Privacy Policy
Last updated: August 22, 2026
1. Who is responsible for your data
CitiFex connects service providers with the people looking for them. To make that work, the platform records information about you. This policy explains what we record, why, for how long, and what you can demand from us at any time.
CitiFex publishes the site citifex.com. We decide what data is collected and what it is used for, which makes us the data controller. You can write to us at citifex@gmail.com.
No data protection officer has been appointed. Your requests are handled directly at that address.
This policy covers the whole of the CitiFex site and services. It is written to be understood: if any passage seems unclear, write to us and we will rephrase it.
2. The data we collect
Here is the full list of what the platform records, grouped by where it comes from.
When you create your account:
- email address, username and display name;
- password: we never keep the text itself, only an irreversible cryptographic fingerprint;
- first name, last name, date of birth and gender, if you provide them;
- city, country and language;
- profile picture, if you add one.
If you sign up with Google, we receive three things from Google and nothing more: a stable technical identifier, your email address together with confirmation that it has been verified, and your name. We do not retrieve your Google profile picture, your contacts, or any content from your Google account. No password exists for this type of account.
If you are a provider, your business page adds:
- business name, tagline, year you started trading and description;
- business address, phone numbers, business email and links to your social profiles;
- opening hours, availability and how you work: on site, remotely or travelling to the client;
- legal status, tax identifier and insurance, if you provide them;
- services offered, prices, past work and certifications.
What you publish and exchange:
- posts, comments, reviews, recommendations and job applications;
- photos, videos and audio files you upload;
- private messages and their attachments;
- reports you file, messages sent through the contact form, and bug reports. The latter include technical information about your browser and, if you attach one, a screenshot.
What your activity generates automatically:
- profile and post views, clicks on contact buttons, bookmarks, follows;
- searches run on the platform: the words you type, how many results came back, and which results you click;
- a history of changes to your profile: which field, the old and new value, the date and the IP address;
- the date of your last visit.
Technical data:
- IP address, device type, browser and operating system;
- web server logs: pages requested, timestamp and response code.
Finally, if you accept measurement cookies, we record how you move around the site. That collection only starts with your consent and stops if you withdraw it; it is detailed in section 10.
We do not collect sensitive data within the meaning of Law 09-08 — origin, political opinions, religious beliefs, health, sex life — and we ask you not to publish any.
3. Your location: city or exact address
Location deserves a section of its own, because the platform handles two levels of precision whose consequences are not remotely the same.
City level. When you pick your city, we record its name and a reference from OpenStreetMap. This is the level used everywhere by default: on your public profile, in search results and on maps, what is shown is the centre of the city, never your home.
Exact address level. This only concerns providers who enter a business address: we then keep that address and its GPS coordinates.
What the public actually sees. If you are a provider and you have entered a business address, it is shown on your public profile as long as the "show exact address" option is on — and that option is on by default. You can switch it off at any time under Settings, Availability: your profile then falls back to city level. If you work without fixed premises, the "I travel to clients" option avoids recording any coordinates at all.
What we do not do: we never turn on continuous geolocation on your device, and we do not track your movements.
One technical point that concerns you: when you type a city name into a search field, it is your browser that queries OpenStreetMap's Nominatim service directly. That service therefore sees your IP address and what you typed, without going through our servers. We cache the results to limit those calls.
4. What we do with this data
Every piece of data we collect serves a specific purpose:
- running your account: signup, login, sessions, email verification, password reset;
- displaying your profile and your posts, and letting other members find you;
- powering search and suggestions, including search by geographic proximity;
- enabling exchanges: messaging, reviews, recommendations, introductions;
- computing the figures shown publicly — average rating, number of reviews, response time — and the statistics on your provider dashboard;
- protecting the platform: rate limiting, detection of fraudulent accounts, moderation of reported content, logging of administrative actions;
- sending you the emails the service requires: verification, password reset, notifications you have chosen to receive;
- understanding how the site is used so we can improve it, if and only if you have accepted audience measurement.
We display no advertising on the platform and we neither sell nor rent your data. However, if you accept measurement cookies, the Meta pixel passes some of your actions to Meta, which lets us measure our campaigns and may feed that company's advertising audiences. This is explained in section 10.
No decision producing legal effects concerning you is taken automatically.
5. On what legal basis
Moroccan Law 09-08 on the protection of individuals with regard to the processing of personal data, and the European GDPR where it applies — in particular if you live in the European Union — require every processing operation to rest on an identified legal basis. Ours are:
- performance of the contract between us, namely the terms of use: account, profile, posts, messaging, search and introductions;
- your consent: audience measurement, the Meta pixel, displaying your exact address, and information emails that are not essential to the service. You can withdraw it whenever you like, without calling into question what was done before the withdrawal;
- our legitimate interest: platform security, fraud and abuse prevention, technical logs, internal statistics on searches performed. That interest is balanced against your rights and freedoms, and you may object to it on grounds relating to your situation;
- compliance with our legal obligations: retaining certain data and responding to requests from the competent authorities.
6. How long we keep your data
We do not keep anything indefinitely "just in case". The periods we apply are:
- account and profile data: for as long as your account exists;
- deactivated account: your data stays intact and your profile disappears from search; you can reactivate whenever you want;
- deleted account: you have 30 days to change your mind. After that, a daily automated process anonymises your account permanently;
- sessions: the login token lasts 15 minutes, the renewal token 7 days;
- web server logs: 14 days;
- application logs: a few days, by automatic rotation;
- encrypted database backups: 7 days on the server, 30 days in remote storage. Deleted data may therefore survive in backups for up to 30 days before disappearing completely;
- contact form messages and bug reports: for as long as it takes to handle them, then archived;
- the log of administrative actions: kept without time limit, because it serves as evidence in the event of a dispute or an audit.
