Skip to main content


Privacy Policy

Last updated: March 3, 2026

GenCompl.ai ("we", "us", or "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and protect information when you visit our website, interact with our services, or contact us.

1. Who We Are

GenCompl.ai is an AI-powered Governance, Risk, and Compliance (GRC) platform that helps organizations transform regulatory complexity into a strategic advantage. We operate from a Germany-based, GDPR-compliant cloud infrastructure.

If you have any questions about this policy or how we handle your data, please contact us at:
đź“§ [email protected]

2. What Data We Collect

  • Contact Information: Name, email address, and any details you provide when joining our waitlist, contacting us, or scheduling a consultation.
  • Usage Data: anonymized usage statistics collected via Plausible Analytics (no personal data, no IP addresses, no cookies)
  • Communication Data: Messages you send via our contact forms, email, or early-access inquiries.

We do not intentionally collect sensitive personal data unless you voluntarily provide it and it is necessary for a specific service.

3. How We Collect Data

  • When you submit forms (e.g., “Join Waitlist,” “Contact Us,” or “Join Now”).
  • When you communicate with us via email or other contact channels.

4. Purpose and Legal Basis of Processing

Responding to inquiries and contact requests — Art. 6(1)(b) GDPR (pre-contractual steps).
Managing waitlist and early-access participation — Art. 6(1)(b) GDPR.
Website operation and analytics (with consent) — Art. 6(1)(a) GDPR (consent).
Security and legal compliance — Art. 6(1)(c) GDPR (legal obligation).

5. Analytics

We use Plausible Analytics to understand website traffic. Plausible is a privacy-friendly, cookie-free analytics tool that does not collect personal data, does not use cookies, and is fully GDPR-compliant. No consent banner is required. Learn more: https://plausible.io/data-policy

6. Data Storage and Security

Your data is stored securely on servers located in Germany. We implement technical and organizational measures such as secure, access-controlled cloud environments, encryption in transit and at rest, regular security reviews, monitoring, and restricted access to authorized personnel only.
Data is deleted or anonymized once it is no longer required, unless retention is required by law.

7. Data Sharing and Transfers

We share personal data only with trusted service providers necessary for operating our website and services, including Germany-based hosting and cloud infrastructure providers and Google Analytics 4 (via Tag Manager).
All processors are bound by GDPR-compliant data processing agreements. We do not sell or rent personal data.

8. Your Data Protection Rights

Under the GDPR, you have the right to access your personal data, request correction of inaccurate or incomplete data, request deletion (“right to be forgotten”), restrict certain processing of your data, receive your data in a portable format, object to data processing carried out on legitimate interest grounds, and withdraw consent at any time.
To exercise these rights, please email us at [email protected].
You also have the right to lodge a complaint with your local data protection authority, such as Die Bundesbeauftragte fĂĽr den Datenschutz und die Informationsfreiheit (BfDI) in Germany.

9. International Data Transfers

We currently do not transfer personal data outside the European Economic Area (EEA). Should international transfers become necessary, we will ensure appropriate safeguards (e.g., Standard Contractual Clauses).

10. Data Retention

We retain data only as long as necessary for its intended purpose or as required by law, including for active communication or contractual processes, for statutory retention periods such as taxation or accounting, and for analytics data as defined by GA4’s default duration. After these periods, data is securely deleted or anonymized in accordance with GDPR requirements.

11. Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in practices or regulations. The latest version will always be available at https://gencompl.ai/privacy-policy.
We encourage you to review this page periodically to stay informed.