Skip to main content

GDPR Compliance

The General Data Protection Regulation (GDPR) imposes strict rules on the processing and storage of personal data in Europe. Fransys is designed to help you meet these obligations.

What Fransys guarantees

Controlled data location

You explicitly choose the country and region where your data is hosted. No data is replicated or transferred to a region you haven't approved.

Compliant European providers

All providers available on Fransys (Hetzner, Scaleway, OVH, Outscale) are companies under European law, subject to GDPR and European regulations. They have their own certifications and compliance commitments.

No transfers outside the EU

Unlike US hyperscalers, your data is never subject to the Cloud Act or any other extraterritorial legislation. The data pipeline is entirely European: from source code to deployment, including storage and backups.

Encryption by default

All communications are encrypted via SSL/TLS. Sensitive data (credentials, environment variables) is stored securely.

Your responsibility

Fransys provides the compliant infrastructure — but the GDPR compliance of your application also depends on your own practices:

  • Consent and collection — How you collect your users' data remains your responsibility
  • Data processing — The processing you perform in your application must respect GDPR principles
  • Right to be forgotten — Your application must be able to delete data upon request

Fransys gives you the compliant foundations — infrastructure, location, encryption. It's up to you to build an application that respects GDPR end to end.