Your organisation's data is region-locked: it stays in the region that applies to your organisation.
ReFresh hosts data regionally and does not move your operational or workforce data between regions.
The only data shared across regions is ReFresh's own reference library (compliance frameworks and control templates), which contains no customer data.
For the current hosting provider, data-centre regions, sub-processors, and certifications, see the ReFresh Trust Centre.
How data residency works
ReFresh runs regionally. Each organisation is assigned a data region, and all of your data, including surveys, risk assessments, controls, incidents, documents, and worker records, is stored and processed in that region. Your data does not leave its region.
As ReFresh takes on customers in new regions, it enables hosting in those regions, so each organisation's data can be kept within its own jurisdiction.
What stays in your region, and what does not: Everything specific to your organisation stays in your region. The only thing shared across regions is ReFresh's compliance library (the framework, control, and template definitions ReFresh maintains for every customer). That library holds no customer data.
Sub-processors and data processing
ReFresh uses a small number of operational sub-processors to run the service, and applies encryption both in transit and at rest. Personal data is handled under a Data Processing Agreement (DPA).
For the current list of sub-processors, the regions ReFresh operates in, DPAs, and audit and certification evidence, see the ReFresh Trust Centre. Your ReFresh account contact can also provide a DPA and the sub-processor list for procurement or tender responses.
