Skip to main content
Lumachain logo

Lumachain

GDPR evidence

lumachain.ioLast verified 17 Sep 2026
GDPR mark, CertReports state No public evidenceNo public evidence

Lumachain and GDPR

CertReports found no public GDPR evidence for Lumachain as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.

Evidence

ExpiredInactive
as of 17 Sep 2026 · confidence 100%
Kind
listing
Scope
The purpose of the processing of general personal data is the handling of all operations which concern the controller, customers, prospective customers, business partners or other contractual or pre-contractual relations between the named groups (in the broadest sense) or legal obligations of the controller, and to organize and provide business activities, business services and shared services to subsidiaries and employees working in group facilities and subsidiaries, including but not limited to HR and financial services, legal services, cybersecurity and IT security services, data hosting, application hosting, auditing, certification and other group related services, and to fulfill general business requirements. The types of personal data processed by our organization are customer data, data of potential customers, data of employees and data of suppliers. This data may be transferred or disclosed, where required, to public authorities (e.g., invoices to tax authorities if required for tax purposes), external bodies (e.g., to all companies published on our website in the list of (sub) processors, recipients in third countries and international organizations), further external bodies (e.g., lawyers, advisors, auditors, data protection officer), and other bodies (that are not processors, such as shipping and transport companies, banks etc.) and are subject to internal processing (processed by employees of Lumachain LLC), and intragroup processing (e.g., processed by employees of subsidiaries of Lumachain LLC and joint ventures). For applicant’s data, the purpose of data processing is to conduct an examination of the application during the recruitment process. For employee data, the purpose of data processing is the performance of the employment contract or compliance with other legal provisions applicable to the employment relationship (e.g., tax law) as well as the use of the personal data to carry out the employment contract concluded with the data subject (e.g., publication of the data subjects name and the contact information within the company or to customers). After termination of the employment relationship, the purpose of storing employee data is to fulfill the legal retention periods.
SourceCapturedQuoteLinks
Data Privacy Framework list
Official registry · HTTP 200
17 Sep 2026Lumachain LLC: Inactive
Live pagesha256 10ea977b62
What GDPR means, and what it does not

"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.

Read the GDPR guide and browse all vendors with evidence

Questions buyers ask

Is Lumachain GDPR compliant?

There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Alternatives with GDPR evidence

Similar vendors (shared product tags) whose GDPR row is verified or vendor-stated, ranked by similarity.

No same-category vendor has GDPR evidence in the index yet.