JUNIA

Privacy Policy

Updated: July 1, 2026

Subject

To ensure its proper functioning and enable it to fulfill its purpose, JUNIA is required to implement and carry out the processing of personal data relating to its prospects, applicants, graduates, students, employees, suppliers, and partners (including the employees of its prospects, suppliers, and partners).

The purpose of this privacy policy is to inform users of the JUNIA website of the conditions under which their personal data is collected and processed.

It has been established in accordance with Regulation (EU) 2016/679 of April 27, 2016 (GDPR) and the amended French Data Protection Act.

Data Controller

The data controller is:

JUNIA, a private higher education institution serving the public interest (EESPIG),
organized as an association governed by the law of July 1, 1901,
located at 2 rue Norbert Segard in Lille (59800),
Registered under SIRET number 783 707 003 00035,
Legal representative: Alexandre Rigal, Director General.
Contact email: communication@junia.com

Data Collected


Personal data refers to any information relating to an identified or identifiable natural person. JUNIA collects and processes personal data in connection with the provision of its website, its services, or communications regarding its services.

JUNIA collects only personal data that is adequate, relevant, and limited to what is necessary for the purposes for which it is processed.

Direct collection:
– when you log in to the JUNIA website (www.junia.com);
– when you download a brochure or request information;
– when you apply for and/or enroll in a program;
– during meetings at events (trade shows, forums, open houses, etc.);
– during visits to institutions;
– in the context of contractual or partnership relationships.

Indirect collection through:- our partners (such as organizers of in-person or virtual events);
– social media.

When using the website, the following categories of data may be collected.

The nature and amount of data collected vary depending on your relationship with JUNIA (prospects, applicants, students, employees, partners, alumni, others).

Identification

data: last name, first name;
email address;
home
address; phone number;
affiliated organization (if applicable);
date of birth;
nationality;
name and contact information of a person to contact in case of emergency (legal guardian for minors).

Communication

Data: content of contact forms;
requests for information, registrations, applications;
communications with the institution’s departments, including emails and interactions via online forms.

Browsing

data: IP address;
connection and log data;
pages viewed, user navigation history;
cookies and trackers.

Specific

data: Depending on the services used: academic data (degrees, level of education, etc.), application data, professional data (resume, etc.), event participation data, etc.

Purposes of Data Processing

Personal data is processed for specific, explicit, and legitimate purposes.

Each processing operation is based on a legal basis provided for in Regulation (EU) 2016/679 (GDPR).

The retention periods indicated constitute the main retention rules applied. Data is retained for no longer than is necessary for the purposes for which it was collected, subject to legal retention obligations or the need to defend JUNIA’s rights.

Beyond the specified retention period, your personal data will be deleted or anonymized when its retention is no longer necessary.

The table below outlines the main purposes of the processing activities carried out in connection with the website, their legal basis, and the associated retention periods.

Purpose of the processingLegal BasisShelf Life
Handling Information and Contact Requests  Legitimate interestDuring the processing of the request and for up to 3 years from the last contact
Management of applications submitted through PARCOURSUP or any other application method (training, hiring, internships)To take pre-contractual steps, to perform the contract, or to comply with a legal obligation, as applicableFor as long as necessary to process the application and thereafter in accordance with applicable legal requirements
Managing registrations for events, conferences, and training sessionsPerformance of the contract or legitimate interestUntil the event is completed and then archived, if necessary
Institutional communications and user information about activitiesConsent or legitimate interest, depending on the nature of the communicationUntil consent is withdrawn or 3 years after the last contact
Management and Improvement of Digital ServicesLegitimate interestLogs: as long as necessary for security purposes; Cookies: up to 13 months
Compilation of traffic and audience statisticsConsent or legitimate interest, depending on the tool usedA maximum of 13 months for cookies; statistics are retained in aggregated form whenever possible
Compliance with Legal and Regulatory RequirementsLegal RequirementIn accordance with the retention periods specified in the applicable regulations
Services Offered by the JUNIA Alumni AssociationLegitimate interest or consent, depending on the nature of the communicationsUntil consent is withdrawn or 3 years after the last contact


Recipients of the data


Depending on your profile, the recipients of your data may include:- JUNIA departments responsible for managing relationships with prospective students or applicants;
– departments responsible for managing relationships with partners;
– departments responsible for organizing events;
– educational, academic, and research departments;
– the administrative, accounting, legal, and human resources departments;
– the IT departments;
– the security and reception departments;
– professors and mentors/investors who advise on and fund projects;
– partner institutions within the framework of joint programs;
– the JUNIA Alumni association;
– student associations;
– the JUNIA Foundation;
– the relevant administrative authorities;
– JUNIA’s subcontractors.

The data is not sold for commercial purposes.

Outsourcing

Certain processing activities may be entrusted to external service providers acting under the instructions of the data controller and in accordance with contracts that comply with Article 28 of the GDPR.

These subcontractors are subject to strict obligations regarding confidentiality, security, and restrictions on data use.

Transfers Outside the European Union



Some technical service providers may be located outside the European Union.

In such cases, data transfers are governed by appropriate safeguards, including:- the European Commission’s standard contractual clauses;
– or an adequacy decision by the European Commission;
– or any other mechanism compliant with the GDPR.

Human Rights



In accordance with the GDPR and the French Data Protection Act, you have certain rights regarding your personal data.

You may exercise the following rights:- the right of access to view the personal data we process about you, obtain a copy of it, and receive information regarding how we process your data;

the right to object, allowing you to object to our processing of your data for the purposes you have communicated to us;

the right to rectification, allowing you to request that we correct and update your personal data;

the right to erasure, allowing you to request that we delete your personal data;

the right to restriction, allowing you to ask us to limit the processing of your personal data;

the right to data portability, allowing you to retrieve the data you have provided to us or to ask us to transfer it to a third party;

the right to provide instructions regarding the handling of your data after your death.

When processing is based on the legal basis of consent, you may also withdraw your consent.

You may exercise your rights by contacting our Data Protection Officer at the following email address: dpo.junia@cyrielle_junia

Or by writing to us at the following mailing address:
JUNIA – DPO – 2 rue Norbert Segard – 59800 LILLE (marking the envelope “Privacy – Data Protection”).

Please be sure to specify the right you wish to exercise.

To respond to your request, we may ask you to provide proof of identity.

Data Security

The data controller implements appropriate technical and organizational measures to ensure the confidentiality, integrity, availability, and resilience of systems and data.

Cookies and Trackers

Information regarding cookies and other trackers is detailed in the cookie policy available on the website.

Complaints

If you encounter any difficulties, you may file a complaint with the relevant supervisory authority:
CNIL – Commission Nationale de l’Informatique et des Libertés
https://www.cnil.fr

Policy Changes

This policy may be amended at any time to reflect legal, regulatory, technical, or organizational changes.

The current version is the one published on the website as of the date of access.