Infrastructure
Hosting & Infrastructure
Courtesy translation. This English text is provided for convenience only. The French version of this page is the binding one; in case of any discrepancy, the French text prevails.
Preamble
This page describes the technical infrastructure on which sho-slave.xxx runs, together with the measures put in place to ensure the security, confidentiality and sovereignty of the data. It supplements the site's legal notice and privacy policy.
The site is a personal and artistic space reserved for adults (18 and over), with a non-commercial purpose: it offers no sale of goods or services, no transaction and no online payment. The information below is provided in a spirit of transparency and carries no guarantee of result as to the availability or absolute inviolability of any computer system.
Host
The site is hosted by the following provider:
- Name / company name: OVH SAS (OVHcloud)
- Registered office: 2 rue Kellermann, 59100 Roubaix, France
- Contact: https://www.ovhcloud.com — +33 9 72 10 10 07
For any question about the site's content, the only contact channel remains [email protected]. The host is not the publisher of the site and plays no part in its editorial line or in the moderation of published content.
Data located in the European Union
The site's data — files, database, backups and technical logs — is stored and processed on servers located within the European Union.
This choice aims to guarantee the application of the General Data Protection Regulation (GDPR, Regulation (EU) 2016/679) and to limit, as far as possible, any transfer of personal data outside the European Economic Area. Where a technical process nonetheless involves a party located outside the EU (see the section on the network/CDN), it is covered by the appropriate safeguards provided for by the GDPR.
Network and CDN: Cloudflare in front of the site
A content delivery network (CDN) and a reverse-proxy service provided by Cloudflare sit in front of the site. This setup:
- speeds up content delivery (static caching, network optimisation);
- provides TLS/HTTPS termination as well as protection against denial-of-service (DDoS) attacks and filtering of malicious traffic;
- masks and protects the address of the origin servers.
As part of this service, certain technical connection data (for example the IP address, request headers or security data) may pass through Cloudflare's infrastructure, part of which may be located outside the European Union. Such processing is limited to what is strictly necessary for the site's security and performance, and is covered by the applicable contractual and regulatory safeguards.
Note that the site's audience measurement is carried out using a self-hosted eTrack instance, without cookies and anonymously: no advertising tracker is set and no prior consent is required on that account.
Security measures
Reasonable technical and organisational measures are implemented in order to preserve the integrity, availability and confidentiality of the data:
- Encryption in transit: all communication between the visitor and the site is encrypted over HTTPS / TLS; insecure connections are redirected to HTTPS.
- Encryption at rest: stored data, including the database and files, benefits from encryption-at-rest mechanisms.
- Restricted access: access to the administration infrastructure is limited to authorised persons only, protected by authentication and following the principle of least privilege.
- Encrypted backups: regular, encrypted backups are taken so that the service can be restored in the event of an incident.
- Perimeter protection: traffic filtering, anti-DDoS protection and a web application firewall at the front-end network level.
- Logging and monitoring: technical logs are kept for the security and proper operation of the service, for a limited and proportionate period.
Despite the care taken over these measures, no computer system can be guaranteed to be entirely inviolable. The publisher cannot be held liable for damage resulting from unauthorised access, a malicious act by a third party, a failure of public networks or any event beyond their reasonable control.
Commitment to confidentiality and data sovereignty
The publisher undertakes to process any data collected — namely, mainly, the e-mail addresses gathered through newsletter sign-up (with double opt-in) and the messages sent through the contact form — in strict compliance with the GDPR and according to the following principles:
- Minimisation: only the data necessary for the stated purposes is collected; the site offers no public account.
- Specified purpose: data is used only for the purposes for which it was provided (sending the newsletter, replying to messages) and is subject to no resale or transfer to third parties for commercial purposes.
- Sovereignty: priority is given to hosting and processing within the European Union, under European data protection law.
- Security: the measures described above are applied in order to protect this data against loss, alteration or unauthorised access.
- Individual rights: in accordance with the regulation, anyone may exercise their rights of access, rectification, erasure, objection and portability by writing to [email protected]. Unsubscribing from the newsletter is possible at any time via the link provided for that purpose in every message.
For details of the processing operations, retention periods and how to exercise your rights, please refer to the site's privacy policy.
Last updated: 20 August 2026. Information about the host and the infrastructure may change; the most recent online version of this page is the one that applies.