GDPR and security
Forms almost always collect personal data — names, emails, addresses, sometimes signatures. That is why Gatherino runs on servers inside the European Union, with encryption, daily backups and the tooling GDPR expects.
How data is protected
EU hosting
Data and backups stay on servers within the European Union (Germany).
Encryption
HTTPS in transit and encryption at rest. Access tokens are stored hashed.
Daily backups
Automated encrypted backups with restore capability.
Team roles
Permissions by role — owner, admin, manager, support, read-only. Access can be restricted to selected forms.
Change history
Responses show who changed a status and when. Sensitive actions are written to an audit log.
Your data stays yours
Export or delete it whenever you want. No advertising cookies, no data selling.
What helps with GDPR inside the form
- A consent field with formatted terms the respondent has to review.
- Anonymous mode — the form records no technical data about the submitter.
- Control over which technical details respondents see in their own portal.
- A search-engine visibility switch: new forms are not indexed by default.
- A respondent portal where people can view and download their own submissions.
Gatherino is a tool, not legal advice. The form operator remains responsible for what data is collected and on what legal basis; for sensitive processing we recommend consulting a lawyer.
FAQ
Where is form data stored?
On servers in the European Union (Germany), backups included.
Can I delete data at any time?
Yes, responses and whole forms can be deleted; deleted responses pass through a trash bin first.
Do you use advertising cookies?
No, neither the forms nor the Gatherino website use advertising cookies or third-party tracking.
How do I limit colleagues' access?
Through workspace roles and per-form restrictions, so a member only sees what they should.
Related
Try Gatherino for free
Free plan: 3 forms and 100 responses a month. No credit card, EU-hosted data.
Get started free →