GDPR Compliance Statement

GDPR Compliance Statement

Transfers2.com – General Data Protection Regulation (GDPR)

Effective Date

3 August 2026

Our Commitment

Transfers2.com is committed to protecting the privacy and personal data of all users. We process personal data in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and applicable European privacy legislation.

Privacy and security are fundamental principles of our service.

 

Data Controller

Transfers2.com is the data controller for personal data processed through its website and services.

For privacy-related questions, requests or complaints, please contact:

What Personal Data We Process

Depending on how you use our service, we may process:

  • Name (if voluntarily provided)
  • Email address
  • IP address
  • Browser and device information
  • Upload and download timestamps
  • File size
  • Transfer metadata
  • Security logs
  • Payment information (processed securely by our payment provider)

We do not inspect the contents of uploaded files unless legally required.

 

Purpose of Processing

We process personal data only for legitimate purposes, including:

  • Delivering file transfer services
  • Creating secure download links
  • Sending transfer notifications
  • Preventing abuse and fraud
  • Improving service reliability
  • Customer support
  • Legal compliance
 

Legal Basis

We process personal data under one or more of the following GDPR legal bases:

  • Performance of a contract
  • Legitimate interests
  • Compliance with legal obligations
  • Consent where required
 

Temporary File Storage

Transfers2 is designed for secure file transfer, not permanent cloud storage.

Uploaded files are stored only for the period necessary to complete the transfer or until the selected expiration period ends.

Files are automatically deleted after expiration.

 

Data Minimisation

We collect only the information necessary to operate our services.

We do not collect unnecessary personal information.

 

Security Measures

Transfers2 protects user data through appropriate technical and organisational measures including:

  • Encrypted HTTPS connections (TLS)
  • Encrypted storage where applicable
  • Access control
  • Firewall protection
  • Server monitoring
  • Rate limiting
  • Abuse detection
  • Regular software updates
  • Secure infrastructure
 

Data Location

All production systems are hosted within the European Union whenever possible.

We aim to ensure that personal data remains protected under European privacy legislation.

 

Third Parties

We share personal data only when necessary for providing our services, including:

  • Payment providers
  • Email delivery providers
  • Infrastructure providers
  • Legal authorities when legally required

All processors are required to comply with GDPR.

 

International Transfers

If personal data is transferred outside the European Economic Area (EEA), appropriate safeguards such as Standard Contractual Clauses (SCCs) or equivalent legal mechanisms will be applied.

 

User Rights

Under the GDPR, users have the right to:

  • Access personal data
  • Correct inaccurate information
  • Request deletion ("Right to be Forgotten")
  • Restrict processing
  • Object to processing
  • Data portability
  • Withdraw consent where applicable
  • Lodge a complaint with the relevant supervisory authority

 

Cookies

 

Transfers2 uses only cookies that are necessary for:

  • Login sessions
  • Security
  • Fraud prevention
  • Website functionality

Optional cookies (analytics or marketing) are used only after obtaining user consent where required.

 

Data Retention

Personal data is retained only as long as necessary to:

  • Deliver the requested service
  • Meet legal obligations
  • Resolve disputes
  • Prevent abuse

Expired transfers are permanently removed according to our retention policy.

 

Children

Transfers2 is not intended for children under the age required by applicable law, and we do not knowingly collect personal data from children.

 

Data Breaches

In the event of a personal data breach, Transfers2 will follow GDPR notification requirements and inform the relevant supervisory authority and affected users where legally required.

 

Privacy by Design

Privacy and data protection are integrated into the design and operation of the Transfers2 platform. New features are developed with security and privacy as standard principles.

 

Contact

For any GDPR-related questions or requests:

Privacy Officer

Email:info@transfers2.com

 

Our Promise

Transfers2 is committed to providing a secure, transparent and privacy-focused file transfer service that respects the rights and freedoms of every user in accordance with European data protection law.

We use cookies to personalize your experience. By continuing to visit this website you agree to our use of cookies

More