Skip to content

Commit 33bf816

Browse files
committed
feat(storage): update
1 parent 7daaecf commit 33bf816

File tree

2 files changed

+51
-51
lines changed

2 files changed

+51
-51
lines changed

pages/object-storage/how-to/host-healthcare-data.mdx

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
---
22
title: How to create a compliant bucket to host healthcare data
33
description: This page details the steps to follow to create a compliant bucket using Scaleway Object Storage to host healthcare data
4-
tags:
4+
tags: hds healthcare data health compliant compliance regulatory
55
dates:
66
validation: 2025-11-12
77
posted: 2025-11-12
@@ -44,7 +44,7 @@ To host healthcare data in compliance with HDS requirements, you must create a n
4444

4545
7. Enable [bucket versioning](/object-storage/how-to/use-bucket-versioning/) if you want to store multiple versions of your objects (this may lead to higher storage costs).
4646

47-
8. Optionally, you can use the cost estimator to simulate your Object Storage costs.
47+
8. Optionally, you can use the cost estimator to estimate your Object Storage costs.
4848

4949
9. Click **Create bucket** to confirm.
5050

@@ -82,7 +82,7 @@ Refer to the [dedicated documentation](/object-storage/api-cli/enable-sse-c/) fo
8282

8383
### Customer-side encryption
8484

85-
Customer-side encryption ensures that sensitive data is protected before reaching Scaleway Object Storage, giving you control over the encryption mechanism, and keys management. This method must be used in combination with [Scaleway's HDS-compliant deletion method](#deleting-objects-with-customer-side-encryption).
85+
Customer-side encryption ensures that sensitive data is protected before reaching Scaleway Object Storage, giving you control over the encryption mechanism, and key management. This method must be used in combination with [Scaleway's HDS-compliant deletion method](#deleting-objects-with-customer-side-encryption).
8686

8787
## How to delete objects
8888

pages/object-storage/reference-content/storage-shared-responsibility-model.mdx

Lines changed: 48 additions & 48 deletions
Original file line numberDiff line numberDiff line change
@@ -9,55 +9,55 @@ dates:
99

1010
This document outlines the roles and responsibilities for maintaining and securing your Scaleway storage services, Block Storage and Object Storage including Glacier. Our shared responsibility model clarifies the division of duties between Scaleway and our users, ensuring clarity in managing availability, backups, configurations, and security measures for your storage solutions. By understanding this shared responsibility, you can optimize the performance, reliability, and security of your Scaleway storage services.
1111

12-
## Service Provision
12+
## Service provision
1313

1414
Scaleway is responsible for the operational maintenance of all components essential to providing the Service. These include:
1515

16-
* **Physical Infrastructure:** Managing the physical sites that house the hardware infrastructure used for the Service.
16+
* **Physical infrastructure:** Managing the physical sites that house the hardware infrastructure used for the Service.
1717

18-
* **Hardware Infrastructure:** Maintaining the underlying hardware. Monitors resource utilization rate and updates its capacity plan.
18+
* **Hardware infrastructure:** Maintaining the underlying hardware. Monitors resource utilization rate and updates its capacity plan.
1919

20-
* **Virtual Infrastructure:** Ensuring the functionality of the virtualized environment.
20+
* **Virtual infrastructure:** Ensuring the functionality of the virtualized environment.
2121

22-
* **Hosting Platform:** Operating the application and database hosting platform.
22+
* **Hosting platform:** Operating the application and database hosting platform.
2323

24-
* **Network:** Establishes storage space connectivity in its default configuration.
24+
* **Network:** Establishing storage space connectivity in its default configuration.
2525

26-
* **Applications and Databases:** Maintaining the applications and databases themselves.
26+
* **Applications and databases:** Maintaining the applications and databases themselves.
2727

2828
Furthermore, Scaleway procures the necessary licenses and usage rights for any third-party solutions that are either used by Scaleway in delivering the Service or made available to the client as part of the Service. It provides the client with necessary information regarding the characteristics and conditions of use of the Service. It also plans and implements updates to the various Service components also considering third-party products used within the Service.
2929

