1. Scope
This Data Processing Addendum ("DPA") applies to the processing of Personal Data by Sigbot on behalf of the Customer as part of the Service.
2. Definitions
Terms such as "Controller", "Processor", "Data Subject", and "Personal Data" shall have the meanings given in the applicable Data Protection Laws (GDPR, UK GDPR, etc.).
3. Roles
The Customer is the Controller and Sigbot is the Processor.
4. Data Processing
Sigbot will process Personal Data only on documented instructions from the Customer, including with regard to transfers of personal data to a third country.
5. Sub-processors
The Customer grants general authorization to Sigbot to engage sub-processors (e.g., Google Cloud, Firebase, Stripe). Sigbot shall ensure sub-processors are bound by data protection obligations compatible with this DPA.
6. Security
Sigbot implements appropriate technical and organizational measures to ensure a level of security appropriate to the risk.
7. Download
To execute this DPA, please download the signed PDF version, countersign it, and return it to legal@sigbot.com.