Data Processing Addendum
Last Updated: January 2, 2026
This Data Processing Addendum (“DPA”) forms part of the **Terms of Service** between **Axlaas Ltd** (“Axlaas”, “we”, “our”, “us”) and the Customer (“you”, “Customer”).
It applies where Axlaas processes **Personal Data** on behalf of the Customer in connection with the use of the Axlaas Platform.
1. Purpose & Scope
This DPA defines the data protection obligations of the parties in accordance with GDPR (EU Regulation 2016/679) and other applicable privacy laws. It applies **only** to Personal Data processed by Axlaas as a **Data Processor** on behalf of the Customer.
2. Roles of the Parties
Customer
Data Controller
Determines the purposes and means of processing Personal Data.
Axlaas
Data Processor
Processes Personal Data only on documented instructions from the Customer.
3. Categories of Data
Data Subjects
Customer employees, contractors, clients, end users, and vendors.
Types of Data
- Identification data (name, email, phone)
- Professional data (job title, company)
- Account and usage data
- Communication records
- Transactional and billing metadata
4. Processing Activities
We process data to provide the Platform, enable AI automation, provide support, and maintain security.
5. Security Measures
Axlaas implements enterprise-grade security including:
- Encryption (transit/rest)
- Tenant isolation
- Role-based access controls
- Audit logging & monitoring
6. International Transfers
Data may be processed outside the Customer's country, subject to adequate safeguards and Standard Contractual Clauses (SCCs).
7. Retention & Deletion
Personal Data is retained only as long as necessary. Upon termination, data may be deleted or returned upon request, subject to legal requirements.
Data Protection Inquiries
Have specific questions about data processing? Reach out to our privacy team.
contact@axlaas.com