3030
You are responsible to ensure that users comply with the Service's terms of use.
3131

32-
Scaleway is responsible for monitoring, managing, and forecasting the Services APIs and physical clusters capacity.
32+
Scaleway is responsible for monitoring, managing, and forecasting the Service APIs and physical cluster capacity.
3333

34-
You are responsible for informing Scaleway ahead of time for significant changes in your storage capacity forecast.
34+
You are responsible for informing Scaleway ahead of time of significant changes in your storage capacity forecast.
3535

36-
## Logs and Monitoring
36+
## Logs and monitoring
3737

3838
Scaleway is responsible for the proper monitoring of the Service, including:
3939

4040
* Retaining access logs and event traces related to the use and administration of the Services, such as objects and storage spaces (volumes, buckets) creation and deletion, server configuration (including physical and software resource configuration), and user and access rights additions and deletions.
4141

4242
* Making access logs and event traces available to the client upon request.
4343

44-
### Your Responsibilities
44+
### Your responsibilities
4545

4646
* Retain access logs and event traces provided by the Service Provider.
4747

4848
* Ensure the successful completion of tasks performed while using the Service (e.g., volume creation for Block Storage, implementing integrity checksums for Object Storage).
4949

50-
* Monitoring the available and remaining space within your provisionned volumes.
50+
* Monitor the available and remaining space within your provisioned volumes.
5151

52-
## Product Resiliency
52+
## Product resiliency
5353

54-
### Availability and Steadiness
54+
### Availability and steadiness
5555

56-
Scaleway ensures high availability through resilient infrastructure, technical and organizational measures, including monitoring service health and incident detection for the data hosted within the Service. Scaleway provides and maintains the operational condition of the control plane and APIs.
56+
Scaleway ensures high availability through resilient infrastructure, and technical and organizational measures, including monitoring service health and incident detection for the data hosted within the Service. Scaleway provides and maintains the operational condition of the control plane and APIs.
5757

5858
Scaleway is responsible for:
5959

60-
* Implementing resiliency for the Services at least within an Availability Zone (AZ), and for multi-AZ storage tiers only across multiple Availability Zones.
60+
* Implementing resiliency for the Services within at least an Availability Zone (AZ), and for multi-AZ storage tiers only, across multiple Availability Zones.
6161

6262
* Monitoring service health, performance, and balancing the load of use of the Service.
6363

@@ -67,15 +67,15 @@ You are responsible for:
6767

6868
* Configuring the Service in accordance with your needs, particularly in terms of availability.
6969

70-
* Monitoring and notifying breaches of Service Level Agreement concerning the availability of the service.
70+
* Monitoring and notifying us of breaches of Service Level Agreement concerning the availability of the service.
7171

7272
#### Performance
7373

74-
You are responsible for optimizing your applications' use of Storage Services. Scaleway monitors and optimize infrastructure-level performance, but note that:
74+
You are responsible for optimizing your applications' use of Storage Services. Scaleway monitors and optimizes infrastructure-level performance, but note that:
7575

7676
* Glacier cold storage data access requires object restoration and can incur delays,
7777

78-
* For Object Storage Service, multipart uploads and concurrent requests should be used for large files.
78+
* For the Object Storage Service, multipart uploads and concurrent requests should be used for large files.
7979

8080
**Data Integrity**
8181

@@ -85,27 +85,27 @@ For all Storage Services, you are responsible for:
8585

8686
* Verifying the successful completion and integrity of backups.
8787

88-
For the Object Storage Service, Scaleway provides a checksum of each uploaded object allowing the client to perform integrity control or control the integrity of the checksum provided to the client at the time of upload, if applicable.
88+
For the Object Storage Service, Scaleway provides a checksum of each uploaded object, allowing the client to perform integrity control or control the integrity of the checksum provided to the client at the time of upload, if applicable.
8989

