Data protection at Resenty

GDPR, by design

Resenty is built to hold as little personal data as possible, for as short a time as possible. This page says plainly what we keep, where it lives, and how to get it back or gone.

Hosted in the EU — Germany Results deleted after 30 days Delete your account yourself

Your rights, built in

Not a form to fill in and wait on — each of these is a control inside your account.

View and export your data

Everything tied to your account — profile, plan and invoices, validation activity — is visible in the dashboard and exportable as a file you keep.

Settings › Your data › Export

Delete your account entirely

Self-service, in the app, immediate. Your personal data and validation results are erased. Financial records we're required by law to keep are anonymised, so they can never identify you again.

Settings › Your data › Delete account

Choose what email you receive

Service email — receipts, security notices, list-finished alerts — comes with the account. Product news and tips are opt-in, and switchable off any time.

Settings › Notifications
AS A DATA PROCESSOR

The lists you upload aren't ours to keep

An address in your list belongs to a third party — a subscriber, a lead, a customer of yours. Under GDPR you are the controller of that data and we are the processor. We validate it on your instruction, hand back the result, and then let it go.

Validation results are retained 30 days so you can re-download or re-sync them. After that, automated retention jobs delete them — no one has to remember to.

Never sold. Not to data brokers, not to anyone.
Never shared between accounts, and never merged into a shared pool.
Never used for anything except returning your results.
No email is ever sent to an address we validate.
LIFE OF AN UPLOADED LIST
1
List arrives
Uploaded or sent to the API over an encrypted connection.
2
Checks run
Syntax, domain, mailbox and risk signals — no message is sent.
3
Results are yours
Download or sync them back to your tools whenever you like.
Day 30 — purged
Automated retention jobs delete the results. Nothing is archived.

Infrastructure

Where the data sits, and how it travels.

EU hosting, in Germany

Our servers and databases run in Germany. Personal data stays inside the EU.

Encrypted in transit

Every connection to Resenty — app, API, integrations — is encrypted with TLS.

Encrypted off-site backups

Backups are encrypted and stored off-site, so a lost server never means lost data.

We don't display certification badges we haven't earned. If your review process needs a signed data processing agreement or a written answer on sub-processors, email us and we'll send it.

Ask us anything about your data

Access, correction, export, deletion, or a question about how a check works — write to us and a person on the team answers. We answer data requests within one month, as the GDPR requires.

privacy@resenty.io

Also see our Privacy Policy and Terms. Last reviewed August 2026.