Privacy policy

Bjet24 processes your personal data with care, in compliance with the GDPR and the Belgian law of 30 July 2018 on the protection of natural persons with regard to the processing of personal data.

Last updated: 30 April 2026

1. Data controller

The data controller is Espero-Soft Informatiques SRL, Rue de la Colonne 1A, 1080 Molenbeek-Saint-Jean, Belgique, BE 1033.022.383. For any question regarding your data, please contact our Data Protection Officer at info@espero-soft.com.

2. Data collected

When you use Bjet24, we collect the following categories of data:

  • Identification: first name, last name, email, phone number (optional).
  • Mailing data: sender and recipient address, mail type (standard, priority, registered, international), page count, selected options.
  • Uploaded documents: the letter files you entrust to us for printing and posting, encrypted at rest (AES-GCM).
  • Payment data: processed exclusively by Stripe; we never store your full banking data.
  • Postal proofs: photo / scan of the drop-off receipt, bpost tracking number for registered mail.
  • Technical data: IP address, browser type, connection logs (for security purposes).

3. Purposes and legal bases

  • Performance of the postal service: printing, postage, drop-off, tracking (Article 6.1.b GDPR — performance of the contract).
  • Retention of drop-off proofs and tracking numbers to meet postal and accounting obligations (Article 6.1.c GDPR — legal obligation).
  • Site security, fraud prevention, compliance audit (Article 6.1.f GDPR — legitimate interest).
  • Transactional communications regarding your mailing (confirmation, drop-off, tracking, delivery issue).
  • Anonymised, aggregated statistics to operate the service.

4. Recipients

Your data is never sold to third parties. It may be shared with:

  • bpost (postal operator) for drop-off, postage and delivery of the letter.
  • The secure print room, operating under a strict confidentiality agreement — access logged in an immutable audit trail.
  • Payment, hosting and encryption providers — processors bound by an agreement compliant with Article 28 GDPR.
  • Public authorities upon legal request.

5. Retention periods

  • Customer account: as long as the account is active, plus 5 years after the last mailing (civil prescription).
  • Uploaded documents: default 30 days after drop-off, extended up to 12 months for registered mail and items requiring legal proof.
  • Mailing metadata (addresses, type, options, drop-off proofs, tracking numbers): 7 years to meet postal and accounting obligations.
  • Technical logs: 12 months maximum.
  • Payment data: kept by Stripe according to its own rules.

6. Security

Uploaded documents are encrypted at rest (AES-GCM) with a key managed via a dedicated KMS service. Communications are protected by TLS. Access to sensitive data is restricted to authorised print-room personnel and tracked in an immutable audit trail.

7. Your rights

Under the GDPR, you have the following rights:

  • Right of access and to obtain a copy of your data.
  • Right to rectification of inaccurate data.
  • Right to erasure ("right to be forgotten"), subject to legal retention obligations.
  • Right to restriction of and objection to processing.
  • Right to data portability.
  • Right to lodge a complaint with the Data Protection Authority (DPA), Rue de la Presse 35, 1000 Brussels, contact@apd-gba.be.

To exercise these rights, write to info@espero-soft.com. You will receive an answer within one month.

8. Cookies

The Site uses cookies essential to the operation of the service. For more details, see our cookies policy.

9. Changes

This policy may evolve to reflect legal or technical changes. Material changes will be communicated to you by email.