Your email never passes through us. Your data stays in the EU.
The page to forward to your IT department, your DPO and your security officer. It sets out precisely what Signally does, what it does not do, and where the data lives.
- Store your signature templates and campaign artwork
- Read, with restricted access, the directory attributes the signature needs (name, job title, phone, department, reporting line)
- Insert an HTML signature block as the employee writes their message
- Count clicks on the banner links you created
- Read, analyse or index the content of your emails
- Store your messages, your attachments or your address books
- Route your emails through its servers
- Send email on your behalf or change your SMTP routing
- Transfer data outside the European Union
Hosting in the European Union
Infrastructure located in France, operated under European law. No transfer to a third country as part of the service.
GDPR compliance
Signally acts as a processor within the meaning of Article 28. Data processing agreement, register, retention periods and deletion procedure are documented.
Data minimisation
Only the directory fields actually shown in the signature are synchronised. Nothing more.
Authentication & access
Sign-in through your Microsoft or Google identity provider, granular administrator roles, action logging.
Encryption
Traffic encrypted in transit and data encrypted at rest, across the whole platform.
Reversibility
Export of your templates and complete deletion of your workspace on request, with no hidden retention.
Frequently asked questions — security and compliance
Does Signally read the content of my emails?
Where is the data hosted?
What personal data is processed?
Is Signally a processor under the GDPR?
What happens to access if we terminate?
Are your servers subject to extraterritorial legislation?
A compliance question? Let us talk.
We are happy to answer the security questionnaires from your IT and legal departments.