Cloud Infrastructure
o/DAILIES leverages Google Cloud Platform services to provide a secure, scalable, and reliable experience for all users. This page outlines our cloud infrastructure setup and data storage policies.
Service Architecture
Our backend infrastructure is built entirely on Google Cloud Platform, providing:
- User authentication and access control
- Real-time database functionality
- File storage and content delivery
- Serverless computing for backend operations
- Application monitoring and analytics (if opted-in by user)
Data Locations
We prioritize data sovereignty and performance in our infrastructure decisions:
- Primary Region: All services are hosted in the European Union
- Data Centers: Most services are specifically located in Belgium
- Storage Redundancy: Content is stored across multiple EU data centers for redundancy and improved access speeds
- Region Selection: Storage is maintained within the EU region to ensure compliance with EU data regulations
Data Retention Policy
We maintain a structured approach to data retention for all projects:
- Active Projects: All data is fully accessible during the paid subscription period
- Downgraded Projects: When a paid project is downgraded, it remains fully accessible until the end of the current payment period
- Grace Period: After the payment period ends, a 3-day grace period begins where data remains stored but is not accessible to users
- During this period, re-activation is straightforward and restores immediate access
- Video Storage: After the grace period, all video files enter a soft-deleted state
- We can recover video files for up to 10 days after the grace period
- After 10 days, video files are permanently deleted
- Metadata Retention: Project metadata including thumbnails remains stored indefinitely until you manually delete the project
- Upon manual project deletion, the same soft-delete policy applies
Data Security
We implement comprehensive security measures to protect your data:
- End-to-End Encryption: All data is encrypted both at rest and in transit using industry-standard encryption protocols
- Transfer Staging Encryption: Files distributed through the Transfers feature (beta) are additionally encrypted on the sending machine before upload and decrypted only on the receiving machines, so the staging storage never holds readable content; staged files are removed once every authorized machine has downloaded them, and at the latest 4 days after upload
- Multi-factor Authentication: MFA provides an additional layer of security for account access
- Role-Based Access Control: Granular permission system ensures users can only access data they are explicitly authorized to view
- Regular Security Updates: All systems are promptly updated with the latest security patches