Dedizone / Legal
Privacy Policy.
Effective July 21, 2026
01The short version
We collect the minimum needed to rent you a server: an email address, your order configuration, and payment state. No identity documents, no phone number, no advertising trackers, no third-party analytics. Machines and data live in Europe, in the jurisdiction you pick.
02What we store
- Order data — email, optional company name, server configuration, hostname and SSH public key if you provide them, order status and term dates.
- Payment data — the crypto asset, deposit address, amounts and payment status for each order. We never see or store private keys, and we don't know your wallet beyond what is visible on-chain.
- Technical logs — the IP address and user-agent that placed an order or quote request, standard web-server logs (rotated), and support correspondence you send us.
- Nothing else. No cookies beyond what PHP strictly needs (our public pages set none), no fingerprinting, no analytics scripts, no ad pixels.
03What we never require
No KYC: we do not ask for identity documents, selfies, phone verification or company registries. A reachable email address is the entire identity requirement. Invoices can carry whatever company name you give us.
04Your server's contents
Your disks are yours. We do not access, scan or index the contents of customer servers in normal operation. Intervention happens only when you request support, or under the abuse process described in the AUP, or where the law of the server's jurisdiction compels us — in which case we disclose only what we actually hold, which is little (see 02).
05Retention
- Order and payment records — kept while the service is active, then 24 months for accounting, then deleted.
- Web-server and application logs — rotated within 30 days.
- Wiped servers — disks are securely erased before hardware returns to stock (see Terms §04).
- Quote requests that never become orders — deleted after 6 months.
06Sharing
We use a payment orchestration service to generate deposit addresses and observe on-chain settlement; it receives the order amount, the chosen asset and the paying IP — never your email. We do not sell or share data with anyone else. Data-centre operators provide space and power; they have no access to our systems or your data.
07Your rights (GDPR)
You may request access, correction, export or deletion of the personal data we hold about you from your client area, or through the contact published in our WHOIS / RIPE registry records. Deletion is honoured immediately except records we must keep for accounting, which are deleted at the end of their statutory period. You may lodge a complaint with your local supervisory authority.
08Changes
Changes to this policy are posted here with a new effective date. We don't water it down retroactively: data collected under this policy stays governed by it.