GDPR-Oriented Usage
HOVIGuard supports you in complying with the GDPR -- with technical and organizational measures.
Principles
- Transparency through audit trail
- Purpose limitation through configurable usage policies
- Data minimization through PII masking
Privacy by Design
- MultiLayer Data Shield as integral component
- PII detection enabled by default
- Privacy-friendly default settings
Data Processing
- Hosting DPA in Germany
- DPA with AI gateway in France
- Documented sub-processor chain
Security
- TLS 1.3 for all connections
- Multi-tenant isolation
- Regular security updates
Sources: GDPR (Regulation (EU) 2016/679) on EUR-Lex · Supervisory authority: Austrian Data Protection Authority (DSB)
Frequently asked questions about GDPR-oriented usage
Which GDPR tools does HOVIGuard offer?+
Typically: PII detection (regex and model-based), configurable masking before forwarding to AI models, audit logs of all data-modifying actions, tenant-isolated storage, a DPA per Art. 28 GDPR and a documented deletion/pseudonymisation process after contract end. These tools support your own compliance but do not replace it.
How are data subject rights (Art. 15-22 GDPR) supported?+
Within technical means: data export in JSON/ZIP format on request, audit trail for traceability, deletion in DB and backups within 30 days after contract end. Responding to access requests from end users remains the controller's (customer's) responsibility.
How is the DPA concluded?+
For standard tenants, the DPA available online at hoviguard.eu/en/avv is deemed accepted upon acceptance of the Terms of Service during registration/checkout. Enterprise customers may request a separately signable PDF version via datenschutz@hoviguard.eu.
What happens in case of a data breach?+
HOVIGuard notifies the customer of any personal data breach without undue delay, in any case within 72 hours of becoming aware (target ≤ 24 hours on business-day detection), in text form to the admin address registered in the tenant. The detailed process is documented in the incident response playbook.
Does HOVIGuard provide GDPR legal advice?+
No. For a binding assessment of your use case — particularly involving special data categories (Art. 9 GDPR), DPIA obligations or sector-specific rules — we recommend involving your data protection officer or qualified counsel.
