Truth Technologies and GDPR
CertReports found no public GDPR evidence for Truth Technologies as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 2 Mar 2017
- Expires or valid through
- 27 Jan 2027
- Scope
- Truth Technologies may receive certain personal data relating to you from our clients in connection with providing Services. Such personal data may include biographical information, contact information, national identification number and other information that may be contained on an identification document, and other information our clients specifically provide to us on a case-by-case basis. We act as a data processor and process personal data based on the documented instructions of the relevant data controllers. Personal data sent to Truth Technologies by our clients is used exclusively for the purposes of providing the Services to our clients according to the terms of our service agreement with each such client. personal data provided to Truth Technologies in connection with the Services is not disclosed, transmitted, shared, rented or sold to any third-parties. We share personal data with our service providers who process personal data on behalf of Truth Technologies and who agree to use the personal data only to enable us to perform the Services for our clients. Our service providers include businesses that provide hosting services, cloud storage services and infrastructure services. We may disclose your personal data: (i) to the extent required by law or if we have a good-faith belief that such disclosure is necessary in order to comply with official investigations or legal proceedings initiated by governmental and/or law enforcement officials, or private parties, including but not limited to: in response to subpoenas, search warrants, or court orders, (ii) if we sell or transfer all or a portion of our company’s business interests, assets, or both, or in connection with a corporate merger, consolidation, restructuring, or other company change, or (iii) to our subsidiaries or affiliates but only if necessary for business and operational purposes. One of the main services Truth Technologies offers is an AML/KYC (anti-money laundering & know-your-customer) compliance solution. Data on individuals and corporations is obtained, (data including sanction lists, politically exposed person lists, and more) then our solution allows customers to perform due diligence and other screening activities to comply with regulations. Some of the data is publicly available, such as OFAC and sanction lists. Other data is provided to us by third-parties. The data provided by third parties includes information on individuals or companies if Public Domain Data indicates that there may be a risk of money-laundering, terrorist-funding, bribery, etc. Truth Technologies also provides enhanced due diligence solutions, which take a deeper dive into anyone that may be considered high-risk by the due diligence procedure performed. Customer/Client Data -We receive data from customers in order to perform enhanced due diligence reports. These reports include extensive background information on an individual or company. The reports may only be used for business purposes in fulfilling compliance with the customer's local legislation and regulations.Contractually, any data that we send to customers may not be shared with any third-party, unless for audit purposes. -We also receive the names, email addresses, and phone numbers of individuals that receive our services. This allows for us to setup user login information for our solution, as well as contact information to receive payment for services or to provide technical support for the solution. Visitor Data -We place cookies on devices that visit our website (if the visitor allows us to), please see our cookie policy here https://truthtechnologies.com/cookie-policy/
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Truth Technologies, Inc.: Active: EU-US Certification, UK Extension Certification, SW-US Certification | Live pagesha256 6f4211930e |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is Truth Technologies GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags) whose GDPR row is verified or vendor-stated, ranked by similarity.
No same-category vendor has GDPR evidence in the index yet.