
UserGuiding and GDPR
CertReports found no public GDPR evidence for UserGuiding as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 3 Feb 2025
- Expires or valid through
- 8 Jan 2027
- Scope
- 1. Website Interaction: Purpose: Provide website features, enhance user experience, save preferences, advertise on other sites, and analyze traffic. Legal Basis: Legitimate interests, consent (for marketing). Consequences of Non-Consent: Limited website functionality and personalized experiences. 2.Account Creation and Login: Purpose: Enable account creation, login, service use, notifications, and collaboration. Legal Basis: Performance of a contract, legitimate interests (aggregate data analysis). Consequences of Non-Consent: Inability to create an account or use services. 3. Chrome Extension Use: Purpose: Create and share onboarding guides, receive feedback, and communicate with end-users. Legal Basis: Performance of a contract. Consequences of Non-Consent: Inability to create or share interactive content. 4. Interaction with Guides and Feedback via JavaScript Snippets: Purpose: Manage onboarding materials, communicate with users, troubleshoot, and secure the platform. Legal Basis: Performance of a contract. Consequences of Non-Consent: Subscribers cannot use the product. 5. User Analytics Feature: Purpose: Provide reports on end-user interaction with onboarding materials, monitor usage, and improve communication. Legal Basis: Performance of a contract. Consequences of Non-Consent: Inability to access analytics features or detailed interaction reports. 6. Data from Third-Party Sources: Purpose: Deliver targeted content, analyze service usage, and improve the product. Legal Basis: Legitimate interests (marketing), consent. Consequences of Non-Consent: Limited personalization and product improvement. 7. Subscriber Data: Purpose: Provide products/services, fulfill agreements, and communicate with subscribers. Legal Basis: Performance of a contract, legal obligations. Consequences of Non-Consent: Inability to provide services or communicate effectively. 8. Customer Support: Purpose: Troubleshooting, platform security, and improving user experience. Legal Basis: Performance of a contract. Consequences of Non-Consent: Reduced support efficiency and user experience. 9. Marketing and Social Media Interaction: Purpose: Targeted content, lead generation, product improvement, and customer engagement. Legal Basis: Legitimate interests (marketing), consent. Consequences of Non-Consent: Limited advertising and interaction analysis. 10. Internal Logs: Purpose: Fraud prevention, security, trend analysis, and demographic information gathering. Legal Basis: Legitimate interests. Consequences of Non-Consent: Reduced security and analytical capabilities.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | UserGuiding: Active: EU-US Certification, UK Extension Certification | Live pagesha256 0f679e75eb |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is UserGuiding GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the No-code and automation category) whose GDPR row is verified or vendor-stated, ranked by similarity.
No No-code and automation vendor has GDPR evidence in the index yet.