How to Deploy OpenClaw in Europe (GDPR)
Run your AI agent on European servers for GDPR compliance and data residency requirements.
Introduction
If you or your customers are in the European Union, GDPR requires that personal data be handled with appropriate safeguards. KiwiClaw supports European deployment regions, ensuring your AI agent and its data stay within EU borders. This guide covers setting up an EU-based agent.
Prerequisites
- A KiwiClaw account (setup guide)
- Understanding of your GDPR obligations (controller vs processor)
- Enterprise plan recommended for full DPA coverage
Step-by-Step Instructions
Step 1: Select a European Region
During agent creation, choose a European deployment region. KiwiClaw provisions your dedicated machine on Fly.io infrastructure within the EU.
Step 2: Configure Data Residency
Your agent's data -- conversations, files, and configuration -- stays in the selected European region. No data crosses borders unless you explicitly connect to external services.
Step 3: Review LLM Routing
On the Standard plan, LLM requests are routed through KiwiClaw's proxy. For maximum data control, consider the BYOK plan with an EU-based API provider.
Step 4: Request a DPA
Enterprise customers can request a Data Processing Agreement. Contact our sales team for DPA details and compliance documentation.
Step 5: Configure Data Retention
Set data retention policies in your agent settings. Configure how long conversation history and files are retained, in compliance with your GDPR obligations.
Pro Tips
- Use BYOK with EU-based providers -- For the strongest data residency guarantee, use your own API keys from providers with EU data centers.
- Document your processing activities -- Use your agent's audit log to maintain records of data processing activities.
- Review skill data flows -- When installing skills, check whether they send data to external services outside the EU.
- See our security page for details on our infrastructure and compliance posture.
Frequently Asked Questions
Does KiwiClaw offer GDPR-compliant hosting?
Yes. KiwiClaw supports European deployment regions where your agent and its data reside within the EU. Enterprise customers can request a Data Processing Agreement (DPA) for formal GDPR compliance documentation.
Where exactly is my data stored?
Your agent runs on a dedicated Fly.io machine in your selected region. Conversation data, files, and configuration are stored on that machine. Database records are stored in Neon PostgreSQL, which also supports European regions.
Can I use KiwiClaw for HIPAA-compliant workloads?
HIPAA compliance requires a Business Associate Agreement (BAA) and specific technical controls. Contact our enterprise sales team to discuss HIPAA requirements. Standard plans are not HIPAA-compliant.