Skip to content

GDPR Compliance

cloak.business is fully compliant with the EU General Data Protection Regulation — processed in Germany with comprehensive protection measures.

GDPR Compliance Features

EU Data Residency

All PII processing and temporary storage happens on servers physically located in Falkenstein, Germany. It never crosses EU borders — no transfers to the US, UK, or any third country.

DPA Available

Data Processing Agreement available for all Business and Enterprise customers. The DPA covers sub-processors, information categories, retention periods, technical measures, and breach notification obligations.

Data Subject Rights

Full support for these rights: access, rectification, erasure, restriction, portability, and right to object. Requests processed within 30 days as required by Article 12 GDPR.

Data Export

Export your account information in JSON format at any time from Account Settings. Includes all presets, entity configurations, and processing history for the last 90 days.

Your Rights Under GDPR

Right to Access: Request a complete copy of all personal data we hold about you
Right to Rectification: Correct inaccurate information
Right to Erasure: Request deletion of your account and everything associated with it
Right to Portability: Receive it in a machine-readable format (JSON) for transfer to another service
Right to Object: Object to processing based on our legitimate interests
Right to Restrict: Limit how we use your information

Need a Data Processing Agreement?

Enterprise customers can request our standard DPA.