camocopy.com — 92/100 (Low privacy risk)

Last analyzed

Run a new analysis on another policy

Restoflix Sàrl.-s · camocopy.com

Report details

Low privacy risk

Camocopy is a highly privacy-friendly AI assistant from Luxembourg that minimizes data collection, keeps all data in the EU, and avoids third-party tracking or advertising.

Camocopy demonstrates strong EU privacy compliance by strictly limiting data collection (e.g., only email for registration, anonymized IP hashes), processing all data within the EU, and using DPAs with all processors (Hetzner, Scaleway, Nebius, Microsoft, AWS, Google). It avoids performance/advertising cookies, third-party tracking, and unnecessary data sharing. However, it uses non-EU AI model providers (OpenAI via Microsoft, Anthropic via AWS, Google) with SCCs, and lacks explicit opt-outs for AI model training. User rights are clearly outlined, and retention periods are purpose-limited.

Last analyzed
SourceURL

Category Assessment

Breakdown of the policy across key compliance areas. Good = strong, fair = mixed, poor = concerning.

Data MinimizationGood

Collects only essential data (email for registration, anonymized IP hashes, device/browser metadata) and avoids unnecessary tracking or profiling.

TransparencyGood

Policy is detailed, specific, and clearly explains data types, purposes, legal bases, and processors, though AI training opt-outs are not explicitly addressed.

Third-party SharingGood

Shares data only with necessary EU-based processors (hosting, payment, CDN) under DPAs, with no evidence of sharing for ads or analytics.

International TransfersFair

Data stays in the EU by default, but non-EU sub-processors (e.g., Microsoft/Google US entities) are used with SCCs, introducing residual transfer risk.

AI/Model TrainingPoor

No explicit statement on whether user data is used to train AI models, nor is there an opt-out mechanism described.

User RightsGood

All GDPR rights (access, rectification, deletion, portability, objection, withdrawal of consent) are clearly listed and actionable via settings or email.

Key Findings

Notable clauses, issues, or positive practices discovered (critical first)

Critical

Lack of clarity on AI model training and opt-outs

The policy does not explicitly state whether user interactions with the AI assistant (e.g., chat logs) are used to train Camocopy’s or third-party models (OpenAI, Anthropic, Google). There is no mention of an opt-out for AI training, which is a growing expectation under GDPR (Art. 22, 6(1)(a)) and emerging EU AI Act guidance. This is a critical gap for a privacy-focused AI service.

Warning

Use of non-EU AI model providers with SCCs introduces transfer risk

While primary processing occurs in the EU, Camocopy uses Microsoft (Ireland), AWS (Luxembourg), and Google Cloud (Ireland) as AI model providers, which may transfer data to their US parent companies (Microsoft Corporation, Google LLC) or sub-processors. SCCs are in place, but this does not eliminate the risk of US government access under laws like FISA 702 or the CLOUD Act. The policy does not clarify whether user prompts/responses are logged or used for model training by these providers.

Warning

Reseller data flows are not controlled by Camocopy

Camocopy links to resellers (Digistore24, Creem.io) but states that 'our servers do not transmit data to [them]'; instead, user browsers send data directly. This means Camocopy has no control over or visibility into how these resellers process data, which could create compliance gaps if users are unaware they are leaving Camocopy’s privacy framework.

Info

Strong data minimization and EU-only processing by default

Camocopy collects only essential data (email, anonymized IP hashes, device/browser metadata) and explicitly states that 'information collected from users never leaves the EU.' Hosting providers (Hetzner, Scaleway, Nebius) and CDN (Bunny.net) are all EU-based, with DPAs in place. This aligns with GDPR principles of data minimization and storage limitation (Art. 5(1)(c), (e)).

Info

No performance, advertising, or third-party cookies

Camocopy explicitly states it does not use performance, advertising, or third-party cookies, which is a strong privacy signal. Only strictly necessary first-party cookies (e.g., session, language, XSRF tokens) are used, with short durations (1 hour to 30 days).

Consumer Takeaway

You can trust Camocopy with your data: it collects very little, keeps it in the EU, and doesn’t sell or share it for ads. But if you’re concerned about AI model training or non-EU sub-processors, ask them directly for details.

Compliance Posture

Strong GDPR compliance with clear legal bases, DPAs, and EU-only processing, but reliance on SCCs for non-EU sub-processors (e.g., Microsoft Corporation, Google LLC) introduces residual risk. No evidence of non-compliance, but transparency could improve on AI training opt-outs and sub-processor chains.

