Security, privacy, compliance

Security by design: encryption, GDPR and data in Europe

YouKont protects your contracts with TLS 1.2+ in transit and AES-256 at rest, hosts data exclusively in the EU, is GDPR compliant and provides DPA on request.

  • Data in EU
  • GDPR-ready
  • DPA on request
  • Zero AI training

End-to-end encryption

Data is protected at every stage: from rep's browser to server, from server to database, from database to backup.

TLS 1.2+ in transit

All communication encrypted. Auto-renewed certificates. HSTS active.

AES-256 at rest

Encrypted storage. Signed PDFs additionally app-level encrypted.

Daily backups

Encrypted backups, multi-version retention, tested disaster recovery.

Privacy and GDPR

We process your data as Data Processor under GDPR art. 28. We guarantee all data subject rights and provide operational tools to honor them.

EU-only data

European cloud infrastructure. No extra-EU transfers.

DPA available

Signable Data Processing Agreement for business and enterprise.

GDPR rights

Access, rectification, portability, erasure: all guaranteed from the panel.

72h breach notice

Documented and tested incident response procedures.

eIDAS and audit trail

Every signature collected with YouKont is a Simple Electronic Signature (SES) compliant with EU eIDAS Regulation 910/2014. The audit trail records all evidence needed to prove signature authenticity if challenged.

Full audit trail

Open, read, sign, IP, timestamp, document hash, signer identifier.

eIDAS compliance

SES under EU Reg. 910/2014, art. 25.

Document integrity

SHA-256 hash computed at signing, verifiable anytime.

AI and privacy

Your contracts and customer data are never used to train AI models. AI requests flow encrypted, LLM providers we work with have explicit no-training clauses.

Frequently asked questions

Related

Need the DPA?

For business and enterprise customers we send a signable Data Processing Agreement. Write to hello@youkont.com.

Start free trial