GDPR Compliance

Last updated: March 25, 2026

SiteX is committed to compliance with the General Data Protection Regulation (GDPR). This page explains how we protect the rights of EU/EEA residents and how SiteX CMS helps you build GDPR-compliant websites.

Our Website (sitexcms.com)

Data Controller

SiteX is the data controller for personal data collected on sitexcms.com. Contact: [email protected]

Lawful Basis for Processing

Processing ActivityLawful Basis
Processing purchasesContract performance
Sending purchase receiptsContract performance
Responding to contact formLegitimate interest
Newsletter emailsConsent
Analytics cookiesConsent
Security and fraud preventionLegitimate interest

Your Rights Under GDPR

As an EU/EEA resident, you have the right to:

  • Access - Request a copy of your personal data
  • Rectification - Correct inaccurate personal data
  • Erasure - Request deletion of your personal data
  • Restriction - Request restriction of processing
  • Portability - Receive your data in a machine-readable format
  • Object - Object to processing based on legitimate interest
  • Withdraw consent - Withdraw consent at any time (newsletter, cookies)

To exercise any of these rights, email [email protected]. We respond within 30 days.

SiteX CMS Software - GDPR Features

SiteX CMS includes built-in features to help your websites comply with GDPR:

Cookie Consent

  • Built-in cookie consent banner with accept/decline options
  • Non-essential cookies (analytics) are blocked until consent is given
  • Consent preference is stored and remembered

Newsletter

  • Double opt-in support for email subscriptions
  • One-click unsubscribe in every email
  • Subscriber data export (CSV) for data portability requests
  • Easy deletion of individual subscriber records

Comments

  • Comments collect only name and email (minimal data)
  • Admin tools to edit or delete comments (right to erasure)
  • IP addresses in comments can be anonymized via settings

Data Management

  • All user data is stored in your own database - you have full control
  • Built-in tools to export user data (data portability)
  • No data sent to third parties by default
  • Self-hosted - your data never leaves your server

Data Processing Agreements

If you need a Data Processing Agreement (DPA) for your use of SiteX CMS, contact us at [email protected].

Contact

For GDPR-related inquiries: