Product
Pricing
arrow
Get Proxies
arrow
Use Cases
arrow
Locations
arrow
Help Center
arrow
Program
arrow
Email
Enterprise Service
menu
Email
Enterprise Service
Submit
Basic information
Waiting for a reply
Your form has been submitted. We'll contact you in 24 hours.
Close
Home/ Blog/ What are the key points of Oxylabs Proxy's legal compliance policy (e.g. GDPR, CCPA)?

What are the key points of Oxylabs Proxy's legal compliance policy (e.g. GDPR, CCPA)?

PYPROXY PYPROXY · Jun 05, 2025

Oxylabs, as a leading proxy service provider, adheres to strict legal compliance policies to ensure user privacy and data protection. These policies are primarily influenced by regulations such as the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). These laws aim to safeguard personal information, provide transparency in data processing, and give consumers control over how their data is used. In this article, we will explore the essential aspects of Oxylabs’ legal compliance, focusing on the key points of GDPR and CCPA, and how they affect both the company and its customers. Understanding these regulations is critical for customers who wish to make informed decisions about data privacy and security.

GDPR: General Data Protection Regulation

The GDPR, enacted by the European Union (EU) in 2018, has set a high standard for data protection across member states. Its primary objective is to protect the privacy and rights of individuals regarding their personal data. Oxylabs, as a responsible proxy service provider, ensures full compliance with GDPR. Below are the main points of GDPR compliance that are relevant for customers:

1. Data Minimization and Purpose Limitation

GDPR emphasizes the principle of data minimization, meaning companies should only collect the data that is necessary for specific, legitimate purposes. Oxylabs ensures that only the data required for providing its services is processed, thus minimizing any unnecessary collection of personal information.

The regulation also enforces the principle of purpose limitation, which means data should only be used for the purpose for which it was collected. Oxylabs guarantees that any data collected from its customers will be used exclusively for the purposes outlined in their terms of service and privacy policy.

2. User Consent and Transparency

One of the most important aspects of GDPR is user consent. Oxylabs collects personal data only after obtaining explicit consent from users. This consent is informed, meaning users are fully aware of how their data will be used. The company ensures that its privacy policies are clear and accessible to provide transparency.

Furthermore, Oxylabs allows users to withdraw consent at any time, giving them the power to manage their privacy preferences. Users can request access to the data collected, request its deletion, or modify their data as needed.

3. Data Security and Breach Notification

Oxylabs complies with GDPR’s stringent data security requirements. The company employs various technical and organizational measures to safeguard personal data from unauthorized access, alteration, or destruction. These measures include encryption, firewalls, and secure data storage systems.

In the event of a data breach, Oxylabs is required to notify users within 72 hours of detecting the breach, in accordance with GDPR’s breach notification requirements. This ensures that customers are promptly informed if their personal data is at risk.

4. Data Subject Rights

GDPR grants individuals several rights regarding their personal data. These rights include the right to access, the right to rectification, the right to erasure (also known as the “right to be forgotten”), and the right to data portability. Oxylabs respects these rights and provides customers with mechanisms to exercise them.

For instance, users can request a copy of their personal data, request corrections to any inaccuracies, or ask for their data to be deleted when it is no longer necessary for the purposes it was collected.

CCPA: California Consumer Privacy Act

The CCPA, which came into effect in 2020, is a data privacy law that applies to businesses operating in California. It provides California residents with more control over their personal information, including the right to know what data is being collected, to request its deletion, and to opt out of the sale of their personal data. Oxylabs is fully committed to complying with the CCPA, especially for its California-based customers.

1. Right to Know and Access Personal Information

Under the CCPA, users have the right to know what personal data a business collects about them and how it is used. Oxylabs ensures that customers are informed about the categories of personal data collected and the purposes for which this data is used.

Customers can request detailed information about the data Oxylabs holds on them, including the sources from which the data was collected, the categories of third parties with whom the data is shared, and the specific pieces of personal information held.

2. Right to Delete Personal Information

The CCPA grants consumers the right to request the deletion of their personal information. Oxylabs complies with this provision by allowing customers to submit requests for the deletion of their personal data.

Once a request is made, Oxylabs verifies the identity of the individual and processes the request in a timely manner. However, there are exceptions under which data may be retained, such as for legal compliance or legitimate business purposes.

3. Right to Opt-Out of the Sale of Personal Data

Although Oxylabs is a proxy service provider and does not engage in selling personal data, the CCPA provides customers with the right to opt out of the sale of their personal information. Oxylabs ensures that customers are not subjected to any unauthorized sale of their data and implements measures to guarantee compliance with this right.

4. Non-Discrimination and Equal Service

The CCPA prohibits businesses from discriminating against consumers who exercise their privacy rights. Oxylabs adheres to this principle and ensures that customers who request to access, delete, or opt-out of data sales receive the same level of service and pricing as other customers.

Challenges in Legal Compliance

For any company operating internationally, ensuring compliance with regulations such as GDPR and CCPA presents significant challenges. With Oxylabs serving a global customer base, it must stay updated with the constantly evolving data protection laws in different regions. Additionally, the complexity of managing user data across various jurisdictions requires continuous effort to ensure that all policies are adhered to in full.

Oxylabs is committed to addressing these challenges by implementing advanced privacy practices, conducting regular audits, and maintaining clear communication with customers regarding any updates to its policies.

Conclusion: Commitment to Privacy and Legal Compliance

Oxylabs’ commitment to privacy and legal compliance is demonstrated through its adherence to regulations such as GDPR and CCPA. By prioritizing data protection and providing transparency, Oxylabs ensures that customers can use its services with confidence, knowing that their personal data is being handled responsibly. Customers should be aware of their rights under these regulations and take advantage of the tools provided by Oxylabs to manage their privacy preferences.

Related Posts

Clicky