Skip to content
Legiscope
Menu
Infrastructure and data location

Hosting, residency and transfers

Legiscope is hosted in the EU: production runs in Ireland, with an included recovery copy in France. Optional geographically isolated recovery destinations are available for continuity planning — all disabled by default, with at most two selectable.

01

Core service locations

Legiscope is EU-first by default. The primary application environment is in Ireland and the included EU recovery location is in France.

Primary service region · AWS eu-west-1

Ireland

Core location
Purpose
Run the Legiscope customer application and its primary service environment.
Data in scope
Production database records, primary customer files and the operational data required to provide the Service.
Processing context
Standard EU configuration. This location applies without a separate customer selection.
EU disaster recovery · AWS eu-west-3

France

Included
Purpose
Maintain a geographically separate recovery copy within the European Union.
Data in scope
Protected customer recovery data covered by the applicable backup configuration.
Processing context
Standard EU configuration. Recovery access is restricted to defined circumstances and authorised personnel.
02

Optional disaster recovery locations

Customers may optionally add geographically isolated recovery destinations from the catalog below. All six locations are disabled by default; customer data is not replicated to any of them without an explicit administrator selection.

Every published destination is GDPR-compatible: it is either covered by an EU adequacy decision under Article 45 GDPR or protected by the EU Standard Contractual Clauses under Article 46 GDPR. Each location below states the exact transfer basis that applies.

A customer may select up to two published destinations. Each enabled copy remains Account-scoped, encrypted using the destination service’s default server-side encryption, protected for the applicable retention period and available only through controlled recovery procedures.

Enabling a location starts with the next complete recovery point and does not copy older recovery points. Removing one stops selection for later recovery points; an existing protected copy remains subject to its normal retention period. Availability depends on the Account entitlement, contractual scope and completion of the destination’s legal and operational readiness checks.

Optional recovery · AWS ap-southeast-6

New Zealand

Disabled by default
Purpose
Provide a geographically isolated recovery copy outside the European region.
Data in scope
Eligible customer backup bundles and Account-scoped recovery metadata for new recovery points after selection.
Processing context
Opt-in only · cold recovery copy · no automatic failover or historical backfill.
Transfer basis
EU adequacy decision (Art. 45 GDPR) — Commission Decision 2013/65/EU, confirmed by the Commission’s 2024 adequacy review. Read the decision
Optional recovery · AWS ap-northeast-1

Japan · Tokyo

Disabled by default
Purpose
Provide a geographically isolated recovery copy outside the European region.
Data in scope
Eligible customer backup bundles and Account-scoped recovery metadata for new recovery points after selection.
Processing context
Opt-in only · cold recovery copy · no automatic failover or historical backfill.
Transfer basis
EU adequacy decision (Art. 45 GDPR) — Commission Decision (EU) 2019/419, confirmed by the Commission’s 2023 review. Read the decision
Optional recovery · AWS ap-northeast-3

Japan · Osaka

Disabled by default
Purpose
Provide a geographically isolated recovery copy outside the European region.
Data in scope
Eligible customer backup bundles and Account-scoped recovery metadata for new recovery points after selection.
Processing context
Opt-in only · cold recovery copy · no automatic failover or historical backfill.
Transfer basis
EU adequacy decision (Art. 45 GDPR) — Commission Decision (EU) 2019/419, confirmed by the Commission’s 2023 review. Read the decision
Optional recovery · AWS ap-northeast-2

South Korea · Seoul

Disabled by default
Purpose
Provide a geographically isolated recovery copy outside the European region.
Data in scope
Eligible customer backup bundles and Account-scoped recovery metadata for new recovery points after selection.
Processing context
Opt-in only · cold recovery copy · no automatic failover or historical backfill.
Transfer basis
EU adequacy decision (Art. 45 GDPR) — Commission Decision (EU) 2022/254. Read the decision
Optional recovery · AWS ca-central-1

Canada · Central

Disabled by default
Purpose
Provide a geographically isolated recovery copy outside the European region.
Data in scope
Eligible customer backup bundles and Account-scoped recovery metadata for new recovery points after selection.
Processing context
Opt-in only · cold recovery copy · no automatic failover or historical backfill.
Transfer basis
EU adequacy decision (Art. 45 GDPR) — Commission Decision 2002/2/EC, covering commercial organisations subject to PIPEDA; confirmed by the Commission’s 2024 review. Read the decision
Optional recovery · AWS sa-east-1

Brazil · São Paulo

Disabled by default
Purpose
Provide a geographically isolated recovery copy outside the European region.
Data in scope
Eligible customer backup bundles and Account-scoped recovery metadata for new recovery points after selection.
Processing context
Opt-in only · cold recovery copy · no automatic failover or historical backfill.
Transfer basis
No EU adequacy decision — transfers rely on the EU Standard Contractual Clauses (Art. 46(2)(c) GDPR) incorporated in the AWS Data Processing Addendum, with encrypted, Account-scoped recovery copies. Read the SCC decision