Compliance

Last updated: 18 June 2026  ·  Enterprise edition

Overview

Landvex AB processes enterprise client data in accordance with EU and applicable national data protection law. This page summarises our compliance posture for enterprise procurement, legal, and data governance teams. For formal documentation, contact compliance@landvex.com.

GDPR — EU 2016/679
Data minimisation
Landvex collects and processes only the personal data necessary for the specific purposes agreed in the enterprise service contract. No personal data is used for secondary purposes without a distinct legal basis.
EU data residency
All enterprise client data is stored and processed on AWS infrastructure in Stockholm (eu-north-1). No data is transferred outside the European Economic Area without appropriate safeguards, including Standard Contractual Clauses where required.
Data Processing Agreement
A Data Processing Agreement compliant with GDPR Art. 28 is available to enterprise clients. Landvex acts as data processor for intelligence outputs delivered under contract. To request a DPA: privacy@landvex.com.
Data subject rights
Rights of access, rectification, erasure, portability, restriction, and objection are supported. Enterprise clients seeking to exercise rights on behalf of data subjects should contact privacy@landvex.com. Requests are acknowledged within 5 business days.
Infrastructure Compliance
AWS SOC 2 Type II
Landvex runs on Amazon Web Services infrastructure, which maintains SOC 2 Type II certification. AWS compliance reports are available via AWS Artifact. Landvex application-level SOC 2 is planned.
ISO 27001 (infrastructure)
AWS eu-north-1 infrastructure is ISO 27001 certified at the infrastructure level. Landvex operates within this certified environment. Enterprise clients may request AWS certification documentation.
EU-north-1 — Stockholm
All Landvex services run exclusively in AWS eu-north-1 (Stockholm, Sweden). Data never leaves the EU during ordinary processing. Cross-region failover, where used, remains within the EEA.
Security Questionnaires
5-business-day SLA
Landvex responds to enterprise security questionnaires and vendor assessment forms within 5 business days. We support standard questionnaire formats including CAIQ, SIG Lite, and custom procurement forms.
Dedicated compliance contact
For security questionnaires, DPA requests, and compliance documentation: compliance@landvex.com
Related Documents
GDPR Art. 28 DPA and Standard Contractual Clauses for enterprise clients.
Full data processing and retention policy for enterprise client data.
Infrastructure security, data quality, and verification chain documentation.
Technical security controls, penetration testing, and responsible disclosure.
Enterprise service agreement terms and conditions.