GDPR

What is GDPR?

The General Data Protection Regulation (GDPR) is a privacy law in the European Union (EU) that grants EU citizens and residents the right to access and control their personal data.

Is Youform GDPR compliant?

Yes. Youform’s data centers and servers are located in Ireland (EU), and we fully comply with the GDPR framework.Here’s what we’ve implemented:
  • Our Privacy Policy explains what data we collect, how long we retain it, how it may be transferred, and your data protection rights.
  • All form data in Youform is encrypted both in transit and at rest, and securely stored within Europe.
  • You have full control over the data you collect, store, and manage through Youform.
  • We offer a Data Processing Agreement (DPA) for your convenience.Please check  Youform DPA here. 

Do you have a Data Processing Agreement?

By creating a Youform account and accepting our Terms and Conditions, professional users also agree to the terms of our Data Processing Agreement (DPA) on behalf of their company. No separate signature is required.

What happens with form data?

Youform provides the form-building service but does not own the responses collected through forms. The form creator is responsible for the data they collect and acts as the data controller for respondent information. Youform acts as the data processor, storing data on behalf of form creators.As long as your account remains active, you (the form creator) retain full control over the data you collect and how long you choose to store it.You can delete or export form responses from your account at any time if needed.We respect all deletion requests. Any form data you delete is permanently removed from our backups within 30 days.

How Youform uses my personal data?

Youform acts as a data controller for the personal information you provide to us in order to use our service (such as registration details).We do not sell personal data to third parties, nor do we use it for marketing or advertising purposes.We only share your information with trusted service providers who assist us in operating Youform, and these providers are required to comply with the GDPR framework.

Contacting Us About Data Privacy

If you have any questions about how we collect, use, or protect your personal data, you can contact our Data Protection Officer (DPO):
DPO Name: Abhishek ChakravartyEmail:  abhishek@youform.com 
We aim to respond to all inquiries within 3-4 business days.

Youform Subprocessors

Subprocessor
Purpose
Location
Link
Amazon Web Services (AWS)
Hosting and Storage
Ireland
Cloudflare
Security, Storage and CDN
Asia-Pacific (APAC)
Stripe
Payment Processing
USA
Simple Analytics
Analytics
EU
Sentry
Error tracking
USA
OhDear
Uptime monitoring
USA
Canny
Feedback management
USA
Mailgun
Emails
USA
OpenAI
AI services
USA
Laravel Forge and Envoyer
Server management & code deployment
USA
Papertrail
Log management
USA
IPInfo
For country detection from IP used in forms with phone input. (Optional and anonymous).
USA

Need a Data Processing Agreement (DPA)?