Trust & Security
Clear company identity, GDPR-ready contracting, selectable data regions, and practical security controls — without inventing certifications we do not hold.
What we offer
Legal entity, address, and contact details published for EU visitors — including a German Impressum.
View Impressum →Controller notice with legal bases, retention, transfer safeguards, and data-subject rights.
Privacy Policy →Article 28 Data Processing Agreement available for signature as part of customer contracting.
Request a DPA →Accept, reject, or manage analytics and marketing cookies — with a dedicated Cookie Policy.
Cookie Policy →Security practices
Security depth depends on the product and engagement. Typical controls for Prepseed-hosted platforms include:
Data residency
Hosting region is agreed per product or project. EU customers can select an EU cloud region (for example Frankfurt / eu-central-1) so primary application data and backups stay in the chosen region’s retention policy. India HQ does not mean India-only hosting.
Deploy to EU cloud regions when your contract and architecture call for it.
Where GDPR transfers apply, we use SCCs and DPA commitments — not vague “consent to India” alone.
As processor, we follow your documented instructions for location, retention, and deletion.
Subprocessors
Exact subprocessors depend on the product and region. Typical categories for Prepseed-hosted services:
A current subprocessor list for your engagement is provided with the DPA or on request at the privacy email.
Certifications
We do not display ISO 27001, SOC 2, or TISAX badges on this site. When a certification is completed, we will publish it here. Until then, rely on our DPA, security practices, and contractual audit rights.
Talk to us
Email is the preferred channel for German and EU procurement. WhatsApp remains available for fast follow-ups.