Last updated: January 1, 2026
CyberGuardian is fully compliant with the EU General Data Protection Regulation (GDPR) — Regulation (EU) 2016/679. This page explains our GDPR obligations and how we help you meet yours.
When you use CyberGuardian, we act in two capacities:
A Data Processing Agreement (DPA) is available upon request for enterprise customers. Contact: support@cyberguardian.bg
We collect only the minimum technical data necessary to deliver the CyberGuardian service, including device identifiers and system information required for threat detection and license validation.
All data is processed by infrastructure providers that implement appropriate technical and organisational measures in accordance with GDPR requirements. We do not transfer personal data to third countries.
Under GDPR Articles 15-22, you have the following rights regarding your personal data:
Submit requests to: support@cyberguardian.bg. We will assess each request individually and respond within 30 days.
We implement appropriate technical and organisational security measures to protect your personal data against unauthorised access, loss or disclosure.
In the event of a personal data breach:
We retain personal data only for as long as necessary to provide the service or as required by applicable law. Financial records are retained for 7 years in accordance with the Bulgarian Accounting Act.
CyberGuardian supports organisations in addressing both GDPR and NIS2 compliance requirements through integrated security monitoring and documentation capabilities.
You have the right to lodge a complaint with the Bulgarian Commission for Personal Data Protection (CPDP):