Your Data. Securely Protected.
Data protection and security are the foundation of our platform. We are GDPR compliant, host in the EU, and use state-of-the-art encryption.
GDPR Compliant
Fully compliant
EU Hosting
Frankfurt (AWS)
Encrypted
AES-256 + TLS 1.3
Responsible AI
Ethical principles
How We Protect Your Data
Security at every level — from infrastructure to application.
Data Encryption
All data is encrypted both in transit and at rest.
- TLS 1.3 for all connections
- AES-256 encryption for stored data
- Encrypted database backups
GDPR & Privacy
We are fully GDPR compliant and process data exclusively under European data protection law.
- Data processing per Art. 6 GDPR
- Data Processing Agreements (DPA) available
- Right to access, deletion and portability
EU Infrastructure
Hosted on AWS in Frankfurt (eu-central-1) — your data never leaves the EU.
- AWS eu-central-1 (Frankfurt)
- Automatic backups and redundancy
- No data transfer to third countries
Responsible AI
Our AI models are deployed responsibly — with clear ethical principles and transparency.
- Your data is never used for model training
- Transparent AI decision processes
- Human oversight on all results
Access Control
Strict access controls ensure only authorized individuals can access your data.
- Role-based access control (RBAC)
- Secure authentication
- Audit logging
Data Ownership
Your research data belongs to you — exportable at any time and fully deletable on request.
- Full data sovereignty
- Data export in standard formats
- Complete data deletion on request
Frequently Asked Questions
Where is my data stored? ▼
Is my data used for AI training? ▼
Can I have my data completely deleted? ▼
Do you offer DPA agreements? ▼
Security Questions?
Our team is happy to answer your questions about data protection and security.
security@cauliflower.ai