Work Services Pricing Process About Blog FAQ Start a project →

Privacy policy

Last updated: 24 April 2026

This policy describes how Mohamed Reda Hantout (hereinafter "we") processes personal data collected through the website hantout.be, in accordance with the General Data Protection Regulation (GDPR, Regulation EU 2016/679) and the Belgian Act of 30 July 2018 on the protection of natural persons with regard to the processing of personal data.

1. Data controller

In the absence of a mandatory Data Protection Officer (DPO), Mohamed Reda Hantout himself acts as the contact point for any question relating to the processing of personal data.

2. Data collected

2.1 Contact form

When you fill in the contact form, we collect:

2.2 Client and invoicing data

When you become a client, we process the data required for the performance of the contract and for legal obligations (invoicing, accounting): company name, enterprise number, VAT number, invoicing address, bank details if you pay by transfer, and the content of commercial exchanges.

2.3 Technical data (logs)

Our host (Hostinger) automatically records technical data in its access logs (IP address, browser type, timestamp, URL visited) for security, diagnostic and anti-fraud purposes. We do not use these logs for marketing.

2.4 Cookies and trackers

This website uses no advertising or analytics tracking cookies. Only technical local storage strictly necessary for the website to function is used (remembering that the cookie information banner has been dismissed). In accordance with Article 129 of the Belgian Act of 13 June 2005 transposing the ePrivacy Directive, consent is not required for strictly necessary trackers; for any other tracker added in the future, a consent banner will be displayed beforehand.

3. Purposes of processing

Your data is used solely to:

Your data is never sold or rented, and is not used for third-party commercial prospecting.

4. Legal bases

Each processing operation rests on an identified legal basis:

5. Recipients and processors

To provide our services, we use the following processors:

Each processor is contractually bound to confidentiality and GDPR-compliance guarantees within the meaning of Article 28.

6. Transfers outside the European Union

Where data is transferred to countries outside the European Economic Area (notably the United States), such transfers are governed by:

7. Retention periods

At the end of these periods, data is either erased or anonymised for statistical purposes.

8. Your rights

In accordance with Articles 12 to 22 of the GDPR, you have the following rights:

To exercise these rights, send your request by email to reda@hantout.be or by post to the registered office indicated above. A copy of an identity document may be requested in case of reasonable doubt about your identity, in accordance with Article 12.6 GDPR. Superfluous elements (photo, national number) may be masked.

You will receive a response within one month (extendable by two months for complex requests, with prior notice). This service is free of charge, except for manifestly unfounded or excessive requests.

9. Right to lodge a complaint

If you consider that the processing of your personal data does not comply with the regulations, you have the right to lodge a complaint with the Belgian supervisory authority:
Data Protection Authority (APD / GBA)
Rue de la Presse 35, 1000 Brussels
Phone: +32 (0)2 274 48 00 · Email: contact@apd-gba.be
Website: dataprotectionauthority.be

10. Automated decision-making and profiling

No processing based solely on automated decision-making producing legal effects or significantly affecting you is carried out on this website. No profiling is performed.

11. Cookies (summary)

Only technical local storage (localStorage) is used. See details in point 2.4. No third-party analytics or advertising cookies are set.

12. Security

We implement reasonable technical and organisational measures to protect your data: HTTPS/TLS connection, security headers (HSTS, CSP, X-Content-Type-Options), secure hosting, regular backups, restricted access to data. In the event of a data breach likely to result in a risk to your rights, we will notify the Belgian DPA within 72 hours in accordance with Article 33 GDPR, and inform you without delay if the risk is high (Article 34).

As no transmission over the Internet is absolutely secure, we cannot however guarantee absolute security.

13. Amendments

This policy may be amended at any time to reflect legal, regulatory or technical developments. Any substantial change will be flagged on this page. The version in force is the one accessible at this URL, on the date indicated at the top of the document.

Related documents: Legal notice · Terms and conditions.

← Back to home