Full transparency, no legal jargon. CELLLS is a Dutch company and this service was built on European infrastructure from day one. This page explains what data we collect, why, and what you can do with it — including your full GDPR rights.
CELLLS is an AI-powered research tool that lets you build tables that fill themselves. We're incorporated in the Netherlands and operate entirely on European infrastructure. Our aim is to keep every part of this service — hosting, AI, payments, error tracking — within European hands.
For the purposes of GDPR, CELLLS acts as the data controller for account and usage data. The research data you put into your grids belongs to you — we process it only to operate the service.
We collect only what we need to run the service:
We process your data under these lawful grounds:
Under GDPR you have the following rights — all exercisable by emailing us.
Request a copy of all personal data we hold about you.
Correct inaccurate data. You can update your name and email directly in account settings.
Request deletion of your account and all associated data.
Export your grid data as CSV or Excel at any time.
Object to processing based on legitimate interests.
Request that we limit processing of your data while a dispute is resolved.
We deliberately choose European suppliers wherever possible. Every infrastructure and AI provider we use is headquartered in the EU or EEA. The one exception is Paddle (UK), which operates under UK GDPR — an equivalent framework — and contractual safeguards are in place.
| Provider | Country | Purpose | Data involved |
|---|---|---|---|
| UpCloud (via Ploi) | App hosting, database, queue workers | All account and grid data | |
| BunnyCDN | CDN, DDoS protection, DNS | Static assets, IP addresses | |
| Orq.ai | AI agent orchestration | Grid row context sent per job | |
| Mistral AI | AI language models (via Orq.ai) | Grid row context sent per job | |
| Bugsink | Error tracking (self-hosted) | Error stack traces, no personal data | |
| Paddle | Payment processing | Name, email, billing address |
Your data is stored on UpCloud servers within the European Economic Area. It does not leave the EEA, with the sole exception of payment processing by Paddle (UK), which is governed by UK GDPR and Standard Contractual Clauses. We have no plans to use US-based infrastructure.
Where data does cross EEA borders (currently only Paddle for billing), we rely on one or more of the following safeguards:
We apply both technical and organisational measures to protect your data:
No method of transmission is 100% secure, but we take reasonable and commercially standard measures to protect your data.
If you use CELLLS as part of a business and need a Data Processing Agreement (DPA) for your own GDPR compliance, we're happy to provide one. A DPA formalises the controller–processor relationship and documents the technical and organisational measures we apply.
To request a DPA, email privacy@cellls.com with the subject "DPA request".
Questions about this policy or your data? We're a small Dutch team and we read every email.
privacy@cellls.com