RAAL Logo
Trust · Data protection

Your data stays in Europe.

Raal is an Estonian company, built and operated in the EU. Your employee and shipment data is hosted in the European Economic Area, encrypted end to end, and deleted on a schedule we publish.

Estonia
EU company, Estonian jurisdiction
Ireland
Data hosted in the EEA
90 days
Auto-deleted after offboarding
Jurisdiction

An EU company, not an EU region of something else

Raalio OÜ is a single Estonian legal entity. Bootstrapped, no foreign parent, no outside investors. There is no US holding company behind it and no board in another jurisdiction with a claim on your data.

Where a vendor is incorporated determines which laws reach your data, no matter where the servers sit. With Raal the answer is short: Estonia.

Business name Raalio OÜ
Registry code 16705553
VAT number EE102601475
Address Harju maakond, Tallinn,
Rataskaevu tn 2, 10123
Hosting and security

Where your data actually lives

Plain answers on the left. The detail your reviewer needs on the right.

Hosted in the EEA
Production data lives in Ireland, inside the European Economic Area. It is not replicated outside the EEA.
Encrypted in transit
TLS 1.2 or newer on every connection, end to end.
Encrypted at rest
AES-256 on all stored data, including backups.
Tenant isolation
Your data is logically isolated from every other customer.
Least-privilege access
Access is role-based, limited to what a role needs, and protected with MFA.
GDPR processor
Raal processes personal data as a processor under Article 28 GDPR. The DPA is part of our Terms of Use.
No selling of data
Your data is never sold, shared with advertisers, or used for anything beyond running the service.
No personal data in AI tools
Our AI policy prohibits customer personal data in AI tools. No exceptions for productivity.
Data retention

We delete your data. Automatically.

Retention is on a published schedule, not a promise. Deletion runs on its own, whether or not anyone remembers to ask, and nothing is held longer than the service needs it.

90 days

After offboarding

An employee's personal data is deleted 90 days after their offboarding event, once they have left the company, their device has been returned to the company, and the order is fulfilled. Names, addresses, and contact details are gone.

7 days

Purged from backups

Deleted data is purged from backups within 7 days. Deletion means deletion, not archive.

75 days

After contract end

All platform contents, including account data such as user names and emails, are deleted within 75 days of contract end.

Account data, like the names and emails of the people who use the platform, is kept only while your contract is active, because the service needs it to run. The one exception after contract end: records we are legally required to keep, such as invoices and accounting data, are retained for the statutory period and nothing more.

Device records outlive the people attached to them. A device stays in your asset register with its full history after a holder is deleted, because the audit trail is about the hardware, not the person.

Common questions

You remain the controller of your employee data. Raal acts as a processor under Article 28 GDPR and processes personal data only on your documented instructions.

Contact and shipment data: names, delivery addresses, email addresses, phone numbers, and device details. No special categories of personal data are collected or processed.

EEA hosting providers and vetted courier partners, all listed in our sub-processor register. The current list is part of the due diligence pack, and you get 10 working days notice before any addition.

Yes. The DPA is included in our Terms of Use, and we can also sign your standard DPA template. Both routes are covered in the due diligence pack.

Write to privacy@raal.io. Questions are answered by the people who run the systems, not a ticket queue.

Evaluating vendors for your privacy review?

Get the full picture in one document.