Skip to main content

Backstory GDPR Compliance

Details about how Backstory complies with GDPR measures

Backstory drives transparency and alignment across go-to-market teams. This level of data transparency comes with a great responsibility to maintain the highest data privacy and security standards. With our laser focus on Security, Privacy Shield, and GDPR readiness, Backstory aims to strike the perfect balance between transparent communications and employee privacy.

With Backstory, you can trust that your data is secure and private where necessary.

How Does Backstory Execute GDPR Compliance?

Data Protection by Design and by Default (Article 25)

  • End-to-end encryption in transit

  • Encryption at rest across all data storage

  • Review of data sharing and processing agreements with all partner organizations to ensure compliance with the provisions of the GDPR

  • Exclusive use of AWS infrastructure for all data processing

Right to Data Portability (Article 20)

  • Easy user data export in-app (See: Export Activity Data)

  • Request user data export via Support

  • Export activity data via API

Right to Erasure (Article 17)

  • Also known as “Right to Be Forgotten”

  • Easy user data removal via Support

  • Delete activity data via API

Pseudonymisation (Article 5(c))

  • No PII (or) sensitive information in application logs

  • All PII (or) sensitive information has been pseudonymized

Breach Notifications (Article 33)

  • Early notification upon identification of a breach

  • Details about our commitments are outlined in our EUSA

  • FYI: There have been no recorded breaches to date.

Sensitive Content

Opt-Outs for All External Communications

  • All customers have the right and option to opt out of Backstory communications

Employee Training

  • Mandatory onboarding training on data protection, GDPR, and the rights and freedoms of data subjects

  • Quarterly engineering training on InfoSec and web application security

Learn More About GDPR

Check out more details about Backstory's security posture on our new Security & Privacy page.

Have questions about GDPR or data privacy? Let us know at support@backstory.ai.

Did this answer your question?