WPEngine and GDPR
CertReports found no public GDPR evidence for WPEngine as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 1 Dec 2016
- Expires or valid through
- 7 Jul 2027
- Scope
- WP Engine provides managed hosting services to customers and collects personal data in order to administer customers hosting environments, provide support services, and process payments. The types of data collected by WP Engine include name, contact information, address, and billing information (except for full credit card numbers). As a managed hosting services provider, WP Engine may process additional personal information at the direction of its customers, but such additional personal information remains in the care, custody, and control of the customer requesting or facilitating its collection. WP Engine will only disclose personal information that it collects or processes to service providers that need to know such information in order to process it on WP Engine's behalf or to otherwise help provide the managed hosting services.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | WPEngine, Inc.: Active: SW-US Certification, EU-US Certification, UK Extension Certification | Live pagesha256 bc6f2d09de |
- Kind
- listing
- Issued or listed
- 23 Jun 2022
- Scope
- We collect the personal data (work email and contact information) of our clients in order to follow up with them. We never use or share the personal data that we collected in ways unrelated to our purpose of business without providing our clients the opportunity to opt-out or otherwise prohibit such unrelated uses.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | GPS Capital Markets, LLC: Inactive | Live pagesha256 e84e72d89e |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is WPEngine GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the Cloud and hosting category) whose GDPR row is verified or vendor-stated, ranked by similarity.