Privacy, Compliance & Legal Safeguards
AIDG Coworker is built for European businesses. Fully GDPR-compliant, EU-hosted, with complete audit trail.
What data do we use?
• Your chats, uploads, and notes (for AI processing only) • Usage data (for billing & rate limiting) • Anonymous telemetry (app crashes, performance)
What we do NOT collect
How do we protect your data?
✅ End-to-end encryption (TLS 1.3+) ✅ EU-hosted (Netherlands, GDPR region) ✅ No third parties (no Google Analytics on portal) ✅ Full audit trail (who, what, when) ✅ Annual penetration tests & compliance checks ✅ GDPR Data Processing Agreement available
Your data rights
You have rights to: (1) access your data, (2) correct it, (3) delete it, (4) export it. Deletion is permanent.
How to exercise your rights
- Email privacy@aidg.nl with "GDPR Right: [Access/Deletion/Export]".
- We respond within 30 days.
- Deletion is permanent.
Complaints & escalation
Privacy questions: privacy@aidg.nl GDPR complaint: contact your local authority (e.g., Irish Data Protection Commission)
Data Processing Agreement (DPA)
For businesses requiring contractual data processing oversight we provide a standard GDPR DPA.
Security measures
| Measure | Details |
|---|---|
| Encryption | TLS 1.3+ in transit, AES-256 at rest |
| Hosting | TransIP (Netherlands), GDPR region |
| Audit trail | Complete logs of who, what, when |
| Testing | Annual pentests & compliance checks |
| Third parties | No Google Analytics, Facebook pixels or tracking |
Data retention
- Chats/uploads: until you delete them or close your account.
- Billing data: 7 years (legal requirement).
- Audit logs: 2 years (compliance).
- After deletion: 30-day backups, then permanently removed.
Questions or a complaint?
Privacy questions:
privacy@aidg.nl
GDPR complaint (escalation):
Autoriteit Persoonsgegevens (AP)