Data Processing Addendum (DPA)

Last Updated: December 2024

For clients subject to the General Data Protection Regulation (GDPR) or similar data protection laws, RiskAI offers a comprehensive Data Processing Addendum (DPA) that governs our processing of personal data on your behalf.

What is a Data Processing Addendum?

A Data Processing Addendum (DPA) is a legally binding agreement that outlines the terms and conditions under which RiskAI processes personal data on behalf of our clients. It ensures compliance with GDPR Article 28 requirements and provides clear obligations for both parties regarding data protection and privacy.

1. Why You Need a DPA

If your organization processes personal data and uses RiskAI's services, you likely need a DPA to:

2. Our DPA Coverage

2.1 Applicable Regulations

Our DPA covers compliance with:

2.2 Processing Activities

Our DPA covers all processing activities including:

3. Key DPA Provisions

3.1 Data Controller and Processor Roles

3.2 Processing Instructions

3.3 Security Measures

3.4 Subprocessors

4. Data Subject Rights

4.1 Rights Support

Our DPA includes provisions for supporting data subject rights:

4.2 Response Procedures

5. Audit and Compliance

5.1 Audit Rights

5.2 Compliance Monitoring

6. Data Breach Response

6.1 Breach Notification

6.2 Incident Response

7. International Data Transfers

7.1 Transfer Safeguards

7.2 Geographic Restrictions

8. Termination and Data Return

8.1 Termination Procedures

8.2 Data Disposal

9. Liability and Indemnification

9.1 Liability Provisions

10. How to Request a DPA

Ready to Get Started?

Request a signed Data Processing Addendum to ensure GDPR compliance and protect your organization's data processing activities.

Request DPA

10.1 Request Process

  1. Contact Us: Send an email to privacy@riskai.tech with "DPA Request" in the subject line
  2. Provide Information: Include your company name, contact details, and any specific requirements
  3. Review & Customization: We'll review your requirements and customize the DPA if needed
  4. Execution: Both parties will sign the DPA to make it legally binding
  5. Implementation: The DPA will govern our data processing relationship going forward

10.2 Required Information

To expedite your DPA request, please provide:

11. Contact Information

For DPA-related inquiries and requests:

Legal Team:
Email: privacy@riskai.tech

Data Protection Officer:
Email: dpo@riskai.tech
Address: Dorothee-Sölle-Platz 2, 50672 Köln, Germany

Last Updated: December 2024

This DPA information is provided for informational purposes. The actual DPA terms will be set forth in the signed agreement between RiskAI and your organization.