Privacy Policy
This Privacy Policy explains how Europavault Technologies (“Europavault,” “we,” “us,” or “our”) handles information when you use the Europavault service. It should be read together with our Terms of Use.
1. Overview
Europavault is built around a zero-knowledge, client-side encryption model. Our goal is to minimize the personal and sensitive data we can access. In most cases, we process account and operational data needed to run the Service, while the contents of your files and credentials remain encrypted in a form we cannot read.
2. Information We Collect
Depending on how you use the Service, we may collect the following categories of information:
- Account information — such as your email address and authentication credentials (stored in hashed form).
- Security information — such as two-factor authentication configuration and session-related data needed to protect your account.
- Service metadata — such as file display names you provide, file sizes, folder structure, upload timestamps, share-link identifiers, and storage usage necessary to operate the vault.
- Billing information — subscription status and payment-related identifiers. Payment card details are processed by our payment provider (Stripe) and are not stored by Europavault.
- Technical and usage data — such as IP address, browser type, device information, and logs related to service operation, security, and error diagnosis.
- Communications — information you send when you contact support or submit inquiries.
3. Information We Do Not Collect or Access
Because encryption occurs on your device before data reaches our servers, we do not have access to the plaintext contents of your stored files, credentials, encryption passwords, or share-link decryption keys.
Specifically, Europavault cannot:
- Read, decrypt, or understand what you store in your vault.
- Verify whether stored or shared content is lawful, accurate, or safe.
- Scan file contents for malware or prohibited material.
- Recover lost encryption passwords or decryption keys on your behalf.
If you lose your encryption credentials, your encrypted data may become permanently inaccessible, including to us.
4. How We Use Information
We use the information we collect to:
- Provide, maintain, and improve the Service.
- Authenticate users and protect accounts.
- Process subscriptions and billing.
- Enforce our Terms of Use and respond to abuse or legal requests, based on information available to us.
- Monitor performance, diagnose technical issues, and maintain security at the infrastructure level.
- Communicate with you about the Service, including important notices.
We do not sell your personal information. We do not use your encrypted vault contents for advertising or profiling, because we cannot access them.
5. Cookies & Session Data
We use cookies and similar technologies to maintain authenticated sessions, remember language preferences, and support core security features. You can control cookies through your browser settings, but disabling certain cookies may prevent you from using parts of the Service.
6. Third-Party Service Providers
We use trusted third parties to help operate the Service, including:
- Stripe — for payment processing. Stripe’s handling of payment data is governed by its own privacy policy.
- Infrastructure providers — for hosting, storage, and networking of encrypted data.
These providers process data only as needed to perform services on our behalf and are subject to contractual confidentiality and security obligations.
7. Data Retention
We retain account and service metadata for as long as your account is active or as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements.
Encrypted User Content remains stored until you delete it or close your account, subject to technical limitations and backup cycles. Deletion may not be instantaneous in all systems.
8. Security
We implement technical and organizational measures designed to protect the information we process, including encryption in transit, access controls, and infrastructure safeguards.
However, no method of transmission or storage is completely secure. We cannot guarantee that your information, encrypted data, or account will be immune from unauthorized access, loss, or alteration. You acknowledge that you provide information and use the Service at your own risk.
9. Your Rights & Choices
Depending on your location, you may have rights to access, correct, delete, or restrict certain processing of your personal information, or to object to certain processing. You may also have the right to lodge a complaint with a supervisory authority.
To exercise applicable rights, contact us through our contact page. We may need to verify your identity before responding. Note that we cannot decrypt or export vault contents you cannot decrypt yourself.
You may delete your account and associated data by contacting us or using account features where available.
10. International Transfers
Your information may be processed in countries other than your own. Where required, we implement appropriate safeguards for cross-border data transfers.
11. Children
The Service is not directed to children under the age of 16 (or the minimum age required in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us.
12. Changes to This Policy
We may update this Privacy Policy from time to time. The “Last updated” date at the top of this page will reflect the latest version. Material changes will be communicated as appropriate.
13. Contact
Privacy-related questions may be directed through our contact page.