GDPR

How Keylime handles EU/EEA privacy rights for seller accounts and licensing data.

1. Roles

Under the GDPR, Keylime typically acts as:

  • Controller for seller account data you give us directly (email, credentials, plan/billing metadata).
  • Processor for end-user licensing metrics your apps send through our SDKs and APIs (HWID, sessions, IPs, verification results), on your instructions as the seller.

2. Your rights

If you are in the EU/EEA, you may have rights to access, correct, export, restrict, or erase personal data, and to object to certain processing, subject to legal limits.

In the dashboard

Sellers can manage apps, keys, users, HWID resets, and related records, and export license data from the product where that export exists.

Account-level requests

Full account access or erasure that cannot be completed in-product is handled by email. There is no fully self-serve delete-everything button yet.

3. Storage and transfers

Data is processed and stored on our systems and third-party services we use to operate Keylime. That may include locations outside the EU/EEA. Where transfer rules apply, we rely on appropriate contractual safeguards offered by those services, in addition to this policy.

4. How to exercise rights

Email gdpr@keylime.cc from the address on your Keylime account. Describe what you need (access, correction, export, or erasure). We aim to respond to valid requests within 30 days where the law requires it. We may ask for information to verify identity.

More detail on collection and use: Privacy Policy.