CorvinOS

GDPR Compliance

How CorvinOS implements GDPR and your data rights

✓ GDPR Certified

CorvinOS is fully compliant with the General Data Protection Regulation

Your Rights Under GDPR

CorvinOS recognizes and implements all rights granted to you under the General Data Protection Regulation (GDPR):

Right to Access (Article 15)

You have the right to request access to your personal data that we process. We will provide you with a copy of your data in a structured, commonly used format within 30 days.

Right to Rectification (Article 16)

You have the right to correct inaccurate or incomplete personal data. You can update your information directly through your account dashboard or contact us.

Right to Erasure (Article 17)

You have the right to request deletion of your personal data ("right to be forgotten"). We will erase your data within 30 days of your request, except where legally required to retain it.

Right to Restrict Processing (Article 18)

You can request that we restrict processing of your personal data in certain circumstances, such as when you contest the accuracy of the data.

Right to Data Portability (Article 20)

You have the right to receive your personal data in a machine-readable format and transmit it to another organization. We will provide this in an open, standard format within 45 days.

Right to Object (Article 21)

You can object to processing of your personal data for direct marketing purposes or based on our legitimate interests.

Data Processing Agreement

CorvinOS is ready to enter into a Data Processing Agreement (DPA) with enterprise customers. Our DPA includes:

  • Complete details of data processing activities
  • Appropriate safeguards and security measures
  • Subprocessor information and approval mechanisms
  • Data subject rights and assistance mechanisms
  • Audit and inspection rights

Data Protection by Design

CorvinOS implements privacy by design across all our services:

  • Pseudonymised audit chains to protect identity while maintaining accountability
  • Encryption of personal data in transit and at rest
  • Data minimization principles - we collect only what's necessary
  • EU-only data residency options to meet Article 14 requirements
  • Automated right-to-deletion processes (GDPR Art. 17 Erasure Orchestrator)

Breach Notification

In the unlikely event of a personal data breach, CorvinOS will notify you and relevant authorities within 72 hours as required by GDPR Article 33.

Data Protection Officer

Our Data Protection Officer (DPO) is available to address all GDPR-related questions and requests:

Email: [email protected]

Exercise Your Rights

To exercise any of your GDPR rights, please contact us at [email protected] with a clear description of your request.

← Back to Home

CorvinOS

[email protected]

Enterprise voice AI platform built for compliance

Product

  • Features
  • Pricing
  • Security

Resources

  • GitHub
  • Documentation
  • Blog

Legal

  • Privacy
  • Terms
  • GDPR
  • Refund Policy

CorvinOS · Apache-2.0 · EU AI Act 2026 · GDPR-aligned