Formly

GDPR & Formly

Last updated at February 6th, 2025


The contents of this page do not constitute legal advice. For questions about how the General Data Protection Regulation (GDPR) applies to your specific situation, please consult a qualified legal professional.

What is GDPR?

The General Data Protection Regulation (GDPR) is a privacy and data protection law in the European Union (EU). It grants individuals (EU residents) certain rights regarding their personal data, including the right to access, correct, and delete their data.

Does the GDPR apply to you?

If you are based in the EU or if you collect any personal data from individuals located in the EU, the GDPR likely applies to you. Please check with your legal advisor to confirm how GDPR should be implemented in your business operations.

Is Formly GDPR-compliant?

Formly takes GDPR compliance seriously by implementing industry-standard practices around data protection and privacy. We continuously review our processes and procedures to ensure that we meet or exceed the requirements of the GDPR.

Measures we have in place:

  1. Privacy Policy: Our Privacy Policy explains in detail the data we collect, the purposes of collection, data retention periods, and your rights as a data subject.
  2. Encryption: All Formly form data is encrypted both in transit (HTTPS) and at rest.
  3. Data Control: You maintain full ownership of the form data you collect and manage through Formly.
  4. Data Processing Agreement (DPA): We have a standard DPA available. Please contact us at contact@formly.so if you require a signed agreement.
  5. Data Hosting Location: All Formly data (including form submissions) is stored on servers and databases located in Germany, ensuring data is hosted within the EU.
  6. Sub-processors: We rely on third-party service providers (such as hosting, analytics, or email services) that help us operate our platform. We ensure these providers are also compliant with GDPR.

Data Processing Agreement (DPA)

By creating a Formly account and agreeing to our Terms of Service, you enter into a Data Processing Agreement with Formly. If you need a separate signed copy or have additional questions, please reach out to us at contact@formly.so.

What happens with your form data?

Formly is a platform for creating and distributing forms. When you use Formly:

As long as your Formly account remains active, you control how long data is stored. You can export or delete your form responses at any time. Once deleted, any form data is removed from our systems and backups in accordance with our retention policy.

How do we use your personal data?

Formly acts as a Data Controller regarding the personal information you provide to register an account and use our service. We do not sell your personal information to third parties or use it for unsolicited marketing.

We share your data only with service providers necessary for the functioning of our platform (e.g., hosting providers, analytics services, or email delivery). Any third-party sub-processors we use are contractually bound to comply with GDPR.

Sub-processors

We may use the following categories of sub-processors to help deliver the Formly service. Each sub-processor has committed to complying with GDPR requirements:

To get the most up-to-date list of our sub-processors, please see our Privacy Policy or contact us at contact@formly.so.


We are committed to ensuring data privacy and security for all users. Please reach out to us at contact@formly.so if you have any questions or need further assistance regarding GDPR compliance.