TRUST / EUROPEAN DATA PROTECTION
Last updated: 27 July 2026
1. Clear roles and controlled processing
For client delivery, Asset Velocity AI S.à r.l. will identify whether it acts as a controller, processor or independent service provider for each processing activity. Where we process personal data on a client’s behalf, the applicable agreement will define documented instructions, purpose, data categories, retention and the allocation of responsibilities.
2. Security, confidentiality & access
We design engagements around least-privilege access, controlled information flows and clear accountability. Appropriate technical and organisational measures are selected according to the nature of the work, the sensitivity of the information and the risk to individuals. Personnel and suppliers with access are bound by confidentiality obligations.
3. Sub-processors & international transfers
We use carefully selected service providers when necessary to operate and deliver our services. Where a sub-processor is involved in client processing, we will provide the contractual transparency required by the engagement. Any international transfer of personal data will be supported by an appropriate GDPR transfer mechanism and supplementary safeguards where required.
4. Support, incidents & accountability
We support clients with reasonable information needed for data-protection governance, data-subject requests, security assessment and incident cooperation. Our systems approach is designed to make ownership, evidence and review points visible. This page is a practical commitment and is not a substitute for a signed data-processing agreement or specialist legal advice.