Data Processing Agreement (template)
Template only. Replace bracketed fields and have legal counsel finalize before use.
1. Parties
This Data Processing Agreement (“DPA”) is between [Customer entity] (“Controller”) and [Your legal entity operating Pulse] (“Processor”).
2. Subject matter and duration
Processor processes personal data on behalf of Controller as described in the agreement governing use of Pulse (“Agreement”) and this DPA, for the term of the Agreement.
3. Nature and purpose
Processing is performed to provide error monitoring, alerts, dashboards, billing, and related support as configured by Controller. Categories of data may include identifiers in stack traces, user context sent by Controller’s applications, account emails, and technical metadata (IPs, timestamps).
4. Processor obligations
Processor will process personal data only on documented instructions from Controller, including those in the Agreement and product configuration, unless required by law.
Processor will ensure persons authorized to process data are bound by confidentiality, implement appropriate technical and organizational measures, assist Controller with data subject requests where feasible, assist with security and breach notifications as required by applicable law, and delete or return data at the end of the service as described in the product (subject to backup and legal retention limits).
5. Subprocessors
Controller authorizes Processor to engage the subprocessors listed at https://pulse.dply.io/subprocessors. Processor will notify Controller of changes as agreed in the Agreement or applicable law.
6. International transfers
Where personal data is transferred across borders, the parties will rely on mechanisms required by applicable law (for example Standard Contractual Clauses).
7. Audits
Processor will make available information reasonably necessary to demonstrate compliance and allow for audits agreed in writing, subject to confidentiality and security constraints.