GDPR-Friendly Form Collection

The GDPR cares about roles, purposes, data minimization, and subprocessors. When your form vendor cannot read answers, you narrow what they can process on your behalf.

How zero-knowledge supports GDPR

Cyphorm encrypts in the respondent's browser; we store ciphertext without the private key. You remain responsible for lawful basis, notices, retention, and DPA terms with us—but the architecture supports a story where sensitive content is not available to the form host in plaintext.

Data minimization by design

Article 25 of the GDPR requires "data protection by design and by default." Cyphorm's architecture implements this principle at the infrastructure level:

Controller responsibilities

Cyphorm reduces processor-side risk, but GDPR compliance remains your responsibility as the data controller:

Cross-border considerations

Because Cyphorm cannot read submission contents, the sensitivity of cross-border data transfer is reduced—though not eliminated. You should still evaluate whether Cyphorm's hosting location and infrastructure align with your transfer mechanism requirements (e.g., Standard Contractual Clauses).

Related

How zero-knowledge works · Can vendors read submissions? · HIPAA-oriented forms