Privacy is the architecture, not the asterisk.

Our fraud detection service, TrustSig Pro, provides the legal assurances your DPO will be satisfied with: an EU-hosted service built on privacy by design and by default, giving you configurable retention, right to be forgotten by design, control over processed PII categories, and a clear DPA.

EU-hosted. Verdicts in milliseconds.

EU-hostedData retention and erasure by designYou control the processed categories of PIIDPA available
01Four commitments

What “privacy-first” means when it's load-bearing.

Each of these is enforced by how the system is built – not by a policy document promising restraint.

01Privacy users are never punishedPrivacy browsers, VPN, Tor and anti-fingerprinting protections can never, on their own, cause a block. Ambiguity routes to Review – a step-up, not a denial.
02A trusted fast path for real usersConsistently-good accounts become structurally hard to false-flag over time. Genuinely dangerous signals still always block – trust never shields a real attack.
03A configurable boundary around personal dataEmail, name, username and phone number are configurable by you as the data controller. We process PII only when you decide so.
04Erasure built into the data modelDelete an account and everything cascades – vault, profiles, reputation, event history. Compliance is the shape of the system, not a retrofit. See also our Privacy Notice and Data Processing Agreement.
02The right to be forgotten

Erasure is one call, not a cleanup project.

Article 17 requests shouldn't spawn a three-week data-archaeology ticket. In Pro, account deletion walks the same edges the data was written through – so nothing derived from the account survives it. See also our Privacy Notice and Data Processing Agreement.

03The trust ladder

Same signal. Fairer outcome.

A brand-new account and a 14-month customer trip the same wire – and get different treatment, because one of them has earned context. That's not leniency; it's accuracy.

Account, 2 days oldNew deviceREVIEWNo history to vouch for it – one tap of MFA
Account, 14 months cleanNew deviceALLOWMonths of trust outweigh the unfamiliar device

A confirmed attack signature always blocks, no matter how much trust an account has built.

04The stance

Nobody gets blocked for protecting themselves.

VPN, Tor and privacy browsers are how journalists, lawyers, security teams and ordinary careful people use the internet. Pro labels them as context and refuses to treat them as guilt. If a fraud tool punishes privacy, it's training your best users to leave.

VPN & Tor: labels, never verdictsanti-fingerprinting ≠ suspicionambiguity steps up, never shuts out
05On paper

The compliance file.

The legal documents, ready when your DPO asks.

EUhosting & global low-latency content delivery
90 daysdefault retention, configurable 30 days to 18 months
1 callfull GDPR erasure cascade on account deletion
Data Processing Agreementas annex to the Terms of Service
06The rest of Pro

One signal layer. Every abuse pattern.

Each detection engine reads the same account, device and network memory – turn on one, the rest are a toggle away.

07 Questions

Privacy & compliance, answered

As the data controller, you decide which personal data is processed. This may include direct identifiers such as email, name, username and phone number, and, where these are present, indirect identifiers such as IP address also become essential. This data is hosted in the EU.

08Get started

Fraud prevention that respects your users.

Tell us what you are trying to protect and why now. We will reply by email to set up access for your team.

  • EU-hosted, GDPR-native
  • No CAPTCHAs, no friction for your users
  • Verdicts in milliseconds

We reply by email to set up your demo. No payment or account needed.