9090
You are responsible for:
9191

9292
* Verifying the successful completion of the upload via a checksum control.
9393

9494
* Controlling the availability and integrity of objects, and restoring damaged objects.
9595

96-
## Backups and Replication
96+
## Backups and replication
9797

9898
While Scaleway provides internal resiliency mechanisms and features, it is your responsibility to implement a backup strategy appropriate to your needs and the criticality of your activities, including:
9999

100100
* External backups.
101101

102102
* Replication to other regions (as allowed by regulations).
103103

104-
* Management over your backups and snapshots, and regular control of their integrity.
104+
* Management of your backups and snapshots, and regular verification of their integrity.
105105

106106
Internal resilience does not protect against accidental deletions or application-level corruption.
107107

108-
## Configuration and Management
108+
## Configuration and management
109109

110110
Scaleway is responsible for the configuration of API and dataplane settings.
111111

@@ -117,39 +117,39 @@ You are responsible for:
117117

118118
* Provisioning additional space or storage spaces according to your needs
119119

120-
* Managing volumes attachment, detachment and deletion according to your needs
120+
* Managing volume attachment, detachment, and deletion according to your needs
121121

122-
* Managing snapshots and snapshots deletion according to your needs
122+
* Managing snapshots, and snapshots deletion according to your needs
123123

124-
### Object Storage Class & Lifecycle Rules
124+
### Object Storage class & lifecycle rules
125125

126-
You are responsible for selecting appropriate storage classes, cleanup unnecessary parts or data, and using lifecycle rules according to your needs. Note that a delay may occur if transitioning or expiring a high number of objects through lifecycle rules per day.
126+
You are responsible for selecting appropriate storage classes, cleaning up unnecessary parts or data, and using lifecycle rules according to your needs. Note that a delay may occur if transitioning or expiring a high number of objects through lifecycle rules per day.
127127

128-
### Access Control
128+
### Access control
129129

130130
Scaleway provides versioning, IAM, and specific Service-level access control tools (ACLs, bucket policies.)
131131

132-
You are responsible for managing authorizations and access of your personnel to the Service (Console, API and storage spaces), also ensuring the security of your personnel's authentication means. Your responsibilities include:
132+
You are responsible for managing authorizations and access of your personnel to the Service (Console, API and storage spaces), and for ensuring the security of your personnel's authentication means. Your responsibilities include:
133133

134134
* Ensuring public visibility settings align with your intentions.
135135

136136
* Regularly reviewing access rules and permissions.
137137

138138
* Activating two-factor authentication (2FA).
139139

140-
* Configuring bucket policies (access limitation under certain conditions such as IP with white list and black list (allow or deny, IP range)).
140+
* Configuring bucket policies (enforcing access limitations under certain conditions such as whitelisting or blacklisting certain IPs (allow or deny, IP range)).
141141

142-
Scaleway enforces your configurations but does not intervene in their definition or maintenance.
142+
Scaleway enforces your configurations but does not intervene in its definition or maintenance.
143143

144144
### Versioning
145145

146-
You are responsible for
146+
You are responsible for:
147147

148148
* Enabling or deactivating versioning for data recovery.
149149

150-
* Managing versioned object lifecycle according to your needs.
150+
* Managing versioned objects' lifecycle according to your needs.
151151

152-
## Encryption and Data Deletion
152+
## Encryption and data deletion
153153

154154
### Encryption
155155

@@ -165,7 +165,7 @@ For client-side encryption or customer-managed encryption keys, you are responsi
165165

166166
* Ensuring data becomes permanently inaccessible when keys are destroyed.
167167

168-
### Encryption in Transit
168+
### Encryption in transit
169169

170170
Scaleway provides secure HTTPS endpoints. You must:
171171

@@ -175,9 +175,9 @@ Scaleway provides secure HTTPS endpoints. You must:
175175

176176
* Validate certificates and enforce TLS in custom tools.
177177

178-
### Data Deletion
178+
### Data deletion
179179

180-
Deletion is initiated only by you, manually or via configured retention rules.
180+
Deletion is initiated only by you, manually, or via configured retention rules.
181181

