1. Controller
[COMPANY NAME], [STREET ADDRESS], [POSTAL CODE, CITY], [COUNTRY] ("we", "us") is the controller for personal data processed through this website and the GuardX services. Contact: [PRIVACY EMAIL].
2. Data we process
Account data (name, email, hashed password), billing data, and technical data required to operate a reverse proxy: IP addresses, request metadata (URL, headers, user agent), and security event logs. Traffic logs are retained for [RETENTION PERIOD] and then deleted or aggregated.
3. Purposes & legal bases
We process data to provide the contracted services (Art. 6(1)(b) GDPR), to secure our network and detect attacks (Art. 6(1)(f) GDPR — legitimate interest in network and information security), and to meet legal obligations (Art. 6(1)(c) GDPR).
4. Processors & transfers
We use the following categories of processors: hosting providers [LIST], payment providers [LIST], email delivery [LIST]. Data is processed in the EU; where transfers outside the EU occur, they are protected by Standard Contractual Clauses.
5. Your rights
You have the right to access, rectification, erasure, restriction, data portability, and objection, and to lodge a complaint with a supervisory authority. Contact [PRIVACY EMAIL] to exercise these rights.