GDPR & DPA Compliance
Data Processing Addendum (DPA)
Effective date: May 2026 · Standard contractual clauses for B2B Customers
1. Scope and Roles
This Data Processing Addendum (“DPA”) supplements the Agenhub Terms of Service. Under this DPA, the Customer acts as the Data Controller, and Agenhub (a copoint.pro initiative) acts as the Data Processor.
2. Processor Obligations
- Process customer personal data solely to provide, support, and secure the Platform.
- Maintain strict confidentiality among all personnel authorized to access customer data.
- Implement industry-standard technical and organizational security measures (TLS 1.3 in transit, AES-256 at rest, Row Level Security).
- Notify the customer without undue delay upon becoming aware of any confirmed security incident affecting customer data.
- Delete or return all customer data upon workspace termination at the customer's request.
3. Authorized Sub-Processors
The Customer provides general authorization for Agenhub to engage sub-processors (including Supabase for encrypted cloud database hosting, Polar.sh for billing, and Hostinger for edge application serving). Agenhub imposes data protection terms on each sub-processor that are at least as protective as those in this DPA.