EU Transfers

Data is primarily processed in the EU, but transfers to non-EU sub-processors (e.g., Microsoft Corporation, Google LLC, Anthropic) occur under SCCs. This meets GDPR requirements but carries inherent risk due to potential US government access (e.g., FISA 702).

Detected Signals

Specific data points and practices identified in the text

Data Collected
Email addressNamePayment informationAnonymized IP address hashBrowser typeLanguage and version of browser softwarePlatform typeDevice typeOperating systemReferrer URLDate and time stamp of accessCountry codeContact requestsMetadataCommunication dataContract dataContact detailsWebsite access data
Processing Purposes
Providing a functional website and servicesFulfilling contracts (e.g., software provision)Pre-contractual measuresCompliance with legal obligationsLegitimate interests (e.g., security, fraud prevention)Localization (language display)Newsletter deliverySession managementCross-site request forgery (CSRF) protectionAI model inference (chat interface)Hosting and infrastructure
Third-party Sharing
Data shared with EU-based hosting providers (Hetzner, Scaleway, Nebius) under DPAsData shared with payment service providers under DPAsData shared with AI model providers (Microsoft, AWS, Google Cloud) under DPAs with SCCs for non-EU sub-processorsData shared with CDN provider (Bunny.net) under DPAData shared with newsletter service (Brevo/Sendinblue) under DPAData may be accessed by courts, tribunals, or supervisory authorities
International Transfers
Data processed in the EU by defaultTransfers to non-EU sub-processors (e.g., Microsoft Corporation, Google LLC, Anthropic) occur under SCCsNo transfers to third countries without SCCs or adequacy decisions
AI / Model Training
No explicit statement on whether user data is used for AI model trainingNo opt-out mechanism for AI training described

Evidence Snippets

Direct quotes from the policy supporting these findings

The privacy of the application's users is a top priority. As a European company based in Luxembourg, we place great emphasis on adhering to strict data protection guidelines and ensure that users' personal data is not misused and that the information collected from users never leaves the EU.

We only collect and use personal data of our users to the extent necessary for providing a functional website, as well as our content and services.

We only engage companies based in the EU as partners for our services, ensuring that your data never leaves the EU.

The Data Processing Addendum (DPA) incorporates the EU Standard Contractual Clauses (SCC) and thus provides sufficient guarantees within the meaning of Art. 46 et seq. GDPR. The SCCs apply in particular to data transfers to affiliated companies or sub-processors outside the EU/EEA, such as Microsoft Corporation in the USA.

Our website does not use performance cookies. Our website does not use advertising cookies. Our website does not use third-party cookies.

Texts and data exchanged via the chat interface with the AI assistant are processed by AI models hosted on these servers.

Missing or Unclear

  • Explicit confirmation that user prompts/responses are NOT used to train Camocopy’s or third-party AI models
  • Opt-out mechanism for AI model training (if applicable)
  • Details on data retention periods for chat logs and AI interaction data
  • Clarification on whether Microsoft/AWS/Google log or retain user prompts/responses for their own purposes
  • Sub-processor list for AI model providers (e.g., full chain of sub-processors for Microsoft, AWS, Google)
  • Explanation of how anonymized IP hashes are generated and whether they can be re-identified
  • Data protection impact assessment (DPIA) for AI processing activities

Questions to Ask

  • Does Camocopy or any of its AI model providers (Microsoft, AWS, Google) use user prompts, responses, or other interaction data to train or improve AI models? If so, how can users opt out?
  • Can you provide a full list of all sub-processors involved in AI model inference, including their locations and the legal mechanisms (e.g., SCCs, adequacy) used for transfers?
  • What is the retention period for chat logs and other data generated through the use of the AI assistant? Are these logs deleted after a session or retained for a specific period?
  • How are anonymized IP address hashes generated, and is there any risk of re-identification?
  • Do Microsoft, AWS, or Google retain or log user prompts/responses for their own purposes (e.g., model improvement, auditing)? If so, under what legal basis and for how long?
  • Has Camocopy conducted a Data Protection Impact Assessment (DPIA) for its AI processing activities, and can you share the results or a summary?
  • Are there any circumstances under which Camocopy would share user data with non-EU entities outside of the SCC framework (e.g., for legal requests)?
This analysis is generated by AI and is not legal advice. Always consult a qualified legal professional for compliance decisions.

Share this analysis

Anyone with this link can view the result above.

Built by DentroChat

100% European AI chat for everyone

Chat with AI, work with files, generate images, and search the web. Data stays in Europe.

EU-hosted infrastructureText, files, images & web searchFast, Thinking & Creative modesPrivacy-first by defaultNo data leaves Europe
Try free →
View all