Skip to main content
Springshare logo

Springshare

GDPR evidence

GDPR mark, CertReports state No public evidenceNo public evidence

Springshare and GDPR

CertReports found no public GDPR evidence for Springshare as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.

Evidence

VerifiedActive: EU-US Certification, SW-US Certification, UK Extension Certification
as of 17 Sep 2026 · confidence 100%
Kind
listing
Issued or listed
1 Dec 2018
Expires or valid through
4 Sep 2027
Scope
Springshare provides SaaS tools to libraries and universities in the EU to help libraries engage with students and patrons. The personal data processed by our organization includes first and last name, email address, IP address, and sometimes a phone number and a physical address. In addition, our Customers (meaning the libraries and universities using Springshare software) may ask and collect additional personal data from their users using our software. The personal information collected, however, is not sensitive in nature (for example, no medical or clinical data). The data collected by our Customers from their users is strictly for the purpose of helping students complete the university course work. Regarding the type of third parties, Springshare uses Amazon AWS and all EU/European customer data is always stored on EU soil - in AWS Data Center in Dublin, Ireland. Springshare uses Mailgun for email data processing and Twilio for SMS processing.
SourceCapturedQuoteLinks
Data Privacy Framework list
Official registry · HTTP 200
17 Sep 2026Springshare LLC: Active: EU-US Certification, SW-US Certification, UK Extension Certification
Live pagesha256 ac2fc1e75e
What GDPR means, and what it does not

"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.

Read the GDPR guide and browse all vendors with evidence

Questions buyers ask

Is Springshare GDPR compliant?

There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Alternatives with GDPR evidence

Similar vendors (shared product tags or the Nonprofit and fundraising category) whose GDPR row is verified or vendor-stated, ranked by similarity.

No Nonprofit and fundraising vendor has GDPR evidence in the index yet.