Data Processing Addendum

How Rival processes personal data on behalf of customers, including GDPR, UK DPA, and CCPA commitments.

Overview

This Data Processing Addendum forms part of the Terms of Service between the customer and Rival. It applies when Rival processes personal data on behalf of the customer in connection with the Services.

Roles and Scope

For applicable privacy laws, the customer acts as the Business or Data Controller, and Rival acts as the Service Provider or Data Processor.

Rival Obligations

Rival processes Customer Data only on documented instructions, maintains confidentiality obligations, implements appropriate security safeguards, manages subprocessors under equivalent data-protection terms, assists with data subject requests, notifies customers of relevant data breaches, and makes compliance information available for audit.

International Transfers

Where personal data is transferred from the EEA or UK, Rival uses approved Standard Contractual Clauses or equivalent safeguards.

Retention and Deletion

Upon termination or expiration, Rival will delete or return Customer Data within a reasonable period unless retention is required or authorized by law.

Create a free website with Framer, the website builder loved by startups, designers and agencies.