What deleting your account actually erases: your email address, your username, your display name, your first and last name, your picture, your bio, your password, and the link to your Google account. Your profile is removed from search and your sessions are closed.
What it does not erase, and you should know this before asking: the posts, comments, reviews and messages you left stay online, but attached to an anonymous account labelled "Deleted account", with no link to your identity. This keeps conversations and the reviews other members received coherent. If you want specific content gone, delete it before deleting your account, or ask us to do it.
7. Who has access to your data
Other members, first. Your profile is public: display name, username, picture, bio, city, and for a provider the whole business page. Your posts and reviews are public. Your private messages are visible only to the people you write to. Your email address, your date of birth and your login information are never displayed.
Our team, next, strictly within what is necessary: handling a report, answering a support request, investigating abuse, or meeting a legal obligation. Private messages are not end-to-end encrypted: they are technically readable on our servers, and are only consulted in the cases just listed. Every administrative action is logged.
The technical providers that process data on our behalf:
- OVH — hosting the server and storing your photos, videos and audio files;
- Resend — sending the service's emails: address verification, password reset, notifications;
- Google — authentication, only if you choose to sign in with Google;
- Meta — measurement pixel, only if you have accepted measurement cookies;
- MapTiler — map backgrounds: your browser contacts this service to display map tiles;
- OpenStreetMap — city search: your browser contacts this service directly, and it sees your IP address and what you typed;
- logo.dev — displaying brand logos in certain forms, called by your browser;
- Brevo — sending our email information campaigns; recipient addresses are imported into it as contact lists.
Two operations deliberately stay with us: the search engine runs on our own server, so none of your content is sent to an external engine; and approximate location from an IP address is computed on our server using a locally installed database, so your IP address is not sent to anyone for that purpose.
Finally, we may pass data to an administrative or judicial authority where the law requires it, or to establish, exercise or defend a legal claim. We do not sell your data to anyone.
8. Where your data is stored, and transfers outside Morocco
CitiFex is a Moroccan platform, but its infrastructure sits in France: the server is hosted in Strasbourg and your photos, videos and audio files are stored in Gravelines, with OVH. All of your data is therefore processed outside Morocco, within the European Union.
In addition, some services called directly by your browser may process data outside the European Union, in particular in the United States: Google for authentication, and Meta for the measurement pixel if you accepted it. Those transfers rely on the contractual safeguards published by those companies.
9. Your rights, and how to exercise them
Law 09-08 and, for residents of the European Union, the GDPR give you the following rights:
- access: to know whether we process data about you and to obtain a copy of it;
- rectification: to correct anything inaccurate or incomplete;
- erasure: to delete your account and your data, within the limits described in section 6;
- objection: to refuse processing based on our legitimate interest, on grounds relating to your particular situation;
- restriction: to ask that processing be frozen while something is verified;
- portability, for processing covered by the GDPR: to receive the data you provided to us in a machine-readable format;
- withdrawal of consent: at any time, in particular for audience measurement;
- post-mortem instructions: to tell us what should happen to your data after your death.
A great deal requires no request at all and takes effect immediately: editing your profile, deactivating your account, asking for its deletion, removing your profile from search results, hiding your exact address, or changing your cookie choice.
For everything else, write to us from the Contact page describing your request. We may ask for proof of identity where there is reasonable doubt about who is asking. We reply within one month of receiving your request at the latest; if your request is complex, we will tell you and explain why.
If our answer does not satisfy you, you may refer the matter to the CNDP, whose contact details are on www.cndp.ma. If you live in the European Union, you may also refer it to your country's data protection authority.
11. How we protect your data
The measures in place, concretely:
- all communication with the site goes over an encrypted connection, enforced by a permanent redirect;
- passwords are never stored in clear text: we keep only an irreversible fingerprint;
- login tokens are placed in cookies that page scripts cannot read, which limits session theft;
- the database and the search engine are not exposed to the internet: they can only be reached from the application server;
- server access is restricted to a small number of people, by cryptographic key rather than password; a firewall opens only the strictly necessary ports;
- database backups are encrypted before being sent to non-public storage;
- IP addresses recorded with search statistics and contact forms are converted into irreversible fingerprints. Those kept in the profile change history and in the administration log are stored in clear, because they serve as evidence in the event of a dispute;
- administrators' actions are logged, and that log cannot be erased.
Since no system is infallible, we cannot guarantee absolute security. In the event of a data breach likely to create a risk for you, we will inform you and notify the CNDP in accordance with the applicable rules.
12. Minors
CitiFex is for adults only. Our terms of use require you to be 18 or over, or to have reached the age of majority in your country of residence. The platform is not aimed at minors and we do not seek to collect data about them.
If we learn that an account was opened by a minor, we close it and delete the associated data. If you are a parent or guardian and believe this has happened, tell us from the Contact page: these requests are handled as a priority.
13. Changes to this policy
This policy will change as the platform does: a new feature, a new technical provider, a change in the law. The date of the last update is shown at the top of this page; that is the marker to check.
Where a change is significant — adding a new purpose or a new recipient, for instance — we will tell you before it takes effect, through a message in the app or by email. If the change rests on your consent, we will ask you again, and you will remain free to refuse.
Earlier versions of this policy can be provided on request.
14. Contact us
For any question about this policy, to exercise your rights, or to report a problem concerning your data, write to us at citifex@gmail.com. You can also use the Contact page.
You may also contact the National Commission for the Control of Personal Data Protection (CNDP), whose details are on www.cndp.ma.