Privacy policy
This policy covers only the Synapze Model Context Protocol connector served at mcp.synapze.eu. The Synapze CRM platform used by brokers is a separate service with its own, broader policy; nothing in that wider platform is reachable through this connector.
1. Who we are
The connector is published and operated by SYNAPZE SASU, SIREN 105 183 743, RCS Nanterre, France. Servers are located in France. For any data-protection request: rgpd@synapze.eu.
Synapze acts as a processor. The licensed broker selected by the user is the controller of any quote request routed to them.
2. Categories of personal data collected
The connector accepts only the fields an insurer needs to return a legal protection price:
- Age — a whole number of years, never a date of birth.
- Postal code — the French postal code used for territorial rating.
- Product requested — always legal protection, plus an optional formula level and the dispute areas of interest.
- Optional monthly budget — used to sort results.
- Technical data — timestamp, tool name and call duration, in service logs.
No name, e-mail address, phone number or postal address is requested by any tool. The connector identifies nobody: a quote request is anonymous.
3. Purpose of processing
- Return a list of licensed brokers matching a product and a location.
- Compute an indicative legal protection premium through the broker's partner insurers.
- Keep the service available and secure (technical logs).
4. Legal basis
Legitimate interest in answering a price request the user themselves initiated (GDPR Art. 6-1-f), and steps taken at the request of the user prior to entering into a contract (Art. 6-1-b).
5. Recipients
- The broker chosen by the user, whose system computes the quote.
- The partner insurers queried by that broker to price the product — currently Néoliane and SPVIE for legal protection.
- Our French hosting provider, for infrastructure only.
No data is sold, rented, or used for advertising or model training.
6. Retention
- Quote parameters: not stored by the connector. They are passed to the broker's system to compute a price and are not persisted here.
- Technical logs (timestamp, tool, duration): 30 days, then deleted.
- Any record kept by the broker afterwards falls under that broker's own policy, as controller.
7. What this connector never collects
- No health data of any kind, and no medical questionnaire. Health-related insurance products are not available through this connector at all.
- No social security or government identification number.
- No payment card or banking data. No transaction is possible through the connector.
- No biometric data, and no identity document of any kind.
- No name, contact details or any other directly identifying information.
These categories are refused by design: the tool schemas have no field able to carry them, and any product family outside legal protection is rejected before any network call is made.
8. Your rights
Under the GDPR you may request access, rectification, erasure, restriction, portability, or object to processing. Write to rgpd@synapze.eu. Because a quote request carries no identifier, we may be unable to link a past request to you; requests concerning data held by a broker should be addressed to that broker, who is the controller.
You may also lodge a complaint with the CNIL, the French data-protection authority (cnil.fr).
9. Changes
Any change to this policy is published on this page with an updated date. Material changes to what the connector collects are reflected in the tool schemas at the same time.