182182
Scaleway:
183183

@@ -187,15 +187,15 @@ Scaleway:
187187

188188
* Cannot recover data if versioning is not enabled.
189189

190-
## Data Residency
190+
## Data residency
191191

192192
* The customer is responsible for selecting the data location at the time of volume/bucket creation.
193193

194194
* Scaleway commits not to modify the geographical location of data without the prior agreement of the customer.
195195

196196
* The Glacier class systematically stores objects in Paris, regardless of the Region chosen for the bucket.
197197

198-
## Identity and Access Management
198+
## Identity and access management
199199

200200
Scaleway provides tools for access control (IAM, ACLs, and policies). You are responsible for:
201201

@@ -207,9 +207,9 @@ Scaleway provides tools for access control (IAM, ACLs, and policies). You are re
207207

208208
* Detecting and responding to unauthorized access.
209209

210-
## Platform and Service Security
210+
## Platform and service security
211211

212-
### Scaleway Responsibilities
212+
### Scaleway responsibilities
213213

214214
Scaleway ensures:
215215

@@ -227,7 +227,7 @@ Scaleway manages and monitors vulnerabilities related to the provision of its Se
227227

228228
See Security & Resilience and Trust Center.
229229

230-
### User Responsibilities
230+
### User responsibilities
231231

232232
You are responsible for:
233233

@@ -271,7 +271,7 @@ Scaleway undertakes to:
271271

272272
This section outlines the specific requirements and responsibilities for hosting healthcare data in compliance with the HDS regulatory framework.
273273

274-
### HDS Compliance Requirements
274+
### HDS compliance requirements
275275

276276
When storing healthcare data within Scaleway Storage Services, the client is responsible for:
277277

@@ -287,7 +287,7 @@ When storing healthcare data within Scaleway Storage Services, the client is res
287287

288288
Scaleway undertakes to provide HDS-certified infrastructure, and commits to maintain this certification. The loss of said certification may result in the termination of Scaleway’s commercial relationship with the HDS client. The aforementioned elements are included in the HDS contract signed by the client.
289289

290-
### Data Residency
290+
### Data residency
291291

292292
Scaleway guarantees that data remains within the authorized datacenters in Paris and does not access personal health data hosted by the client.
293293

@@ -301,15 +301,15 @@ You must:
301301

302302
You must not configure replication, snapshots, backups or transfer data to regions outside the authorized perimeter.
303303

304-
### HDS-compliant Resources Identification
304+
### HDS-compliant resources identification
305305

306306
You are responsible for:
307307

308308
* Knowing which Storage resources are HDS or not.
309309

310310
* Attaching volumes to HDS-compliant Instances only.
311311

312-
### Block Storage Encryption and Data deletion
312+
### Block Storage encryption and data deletion
313313

314314
Encryption at rest is mandatory for Volumes hosting healthcare data. Deleted data cannot be restored.
315315

@@ -325,7 +325,7 @@ Scaleway is responsible for:
325325

326326
* Managing the lifecycle, rotation and deletion of the disk encryption keys to access the underlying instances.
327327

328-
### Object Storage Encryption and Data deletion
328+
### Object Storage encryption and data deletion
329329

330330
Encryption at rest is mandatory for Object Storage buckets hosting healthcare data, with HDS-compliant key handling by Scaleway. Scaleway provides HDS-compatible mechanisms to encrypt data at rest and guarantee HDS-compliant data deletion.
331331

@@ -347,7 +347,7 @@ When using the Object Storage service, you are required to:
347347

348348
Scaleway must maintain technical guarantees for secure deletion of healthcare data.
349349

350-
### HDS-compliant Storage Classes and Prohibited Features
350+
### HDS-compliant storage classes and prohibited features
351351

352352
For the Object Storage service:
353353

0 commit comments

Comments
 (0)