Privacy Policy
Version 1.0 — Effective: March 12, 2026
Favonius Energy Inc. (“Company”, “we”, “us”, or “our”) respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at https://favoniusenergy.com/ (the “Site”) and use our services.
We process personal data in accordance with the EU General Data Protection Regulation (GDPR), the US state privacy laws where applicable, and other relevant data protection legislation. Please read this policy carefully. If you do not agree with the terms of this Privacy Policy, please do not access the Site.
1. Data Controller
The data controller responsible for your personal data is:
2. Information We Collect
2.1 Information You Provide to Us
We collect information that you voluntarily provide when you:
- Register for an account:first name, last name, email address, company/organization name, and password (stored securely as a hash — we never store plaintext passwords).
- Join our waitlist: first name, last name, email address, company/organization name, and reason for interest.
- Contact us: any information you include in emails or other communications with us.
2.2 Information Collected Automatically
When you access the Site, we may automatically collect:
- IP address: collected during waitlist submissions for rate-limiting and abuse prevention purposes.
- Session data: authentication tokens and session identifiers stored in cookies necessary for the Site to function.
2.3 Information We Do NOT Collect
We do not use analytics tracking cookies (such as Google Analytics), advertising cookies, or any third-party behavioral tracking on the Site. We do not collect payment information, as no payment processing is currently offered through the Site.
3. Legal Basis for Processing (GDPR)
If you are located in the EU/EEA, we process your personal data on the following legal bases under Article 6 of the GDPR:
- Performance of a contract (Art. 6(1)(b)):Processing necessary to provide you with an account and access to the Site’s features, as outlined in our Terms of Use.
- Legitimate interest (Art. 6(1)(f)): Processing for our legitimate interests, such as improving our services, preventing fraud and abuse (e.g., rate-limiting waitlist submissions via IP address), and communicating with you about our services. We ensure that these interests are balanced against your rights and freedoms.
- Consent (Art. 6(1)(a)): Where you have given us consent for specific processing activities, such as joining our waitlist. You may withdraw consent at any time by contacting us.
- Legal obligation (Art. 6(1)(c)): Where we are required to process your data to comply with a legal obligation.
4. How We Use Your Information
We use the information we collect to:
- Create, maintain, and secure your account
- Provide access to the Site and its features
- Process and manage waitlist registrations
- Communicate with you about your account, our services, and updates
- Prevent fraud, abuse, and unauthorized access (e.g., rate limiting, CSRF protection)
- Comply with legal obligations
- Improve and develop our Site and services
5. Data Sharing and Third-Party Processors
We do not sell your personal data. We share your data only with the following categories of service providers who process data on our behalf:
| Provider | Purpose | Data Location |
|---|---|---|
| Supabase (AWS) | Database hosting, authentication, real-time services | AWS (EU/US regions) |
| Energy-Charts API | Electricity price data (no personal data shared) | EU |
| Vercel / Hosting Provider | Website hosting and delivery | Global CDN |
All third-party processors are bound by data processing agreements and are required to protect your data in accordance with applicable law.
6. International Data Transfers
As we are based in the United States and use service providers that may store data outside the EU/EEA, your personal data may be transferred to, and processed in, countries outside the EU/EEA. When such transfers occur, we ensure that appropriate safeguards are in place, including:
- EU-US Data Privacy Framework (where applicable)
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Other legally recognized transfer mechanisms
7. Data Retention
We retain your personal data as follows:
- Account data: Retained for as long as your account is active. If you request account deletion, we will delete your data within 30 days, except where retention is required by law.
- Waitlist data: Retained until you are onboarded or you request deletion, whichever comes first.
- IP addresses: Collected for rate-limiting purposes only and not stored long-term.
8. Your Rights
8.1 Rights Under GDPR (EU/EEA Users)
If you are located in the EU or EEA, you have the following rights under the GDPR:
- Right of access (Art. 15): Request a copy of the personal data we hold about you.
- Right to rectification (Art. 16): Request correction of inaccurate or incomplete personal data.
- Right to erasure (Art. 17):Request deletion of your personal data (“right to be forgotten”).
- Right to restriction (Art. 18): Request restriction of processing of your personal data.
- Right to data portability (Art. 20): Request your data in a structured, commonly used, and machine-readable format.
- Right to object (Art. 21): Object to processing based on our legitimate interests.
- Right to withdraw consent: Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
- Right to lodge a complaint: You have the right to lodge a complaint with your local data protection supervisory authority.
8.2 Rights Under US State Privacy Laws
Depending on your state of residence (e.g., California, Virginia, Colorado), you may have similar rights, including the right to know, delete, and opt out of the sale of personal information. We do not sell personal information.
8.3 Exercising Your Rights
To exercise any of these rights, please contact us at joris@favoniusenergy.com. We will respond to your request within 30 days (or within the timeframe required by applicable law). We may need to verify your identity before processing your request.
9. Cookies and Similar Technologies
We use only strictly necessary cookies required for the Site to function, specifically:
- Authentication cookies: Session tokens managed by Supabase to keep you logged in.
We do not use analytics cookies, advertising cookies, or any non-essential cookies. As we only use strictly necessary cookies, no cookie consent banner is required under EU ePrivacy rules. Should this change in the future, we will update this policy and implement appropriate consent mechanisms.
10. Security
We implement appropriate technical and organizational measures to protect your personal data, including:
- Passwords are hashed and never stored in plaintext
- Email verification required before account activation
- Rate limiting on sensitive endpoints
- CSRF protection on form submissions
- Input sanitization and validation
- HTTPS encryption for all data in transit
While we strive to protect your personal data, no method of transmission over the Internet or method of electronic storage is 100% secure. We cannot guarantee absolute security.
11. Children’s Privacy
The Site is not intended for individuals under the age of 18. We do not knowingly collect personal data from children. If you are a parent or guardian and believe your child has provided us with personal data, please contact us and we will take steps to delete such information.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the “Effective” date. For significant changes, we may also notify you via email. We encourage you to review this Privacy Policy periodically.
13. Contact Us
If you have any questions about this Privacy Policy, your personal data, or would like to exercise your rights, please contact us:
Favonius Energy Inc.
Attn: Data Protection
8 The Green Suite A
Dover, Delaware 19901, USA
Email: joris@favoniusenergy.com
This Privacy Policy should be read together with our Terms of Use. In the event of any inconsistency between this Privacy Policy and the Terms of Use regarding the processing of personal data, this Privacy Policy shall prevail.
