GDPR compliance by design
We believe digital platforms should verify age eligibility without building massive databases of identity credentials.
Trust summary: AgeVerify EU stores boolean verification results only, hosts production systems in the EU, aligns with the EU Age Verification Blueprint, and offers configurable retention modes for audit and compliance exports.
1. EU Age Verification Blueprint alignment
AgeVerify EU operates as a Relying Party (Verifier) under the European Commission's Age Verification Blueprint. Users prove eligibility via EUDI Wallet or national wallet apps; we validate trusted issuers and store only the age eligibility result.
2. Strict Data Minimization
Under GDPR Article 5(1)(c), personal data must be limited to what is strictly necessary. Traditional KYC asks for names, addresses, birthdays, and passports just to verify if a customer is over 18.
AgeVerify EU only stores the **verified result status, timestamp, method used, and policy version**. We never store names, exact dates of birth, or identity card scans in our production database.
3. 100% EU-Hosted Infrastructure
To ensure strict alignment with European privacy standards and avoid international data transfer complications, all our production systems are located in Europe:
Our API backend is hosted in **Frankfurt, Germany**, and our PostgreSQL database operates strictly within the **EU-West region (Ireland/Germany)**. Backups are fully encrypted and stored within the EEA.
4. Privacy Policy Summary
AgeVerify EU acts as a data processor for verification outcomes on behalf of your platform. We process session parameters only for the duration required to complete verification and deliver webhooks. Identity document images and exact dates of birth are never persisted in our production database.
Developers can configure per-organization retention in the dashboard. Enterprise customers can export audit evidence as CSV files stored on EU-hosted Railway infrastructure with time-limited signed download links.
5. Configurable Retention Modes
We give developers explicit control over how long verification records persist on our platform:
- Minimal Mode (Default): Stores only the verification outcome, assurance level, and timestamp for billing and audit records.
- Audit Mode: Retains additional system diagnostic metadata (webhook logs, attempt counts) for dispute resolution.
- Strict Privacy Mode: Immediately scrubs all session parameters upon webhook delivery, keeping only an anonymized counter for billing usage.