Privacy

Privacy policy

Last updated: September 2026

This policy describes how OHMO processes your personal data when you use the OHMO mobile app, the ohmo.fr website and the power bank rental service, in accordance with the General Data Protection Regulation (GDPR) and the applicable French data protection law.

Data controller

Company
OHMO
Registered office
181 avenue Victor Hugo, 75016 Paris, France
Trade register (RCS)
RCS Paris 103 318 416
Personal data contact
support@ohmo.fr

Data we process

Account and authentication: your mobile phone number is your account identifier. It is verified with a one-time code (OTP) sent by SMS; the code is never stored in plain text. Name and e-mail address are optional.

Rentals: pick-up and return stations, timestamps, rental status and billed amounts. This history is available in the app.

Payment: payments are processed by our provider Stripe. OHMO never stores your full card number — we only keep a payment reference, the last four digits and the transaction status. To prevent abuse of the free period, we also keep the technical card fingerprint provided by Stripe — a stable identifier of the physical card that is neither your card number nor data that directly identifies you.

Rental from a station screen: no identity or contact data is collected. The contactless payment is processed by Stripe (Stripe Terminal); OHMO only receives a payment reference, the last four digits, the card network and, where applicable, the technical card fingerprint described above, used to link the rental to the payment method, issue the receipt and prevent fraud. The rental tracking page is reached through a tokenised link shown as a QR code, without signing in. The station screen also sends, through the same channel, technical events tied to the station, a screen session identifier and a timestamp — without name or contact details: journey steps, payment outcome and errors, but also screen diagnostics (crash reports of the station application with the error message and stack trace, from which receipt links, payment identifiers and technical tokens are removed on the device before sending; degraded-mode starts; opening and closing of maintenance access by a technician). They are used to monitor the service, diagnose failures and secure the stations, and can be matched to a rental by station and time.

Geolocation: with your permission (phone settings), your position is used in the app to show the nearest stations on the map. It is processed on your device and is not sent to OHMO servers.

Technical data: device model, platform, app version, push notification token (if you enable notifications), and technical logs (IP address, timestamps) needed to keep the service secure. On ohmo.fr, audience statistics are collected with Matomo in the consent-exempt configuration defined by the CNIL: aggregate, anonymous statistics with no cookies and no cross-site tracking, hosted in the European Union. You can object at any time (see “Your rights”).

Mobile app telemetry: the app sends a limited set of technical state events — app launch, successful sign-in, station list load, scan result, rental request, power bank dispensed or returned, payment method setup steps, receipt displayed — together with the app version and the major operating system version. These events come from a closed list defined by the server: the app cannot attach free text, identifiers or the content of your data to them. iOS also exposes crash and freeze diagnostics (MetricKit); the app reduces them to plain counters before anything is sent — no crash report, stack trace or memory content leaves your device. The events are sent from a signed-in session, but we deliberately do not record your account or session identifier alongside them; they are kept in our technical logs and are not stored in a database. Separately from this telemetry, the Stripe payment SDK bundled with the app itself collects two categories of data: the payment data you enter — captured by the input field provided by Stripe itself and sent directly to Stripe, so that your full card number is neither transmitted to OHMO’s servers nor stored by us — needed to operate the payment; and interaction data about the use of the payment interface, used both to operate the payment and for Stripe’s own analytics.

Support assistant (chat): if you use the assistant chat on our websites, the text of your messages is processed to generate an automated answer and screened by a moderation filter. A visitor conversation is anonymous (not linked to an account); it is deleted automatically 30 days after it starts. We recommend not entering personal data in the chat; the IP address is used only for rate limiting (abuse prevention).

Support assistant — signed-in mode: if you use the chat while signed in to your account, the conversation is linked to your account and remains available in the chat. To answer you, the assistant can look up data from your account (current rental status, recent rentals, pricing, billing state); only the information strictly needed for the answer is passed to the generation provider. You can ask for the conversation to be handed over to a human operator, who replies in the same chat.

Purposes and legal bases

Account creation, SMS authentication, provision of the rental service and billing: performance of the contract (Article 6(1)(b) GDPR).

Fraud and abuse prevention (SMS rate limiting, prevention of free-period abuse via the card fingerprint, service security) and technical logs: legitimate interest (Article 6(1)(f)).

Mobile app technical telemetry (monitoring service availability and quality, diagnosing rental and payment failures): legitimate interest (Article 6(1)(f)).

Technical events and diagnostics from station screens (service and conversion monitoring, diagnosis of payment, dispensing and crash failures, maintenance-access log for station security): legitimate interest (Article 6(1)(f)).

Support assistant (chat) — automated answers to your questions about the service and moderation of the exchanges: legitimate interest (Article 6(1)(f)) — assisting you without a human operator for every question.

Support assistant in signed-in mode (help with your rentals and payments, handover to a human operator): performance of the contract (Article 6(1)(b)).

Marketing communications: only with your consent (opt-in checkbox), withdrawable at any time (Article 6(1)(a)).

Retention of billing data: legal accounting and tax obligation (Article 6(1)(c)).

Processors and recipients

Infobip
Delivery of verification SMS (one-time codes)
Stripe
Secure payment processing
Fly.io
Platform hosting (servers in Frankfurt, European Union)
Matomo (Matomo Cloud)
Website audience statistics — anonymous, aggregate, EU-hosted
OpenAI
Support assistant (chat) answer generation and content moderation

We do not sell your data and only share it with the providers listed above, to the extent necessary for their role, or where the law requires us to.

Transfers outside the European Union

Your data is hosted in the European Union (Frankfurt). Some providers may nevertheless process data outside the EU/EEA; in that case the transfer is governed by the European Commission’s standard contractual clauses or another mechanism recognised by the GDPR.

Retention periods

Customer account
While the account is active, then deletion or anonymisation
SMS verification codes
A few minutes (code validity period)
Rental history and invoices
10 years (accounting obligations)
Technical logs
Up to 12 months
Mobile app telemetry
Kept in the technical logs (up to 12 months)
Card fingerprint (abuse prevention)
24 months from last use
Technical events from station screens
12 months from the event
Assistant conversations (visitors)
30 days
Assistant conversations (account)
While the account is active; deleted after 24 months of inactivity or with the account
Site language cookie
12 months
Analytics consent cookie
6 months

Your rights

You have the right of access, rectification, erasure, restriction of processing, portability and objection, as well as the right to withdraw your consent at any time for processing based on it.

To exercise these rights, write to us at support@ohmo.fr; we may ask you to verify your identity. You can also lodge a complaint with the CNIL, the French supervisory authority (cnil.fr).

Security

Traffic is encrypted (TLS), verification codes and session tokens are stored hashed, and access to data is limited to what is strictly necessary. To report a vulnerability, contact security@ohmo.fr (see also our security.txt file).

Changes to this policy

Any change to this policy will be published on this page with a new update date. In case of substantial changes, we will notify you via the app or by e-mail.

Contact

For any question about your personal data: support@ohmo.fr. For security matters: security@ohmo.fr. By post: OHMO, 181 avenue Victor Hugo, 75016 Paris, France.