SERVER STATUS: ONLINE
V.04_EST_2024
Digital Vera logo DIGITAL
VERA
Security Protocol 09-P

Data Architecture & Governance

At Digital Vera, privacy isn't just a legal checkbox. It is a technical constraint that informs our entire development lifecycle in Berlin. From local play to global server sync, we prioritize your digital sovereignty.

01 Information we ingest

When you interact with our gaming applications or visit our domain, Digital Vera collects data necessary for functionality. We distinguish between Contact Data (email and billing info for premium tiers) and System Data (device model, OS version, and latency metrics). For our German indoor testing labs, we specifically look at how different Android builds handle thermal throttling under 5G loads.

Under GDPR Article 6(1)(b), we process this data to fulfill our contract with you: providing a functional, lag-free gaming experience. We do not sell your telemetry for ad-targeting purposes; our revenue is driven by app performance and direct support, not brokering your identity.

Data Flow Schematic

ENCRYPTION LEVEL: AES-256-GCM. PATHWAY: CLIENT-TO-EDGE. NO PERSISTENT LOGGING ON INTERMEDIARY NODES.

PITFALLS.LOG

Hard Choices & Trade-offs

Global Sync vs. Privacy

Cloud saves require account linking, which increases the data surface area of the app.

Mitigation: We offer a "Local-Only" mode that disables all cloud communication, ensuring zero data leaves your local device storage.

Anti-Cheat vs. Permissions

Competitive integrity often requires checking for APK modification or external hooks (root/jailbreak).

Mitigation: Our anti-cheat runs in user-mode only. We perform signature checks at a file-level without scanning private media or directories.

Performance vs. Logs

Detailed error logging helps us fix crashes but can inadvertently capture sensitive usage patterns.

Mitigation: All crash reports are scrubbed of personal identifiers before transmission via an automated anonymization pipeline.

Compliance Scrutiny

Where exactly is the data stored?

All primary user databases are hosted on ISO 27001 certified infrastructure in Frankfurt, Germany, ensuring data never leaves the EU jurisdiction.

Do you use kernel-level anti-cheat?

No. We believe kernel-level access creates too high a security risk for users; we utilize behavioral analysis and side-weighted server validation instead.

How long is activity data retained?

Technical logs are flushed every 30 days, while transaction records are kept for the statutory 10-year period required by German tax law.

What are the users' rights to deletion?

Users can trigger a "Right to be Forgotten" request via their dashboard, which initiates an irreversible purge of pII across all active clusters within 72 hours.

Are third-party SDKs audited?

Every SDK integrated into Digital Vera products undergoes a code audit to ensure it doesn't perform unauthorized background data harvesting.

Data Center Frankfurt
Tier 4 Datacenter

Visual visualization of our server infrastructure in Frankfurt. We partner only with Tier 4 facilities that provide 99.99% uptime and physical security.

The Web of Processing

We utilize a limited number of sub-processors to power our services. This includes payment gateways like Stripe or PayPal for licensing, and cloud providers like AWS or Hetzner for server hosting. Each partner is bound by a Data Processing Agreement (DPA) that mandates the same level of security we provide internally.

In cases of legal requests from German authorities (e.g., LKA or BKA), we only surrender data that is explicitly covered by a valid court order. Our transparency reports ensure that users are notified of such requests unless legally gagged.

Our engineers periodically perform manual "Permissions Audits" to ensure no new feature has inadvertently expanded its data collection profile. This "privacy by design" approach is fundamental to our German indie dev ethos.

RIGHTS

Substantive Rights

Your legal standing under EU Data Law

01

Right to Access

Request a full copy of the data we hold on you in a structured, machine-readable format.

02

Right to Rectify

Correct any inaccurate or incomplete personal data within our systems via your profile.

03

Right to Portability

Transfer your account history and settings to another service provider without hindrance.

04

Right to Complain

If our answers don't satisfy, you can contact the Berlin Commissioner for Data Protection.

Data Protection Officer

Digital Vera privacy Team

For all inquiries regarding your data, legal rights, or to report a security vulnerability, please reach us at our Berlin headquarters.

Address: Alexanderplatz 1, 10178 Berlin, Germany

Phone: +49 30 12345678

Email: info@digitalvera.online

Hours: Mon-Fri: 9:00-18:00 CET

Official
Security Key
Zero-Knowledge Architecture Implemented
ISO 27001 Compliant Infrastructure
Net Connections