Trust & Data Protection
Hosting built with privacy, security, and data control in mind.
Choose where your services run.
Select an available European or U.S. region for your service and its separate backup path.
Regional hosting can support data-location and privacy responsibilities, but server location alone does not create compliance.
Supporting your GDPR responsibilities
Designed to support GDPR responsibilities through regional choices, secure transport, controlled access, and separate backups.
Privacy practices for U.S. workloads
Designed to support applicable CCPA/CPRA requirements and broader U.S. privacy responsibilities without treating California law as a nationwide GDPR equivalent.
Protection across the stack
Each layer supports a different security responsibility; no single technology creates legal compliance.
Your backups shouldn’t depend on the server they protect.
Backups are stored separately from active service infrastructure and, where applicable, within the selected region.
Shared responsibility for data protection
CloudYork provides infrastructure and controls. Customers remain responsible for how their applications and organisations process personal data.
Privacy isn’t an add-on.
Practical controls are considered throughout service design and operation.
Hosting infrastructure is one part of compliance.
Regional hosting, HTTPS, DNSSEC, backups, and platform controls can support privacy and security responsibilities, but compliance also depends on how an organisation collects, uses, stores, shares, and deletes personal data.