GDPR & Data Protection Compliance Statement
Visuan Web Services is committed to protecting the privacy, confidentiality, security, and integrity of personal data processed through our services.
As a provider of hosting, VPS, server, infrastructure, technical support, and related technology services, Visuan Web Services recognizes that customers may use our infrastructure to store or process personal data relating to their own customers, users, employees, or other individuals.
Our data protection framework is designed to support compliance with applicable requirements of the General Data Protection Regulation (EU) 2016/679 (GDPR) and other applicable data protection laws.
Our Approach to Data Protection
Visuan Web Services maintains policies, procedures, contractual controls, and technical and organizational measures intended to protect personal data against unauthorized access, alteration, disclosure, loss, destruction, or other unlawful processing.
Our approach includes:
- Appropriate technical and organizational security measures
- Access controls and administrative safeguards
- Server and infrastructure security
- Security monitoring and incident management
- Data retention and deletion procedures
- Data protection and privacy policies
- Subprocessor and vendor management
- Data processing agreements where applicable
- Procedures for responding to data protection requests
- Procedures for handling personal data incidents
- Assessment of applicable international data-transfer requirements
Controller and Processor Roles
Depending on the service and processing activity, Visuan Web Services may act as a data controller or data processor.
For example, Visuan Web Services may act as a controller for personal data that we process for our own legitimate business purposes, such as customer account administration, billing, contractual communications, support, and legal or regulatory obligations.
Where a customer uses our hosting or infrastructure services to store or process personal data on the customer’s behalf, Visuan Web Services may act as a processor, while the customer generally determines the purposes and means of processing.
The applicable roles and responsibilities should be determined based on the specific processing activity and contractual relationship.
Data Processing Agreements
Where Visuan Web Services acts as a processor and a Data Processing Agreement is required, we can enter into an appropriate DPA with the customer.
Our DPA addresses relevant matters including:
- Subject matter and duration of processing
- Nature and purpose of processing
- Categories of personal data
- Categories of data subjects
- Processing instructions
- Confidentiality obligations
- Security measures
- Subprocessor requirements
- Assistance with data subject rights
- Personal data breach assistance
- Data deletion or return
- Auditing and compliance information
Subprocessors
Where third-party service providers process personal data on our behalf, we maintain appropriate controls relating to such subprocessors.
Information concerning relevant subprocessors and their services may be made available through our Subprocessor List or upon appropriate customer request.
International Data Transfers
Where personal data is transferred outside the European Economic Area, Visuan Web Services assesses the applicable transfer requirements and appropriate safeguards.
Depending on the circumstances, applicable safeguards may include an adequacy decision, Standard Contractual Clauses, or another legally recognized transfer mechanism.
International data transfers are therefore assessed based on the specific processing arrangement, countries involved, service providers, and applicable legal requirements.
Security
Visuan Web Services applies technical and organizational measures appropriate to the nature and risks of the processing.
Depending on the service, these measures may include access controls, authentication mechanisms, network security, server hardening, security updates, monitoring, backup controls, incident management, and other appropriate safeguards.
Security measures may vary depending on the service, infrastructure provider, customer configuration, and risk profile.
Data Protection Requests
Individuals may have rights under applicable data protection laws, including rights relating to access, correction, deletion, restriction, objection, and data portability, subject to applicable legal conditions.
Where Visuan Web Services acts as a processor, requests relating to customer-controlled data may need to be directed to the relevant customer as the data controller.
Personal Data Incidents
Visuan Web Services maintains procedures for identifying, assessing, containing, documenting, and responding to personal data security incidents.
Where Visuan Web Services acts as a processor, applicable personal data breach notification obligations to the relevant controller will be handled in accordance with the applicable agreement and law.
GDPR Certification
Visuan Web Services does not represent itself as being “GDPR certified” unless it obtains a specific certification or accreditation that supports such a statement.
GDPR compliance is based on the organization’s actual processing activities, policies, contractual arrangements, technical and organizational measures, and ongoing compliance practices.
Accordingly, we do not use the term “GDPR certified” as a substitute for demonstrating our actual data protection practices.
Additional Information
Clients requiring additional assurance may request appropriate data protection documentation, which may include:
- Data Processing Agreement
- Technical and Organizational Measures
- Subprocessor information
- Data retention information
- International data-transfer information
- Relevant security and privacy documentation
Requests can be submitted through our designated data protection contact channel.
Visuan Web Services
Last Updated: 31st Aug 2026