Lastline and GDPR
CertReports found no public GDPR evidence for Lastline as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 8 Feb 2018
- Scope
- Purposes for processing personal data Carbon Black may process personal data collected in connection with its products and services for the purposes of: providing, operating, securing and supporting Carbon Black’s products and services; to adapt products and services to respond to new threats and develop new features, products or services; to participate in threat intelligence networks and conduct research and analysis; to provide customer support and to respond to requests, questions, and comments, to meet other obligations under contractual requirements with the Customers, to comply with legal or regulatory requirements and policies, to protect against criminal activity, claims and other liabilities; or as otherwise requested or consented to by Carbon Black’s customers; or to take actions necessary to protect and/or to defend Carbon Black’s rights and property; or to protect against misuse or unauthorized use of Carbon Black’s products and services. Types of personal data processed Personal data collected by Carbon Black can include the following user data: identity details online identifiers, binary files, file paths and file names and other data processed by Carbon Black by its product or service offering(s). We take care to ensure that your personal information to be accessed only by those who really need access in order to perform their tasks and duties, and to share with third parties who have a legitimate purpose for accessing it. Part III "How we share your information" of our Global Privacy Notice provides information about how we may share information with third parties.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Carbon Black, Inc.: Inactive | Live pagesha256 6c034a5781 |
- Kind
- listing
- Issued or listed
- 24 Apr 2018
- Scope
- In the course of providing advanced Malware and Breach Detection technology/services, a limited amount of personal data may be collected to determine whether malicious code is attached such as email/IP address. This data may be transferred to processing facilities within the continental United States. Also, we employ citizens of the EU states to perform critical roles in the region and process personal data for such business purposes on an 'as needed' basis.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Lastline, Inc.: Inactive | Live pagesha256 912fcba4a0 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is Lastline GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags) whose GDPR row is verified or vendor-stated, ranked by similarity.
No same-category vendor has GDPR evidence in the index yet.