
ExaVault and GDPR
CertReports found no public GDPR evidence for ExaVault as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 16 Feb 2017
- Scope
- As an online file hosting and sharing solution, we collect the actual contents of files and metadata about the files uploaded to your ExaVault account ("Customer Data"). Our customers or their users may be based in nonUS locations for these file transfer activities. Because the files are stored in the US, the Privacy Shield allows the transfer of these files between storage in the US and customers or users located in Privacy Shield-covered countries. We do not share the contents of files transferred as part of the ExaVault service with any third-party services. We collect information from those who communicate with us via e-mail or our website for example to ask a question about our product ("Correspondence Data"). We collect information provided by customers about themselves and their users, such as your name and email address provided during account registration, payment information, and the names and emails of users on your account ("Registration, Billing, and Administration Data”). ExaVault uses a third-party payment processor and Registration, Billing, and Administration Data will be sent on to such payment processor. Registration, Billing, and Administration Data will also be used to communicate with you regarding the Service. We communicate such things as announcements of new features, changes to Terms of Use/Privacy Policy, requests for feedback on the quality of the Service, information about pricing changes or systems outages, and other Service-related announcements. We may use a third-party service for purposes of sending these communications, and so names and email addresses that you provide us may be transferred to such a third-party service.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | ExaVault, Inc.: Inactive | Live pagesha256 5b7026c117 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is ExaVault GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the Cloud storage category) whose GDPR row is verified or vendor-stated, ranked by similarity.
No Cloud storage vendor has GDPR evidence in the index yet.