Privacy & Security

How we protect your child's data and your privacy.

Where is my child's data stored?

All data is stored on EU servers (Germany) on infrastructure we control. We use self-hosted servers, not public cloud services like AWS or Google Cloud. No data is transferred outside the EU. This is an architectural decision, not a configuration option.

Do you share data with third parties?

No. Cognistase does not share any data with third parties. No advertising networks, no analytics providers, no data brokers. Your child's data is used exclusively to provide the service you signed up for.

Can I delete all my data?

Yes. You can request complete deletion of all data at any time. We implement cryptographic erasure, your data is not just marked as deleted but rendered permanently unreadable by destroying the encryption keys. This process is irreversible and typically completed within 72 hours.

Is Cognistase GDPR compliant?

Yes. Cognistase is fully GDPR compliant. We process data based on explicit consent, maintain a complete data processing register, have completed a Data Protection Impact Assessment, and have appointed a Data Protection Officer. Visit our Trust Center for full details.

Does Cognistase use cookies?

We use only strictly necessary cookies required for the website to function (session management, language preference). We do not use tracking cookies, advertising cookies, or third-party cookies. There is nothing to opt out of because there is nothing to opt into.

Ready to take the next step?

See how Cognistase turns clinical evidence into actionable advocacy for your child.