure, restriction of processing, portability and objection, as well as the right to withdraw your consent at any time for processing based on it.
To exercise these rights, write to us at support@ohmo.fr; we may ask you to verify your identity. You can also lodge a complaint with the CNIL, the French supervisory authority (cnil.fr).
Security
Traffic is encrypted (TLS), verification codes and session tokens are stored hashed, and access to data is limited to what is strictly necessary. To report a vulnerability, contact security@ohmo.fr (see also our security.txt file).
Changes to this policy
Any change to this policy will be published on this page with a new update date. In case of substantial changes, we will notify you via the app or by e-mail.
Contact
For any question about your personal data: support@ohmo.fr. For security matters: security@ohmo.fr. By post: OHMO, 181 avenue Victor Hugo, 75016 Paris, France.