Data Protection
Aurelytix GmbH, headquartered in Hamburg, Germany, is committed to the highest standards of data protection under GDPR and the German Federal Data Protection Act (BDSG).
When you use Aurelytix, we act as a Data Processor on your behalf. Your data remains yours — we process it only according to your instructions and for the purposes of delivering our services. Data protection principles are embedded into our platform architecture from the ground up, not bolted on after the fact.
All customer data is processed and stored exclusively in German data centers within the European Union. Our infrastructure never routes data outside the EU. For any transfers involving third-party services, we ensure appropriate safeguards are in place in accordance with GDPR requirements.
We implement appropriate technical and organizational measures to protect your data. Bank-grade encryption, role-based access controls, multi-factor authentication, and continuous monitoring are built into every layer of the platform.
Data Processing Agreements
Available for all customers, outlining our obligations as a data processor including sub-processor management and breach notification procedures.
Regular assessments and training
Security assessments, compliance reviews, and employee data protection training conducted on an ongoing basis.
Data minimization
We follow strict data minimization and purpose limitation principles. Documented incident response procedures are in place.
We respect and support all data subject rights as defined in the GDPR. You have the right to access, rectify, erase, and port your personal data at any time.
Enterprise customers can request our Data Processing Agreement (DPA) which outlines our full obligations. Contact us at info@aurelytix.com or view our Privacy Policy.
Our team is here to help with any privacy or compliance inquiries.
Aurelytix GmbH · Fischertwiete 2, 20095 Hamburg, Germany