Karkium is built around GDPR principles by design. No "data anywhere". No opaque algorithms processing your information. Here we explain, plainly, how we protect the data you trust us with.
Clearly located infrastructure, no opaque third parties in between.
Infrastructure hosted in the European Union, with Cloudflare as a global security and performance layer. For the exact list of providers and subprocessors, see our privacy policy.
Mandatory HTTPS with valid certificates, and database-level encryption for sensitive fields.
Granular, traceable access. Nothing happens without an audit trail.
Strict separation between workspaces. Each account has its own bucket; nobody sees what they shouldn't.
Every access to personal data is logged. If something happens, we know what, when, and who.
pii.audit middleware on sensitive routesData Loss Prevention active: if someone tries to pull large volumes of data they shouldn't, the system cuts it off.
API tokens have limited abilities. A token for sending leads can't read your whole CRM.
Your users' rights are yours to honor. We give you the tools.
Access, rectification, erasure, objection, portability, and restriction. All operable from the contact's panel.
Every commercial email includes a public /unsubscribe/{token} link without requiring an account.
When a client requests erasure, PII data is actually deleted, not just flagged. No misleading soft-delete.
Every lead stores origin, date, and exact consent text given. If a regulator asks, you answer with data.
We don't train any AI model on your data. The Copilot queries Anthropic (Claude) with just enough data to answer your specific question. Nothing is retained on Anthropic's side for training purposes.
We don't resell data. Ever. It's not a viable business model and it would be illegal in the EU.
We're small. A small team means less attack surface, but also fewer people to respond if something breaks. That's why we audit aggressively and show up quickly when there's a problem.
Write to our Data Protection Officer. We always reply before the legal 30-day deadline and usually much sooner.
✉️ info@karkium.comNo demo. No sales reps. No contract. You pay, you log in, you get to work. If it does not fit, you cancel. Done.