GDPR Compliance
The General Data Protection Regulation (GDPR) imposes strict rules on the processing and storage of personal data in Europe. Fransys is designed to help you meet these obligations.
What Fransys guarantees
Controlled data location
You explicitly choose the country and region where your data is hosted. No data is replicated or transferred to a region you haven't approved.
Compliant European providers
All providers available on Fransys (Hetzner, Scaleway, OVH, Outscale) are companies under European law, subject to GDPR and European regulations. They have their own certifications and compliance commitments.
No transfers outside the EU
Unlike US hyperscalers, your data is never subject to the Cloud Act or any other extraterritorial legislation. The data pipeline is entirely European: from source code to deployment, including storage and backups.
Encryption by default
All communications are encrypted via SSL/TLS. Sensitive data (credentials, environment variables) is stored securely.
Your responsibility
Fransys provides the compliant infrastructure — but the GDPR compliance of your application also depends on your own practices:
- Consent and collection — How you collect your users' data remains your responsibility
- Data processing — The processing you perform in your application must respect GDPR principles
- Right to be forgotten — Your application must be able to delete data upon request
Fransys gives you the compliant foundations — infrastructure, location, encryption. It's up to you to build an application that respects GDPR end to end.