Last updated: May 17, 2026
The General Data Protection Regulation (GDPR) is a European Union (EU) regulation that establishes a framework for handling and processing personal data of EU residents. Any business processing personal data (collecting, recording, storing, using, etc.) of EU residents must comply with GDPR. The regulation came into effect on May 25, 2018.
Territorial Scope: GDPR applies to Needle because we process personal data of EU residents. We are fully committed to GDPR compliance.
GDPR gives you, as a data subject, the following rights and benefits:
Needle welcomes GDPR and is fully committed to achieving compliance. We understand our obligations to our users and value your personal data rights. Here's what we have implemented:
We have thoroughly analyzed GDPR requirements and implemented all necessary compliance measures.
We have identified all personal data collected, stored, used, and disposed, with clear retention policies.
We provide full transparency on how collected personal data is used, with detailed privacy policies and data processing information.
We implement industry-standard encryption (AES-256), secure cloud infrastructure, and regular security audits.
We provide streamlined data export capabilities in machine-readable formats (JSON, CSV) for all your data.
All GDPR rights are implemented with easy-to-use features in your Settings.
Needle lets you delete your account and all associated data permanently. This includes:
Application content above is removed when you delete your account. For legal compliance and security we may retain a minimal record (such as your email and optional exit reason) for a limited period as described in our Privacy Policy (Section 5.5).
Warning: This action is irreversible. All your data will be permanently deleted within 24 hours.
Go to Settings → Privacy & Data Rights → Account Deletion
GDPR includes a right for individuals to have inaccurate personal data rectified, or completed if it is incomplete. In Needle, you can:
Needle lets you export all your data in machine-readable formats. Your export includes:
Formats: JSON (machine-readable) and CSV (human-readable). Exports are available for 24 hours after generation.
Go to Settings → Privacy & Data Rights → Data Export
You can withdraw your consent for analytics tracking and marketing communications at any time:
Note: Withdrawing consent takes effect immediately. Essential cookies cannot be disabled as they are required for service operation.
Go to Settings → Privacy & Data Rights → Consent Management
Yes. Needle is committed to transparent and secure handling of all personal data. Our processes have been reviewed to ensure we fully meet the requirements set forth in the EU General Data Protection Regulation (GDPR). We have implemented all necessary technical and organizational measures to protect your data.
Needle acts as both a data controller and a data processor. Needle acts as a data controller for user information that we collect to provide our service and customer support. When processing your personal data for service delivery, Needle acts as a data processor in compliance with GDPR requirements.
Yes. If GDPR applies to your organization and you need a DPA to satisfy GDPR requirements, Needle makes one available at: Data Processing Addendum.
For questions or to execute a DPA, please contact support@useneedle.net.
Needle lets you delete your account and all associated data permanently. To delete your data:
Important: Account deletion is permanent and irreversible. All your data will be deleted within 24 hours. You will be logged out immediately after requesting deletion.
Needle lets you export all your data in machine-readable formats (JSON, CSV). To export your data:
Note: Exports are rate-limited to 1 export per 24 hours. Export files are available for 24 hours after generation, then automatically deleted.
All data, including personal data, is protected by:
You can opt out of analytics tracking in two ways:
Opting out takes effect immediately. No analytics events will be tracked after you withdraw consent.
GDPR includes a right for individuals to have inaccurate personal data rectified. In Needle, you can:
For name and photo: if your account is linked to Google sign-in, update your Google Account- changes sync on your next login. If you signed in with email link, your display name comes from your email; update other details in Settings.
Needle uses data centers and services that comply with GDPR requirements:
All data transfers are protected by Standard Contractual Clauses (SCCs) where applicable. You do not need to move your data manually.
Needle is operated by the business identified below. Details are published in good faith for transparency and support. If you believe any item is incorrect or out of date, email support@useneedle.net and we will correct this page after verification where appropriate.
Please feel free to reach out to Needle Support for any questions about GDPR, data protection, or your rights. We'd be happy to clarify any doubt.
Support: support@useneedle.net
We at Needle are committed to providing a product that enables our users to use our service responsibly by implementing and adhering to prescribed compliance policies, both as a data controller and processor. GDPR enforcement is critical to our mission of providing EU and all our global users with safe and dependable customer discovery software.
For more information or questions about the Needle Privacy Policy, please view our Privacy Policy or contact support@useneedle.net.