GDPR query - backups on USA server

I am looking to use iDrive for backing up business files which states its GDPR compliant however there servers are based in California, USA.

Ive researched a lot into GDPR but can't find anything about the servers needing to be EU based, I just wanted to confirm its ok to store data on non EU servers?


They have all the high level encryption and state GDPR compliance on a page detailing it, its just someone mentioned USA servers wont be GDPR compliant.....
 
Try looking at: https://cas.ltd/gdpr-6-personal-data-transferring-data-outside-europe

My reading of this issue has always been if the outside EU provider complies with GDPR (like yours claims) there is no issue since many big multinationals like Google/Amazon make use of non-EU systems with no problem. But might be an idea to work it into your privacy terms that you will be using a GDPR compliant but non-EU data storage provider.
 
Upvote 0

HostXNow

Business Member
  • Business Listing
    Mar 7, 2011
    518
    48
    United Kingdom
    hostxnow.com
    As long as you mention that data is being transferred outside of the EU and your customers are aware of this then there shouldn't be a problem.

    Be sure to mention this in your privacy policy/terms of service which your customers agree to when signing up with you.
     
    Upvote 0

    Latest Articles

    Join UK Business Forums for free business advice