This data processing agreement describes how GameHostCloud processes personal data on behalf of its customers under the GDPR. It defines the roles of controller and processor, the categories of data processed, the purposes and duration of processing, and the documented instructions under which processing takes place. Sub-processors, their locations and their roles are listed, together with the mechanisms used for any transfer outside the European Economic Area. Security measures cover encryption in transit, access control and role separation, audit logging, isolated per-customer environments, backups and incident response with notification timelines. Data subject rights such as access, rectification, erasure and portability are supported through the customer dashboard and the support team. Customers hosting in Helsinki or other European regions keep their game data physically inside the European Union.