Any problems? Call us on +32 2 880 05 50 (Belgium) or +33 1 82 88 72 87 (France)
background
EN
Cookies & Privacy
EN
Cookies policy v1.0
Mobile Application & Website | Version of April 24, 2026 1. Who are we?This policy applies to digital services operated by:
BePark SA — a Belgian public limited company, company number BE 0 661 532 170, located at rue du Mail 50, 1050 Brussels (Belgium), acting as data controller for Belgian and Luxembourg users;BePark SAS — a simplified joint-stock company under French law, acting as data controller for French users.
Hereinafter collectively referred to as “BePark”, “we”, or “our”. 2. What are cookies and trackers?A “cookie” is a small text file placed on your web browser when you visit a website. It allows storing information related to your visit (language, preferences, session).A “tracker” is a broader technology which includes, in addition to cookies, mobile device identifiers (Advertising ID on Android, IDFA on iOS), SDKs (software development kits) integrated into our mobile application, and any other method enabling the collection of information about your use of our services.In accordance with Regulation (EU) 2016/679 (GDPR) and ePrivacy rules transposed into Belgian law (Act of 13 December 2022) and French law (Data Protection Act and ePrivacy Directive), we distinguish two categories of trackers:
Strictly necessary trackers, placed without prior consent as they are essential for the functioning of the service or the performance of the contract;Marketing trackers, placed only after obtaining your free, informed, specific, and unambiguous consent.
3. Which trackers do we use?3.1 Essential trackers — no consent requiredThese trackers are strictly necessary for the operation of the application and the performance of your contract with BePark. They cannot be refused without making the service unusable.
Tracker / cookie nameProviderPlatformPurposeDurationLegal basis
Firebase Authentication TokenGoogle (Firebase)iOS, AndroidSession management and user authentication within the applicationSession duration + refresh token (configurable)Performance of a contract (art. 6.1.b GDPR)
Firebase Crashlytics SDKGoogle (Firebase)iOS, AndroidDetection and automatic reporting of application crashes to ensure service qualityUntil app uninstallationLegitimate interest (art. 6.1.f GDPR)
Firebase Cloud Messaging Token — Transactional notificationsGoogle (Firebase)iOS, AndroidSending essential push notifications: booking confirmation, reminders, payment or expiration alertsUntil uninstallation or permission revocationPerformance of a contract (art. 6.1.b GDPR)
Adyen SDK (card payment)Adyen N.V.iOS, Android, WebSecure processing of online card payments and fraud preventionTransaction duration + legal retention (7 years)Performance of a contract (art. 6.1.b GDPR)
GoCardless SDK (bank debit)GoCardless LtdiOS, Android, WebSecure processing of bank debits (SEPA Direct Debit) and bank details verificationMandate duration + legal retention (7 years)Performance of a contract (art. 6.1.b GDPR)
Session cookie (_session)BeParkWebMaintaining authenticated browsing session on the websiteSession (expires when browser closes)Performance of a contract (art. 6.1.b GDPR)
3.2 Marketing trackers — subject to your consentThese trackers are only activated after your explicit consent. You may accept or refuse each category independently and withdraw your consent at any time (see section 4).
Tracker / cookie nameProviderPlatformPurposeDurationLegal basis
Firebase Analytics SDKGoogle (Firebase)iOS, AndroidAudience measurement and user behavior analysis within the application (screens visited, actions performed, conversion funnels)Until uninstallation or consent withdrawalConsent (art. 6.1.a GDPR)
_gaGoogle Analytics 4WebWeb audience measurement, distinguishing and counting user sessions2 yearsConsent (art. 6.1.a GDPR)
_gidGoogle Analytics 4WebWeb audience measurement, distinguishing sessions over a 24-hour period24 hoursConsent (art. 6.1.a GDPR)
_ga_[ID]Google Analytics 4WebPersistence of Google Analytics 4 session state2 yearsConsent (art. 6.1.a GDPR)
Google Ads / Firebase Ads SDKGoogle LLCiOS, Android, WebAdvertising retargeting and measurement of conversions from Google Ads campaigns90 daysConsent (art. 6.1.a GDPR)
Firebase Cloud Messaging Token — Marketing notificationsGoogle (Firebase)iOS, AndroidSending marketing communications, promotions, special offers and re-engagement campaignsUntil uninstallation or consent withdrawalConsent (art. 6.1.a GDPR)
TypeformTypeform S.L.iOS, Android, WebDistribution of satisfaction surveys, polls, and user research formsSurvey duration + max. 1 yearConsent (art. 6.1.a GDPR)
4. How can you manage your preferences?4.1 In the mobile application (iOS and Android)Upon first use of the application, a consent screen allows you to accept or refuse marketing trackers. You can modify this choice at any time via:
Application settings → Privacy → Tracker management
For push notifications, you can also manage permissions directly in your device settings:
iOS: Settings → Notifications → BeParkAndroid: Settings → Apps → BePark → Notifications
4.2 On our website (bepark.eu)A consent banner (CMP) is displayed during your first visit. You can:
Accept or refuse all marketing cookies in one click;Modify your choices at any time via the “Manage my cookies” link in your account.
You can also control cookies via your browser settings. However, disabling certain cookies may affect website functionality. 4.3 Opt-out of Google ad personalizationGoogle allows you to control ad personalization via your Google account or via https://adssettings.google.com.You can also use the Google Analytics Opt-out browser add-on available at https://tools.google.com/dlpage/gaoptout. 5. Data transfers outside the European UnionSome of our service providers are located outside the European Union. In such cases, BePark ensures that appropriate safeguards are in place in accordance with Articles 44 to 49 of the GDPR.
Sub-processorCountrySafeguards
Google LLC (Firebase, Analytics, Ads)United StatesStandard Contractual Clauses (SCCs) adopted by the European Commission
Adyen N.V.Netherlands (EU)Processing within the European Economic Area — no transfer outside the EU
GoCardless LtdUnited KingdomEuropean Commission adequacy decision
Typeform S.L.Spain (EU)Processing within the European Economic Area — no transfer outside the EU
6. Retention periodThe retention periods applicable to each tracker are specified in the tables above. In general:
Essential trackers are retained for the time strictly necessary for service performance.Marketing trackers are retained until consent withdrawal or, at the latest, 13 months after placement.Mobile device identifiers can be reset at any time via your device privacy settings.
7. Changes to this policyBePark reserves the right to modify this policy at any time, in particular in the event of legislative or regulatory changes or the addition of new trackers.Any substantial change will be notified via the application or by email at least 30 days before it comes into force.The current version is always available in the application settings and on the footer of the website bepark.eu. 8. ContactFor any questions regarding this policy or to exercise your rights (access, rectification, erasure, objection, portability), you may contact us at:
BePark SA / BePark SAS E-mail: info@bepark.eu
You also have the right to lodge a complaint with the competent data protection authority:
Belgium: Data Protection Authority (APD/GBA)France: National Commission on Informatics and Liberty (CNIL)Luxembourg: National Commission for Data Protection (CNPD)
BePark SA / BePark SAS — All rights reserved — Version of April 24, 2026