Data Protection

    GDPR Compliance

    Aurelytix GmbH, headquartered in Hamburg, Germany, is committed to the highest standards of data protection under GDPR and the German Federal Data Protection Act (BDSG).

    Our Commitment to Data Protection

    EU Data Residency

    All data processed and stored exclusively in German data centers within the European Union.

    Privacy by Design

    Data protection principles embedded into our platform architecture from the ground up.

    Enterprise Security

    Bank-grade encryption, access controls, and continuous security monitoring.

    Data Subject Rights

    Full support for access, rectification, erasure, and portability requests.

    How We Handle Your Data

    When you use Aurelytix, we act as a Data Processor on your behalf. Your data remains yours, and we process it only according to your instructions and for the purposes of delivering our services.

    Data Processing Agreements (DPA) available for all customers
    Transparent sub-processor list maintained and updated
    Regular security assessments and compliance reviews
    Employee data protection training program
    Documented incident response procedures
    Data minimization and purpose limitation

    EU Data Residency

    All customer data is processed and stored within the European Union. Our primary infrastructure is hosted in German data centers, ensuring your data never leaves the EU.

    For any transfers involving third-party services, we ensure appropriate safeguards are in place in accordance with GDPR requirements.

    Security Measures

    We implement appropriate technical and organizational measures to protect your data.

    Encryption

    Data encrypted in transit and at rest using industry-standard protocols

    Access Control

    Role-based access, multi-factor authentication, and audit logging

    Monitoring

    Continuous security monitoring and regular assessments

    Your Rights Under GDPR

    We respect and support all data subject rights as defined in the GDPR.

    Access

    Request copies of your personal data

    Rectification

    Correct inaccurate or incomplete data

    Erasure

    Request deletion of your data

    Portability

    Receive data in a portable format

    Data Processing Agreement

    Enterprise customers can request our Data Processing Agreement (DPA) which outlines our obligations as a data processor, including security measures, sub-processor management, and breach notification procedures.

    Questions About Data Protection?

    Our team is here to help with any privacy or compliance inquiries.

    Aurelytix GmbH · Fischertwiete 2, 20095 Hamburg, Germany