Privacy Policy
Effective Date: 25th of August 2025
Jurisdiction: Netherlands & EU (GDPR)
1. Data We Collect
We collect the following personal data:
- Full name, email address, and billing address
- IP addresses and browser user agents
- Billing history (we do not store payment card details)
- VPS access logs (rotated every 30 days)
- Communications via email or support channels
2. Purpose of Processing
We process your data in order to:
- Provide and maintain our services
- Monitor for abuse and ensure infrastructure integrity
- Fulfil legal obligations, including tax and accounting requirements
- Communicate with you for support, updates, or critical notices
3. Data Retention Periods
- Billing data: 7 years (in accordance with Dutch tax law)
- VPS access logs: 30 days (for diagnostics and abuse detection)
- Deleted VPS snapshots: up to 72 hours post-deletion
- Support communications: 12 months after final ticket closure
4. Data Security Measures
We take technical and organizational measures to protect your data:
- HTTPS encryption for all control panel and billing interactions
- Role-based access control for internal systems
- Secure log rotation and automatic cleanup policies
- Regular internal audits and access reviews
5. Your Rights (under the GDPR)
You have the right to:
- Access your personal data held by us
- Request correction or deletion of your data
- Object to or restrict certain processing activities
- Request data portability in a machine-readable format
- File a complaint with a supervisory authority if you believe your data is mishandled
You can submit any privacy-related requests to privacy@algohosting.com.
6. Use of Subprocessors
We rely on carefully selected third-party processors to deliver our services. These include:
- Payment processors (e.g. Stripe, Mollie)
- Email delivery and support systems
- DNS, monitoring, and infrastructure platforms
All processors are bound by GDPR-compliant Data Processing Agreements (DPAs) and may only process your data on our behalf.
7. Cookies & Tracking
Algo Hosting only uses essential technical cookies for:
- Login sessions
- CSRF protection
- Load balancing and user state tracking
We do not use third-party analytics, marketing trackers, or fingerprinting technologies.
8. Data Transfers
All customer data is stored and processed within the European Economic Area (EEA). We do not transfer personal data to third countries outside the EU unless explicitly requested by the customer (e.g. domain registration).
9. Legal Basis for Processing
Our legal bases under the GDPR include:
- Contractual necessity: To deliver the services you purchase
- Legal obligation: To comply with tax, fraud, or audit requirements
- Legitimate interest: To prevent abuse, improve security, and ensure service availability
10. Updates to this Policy
This policy may be updated from time to time. We will notify active clients of material changes via email or control panel notification.
Last updated: 25th of August 2025