Data Processing Agreement
Last updated: July 2026.
1. Roles
Customer is the Controller; Lojycal is the Processor. Sub-processors act under Lojycal's instructions per the Sub-processor list.
2. Subject matter & duration
Processing takes place for the duration of the subscription and covers personal data submitted to the Workplace Operations Graph (employee directory, access, assets, contracts, procurement, compliance events).
3. Instructions & lawfulness
Lojycal processes personal data only on documented instructions from the Customer, including with regard to international transfers, unless required otherwise by EU or Member State law.
4. Security measures
TLS in transit; encryption at rest; per-tenant Row-Level Security; AAL2 for privileged roles; WORM audit logs; least-privilege access to production data; regular restore tests.
5. Sub-processors
Current sub-processors are published at /sub-processors. Customers receive at least 30 days' notice of material additions and may object.
6. International transfers
Where personal data is transferred outside the EEA, Lojycal relies on the EU Standard Contractual Clauses (2021/914) and supplementary measures.
7. Data subject requests & breach notification
Lojycal will assist Customer with data-subject requests and notify Customer without undue delay (target: 72 hours) after becoming aware of a personal data breach.
8. Return & deletion
Upon termination, Customer may export data via the Tenant Migration Pack for 30 days; Lojycal will delete or return remaining copies thereafter subject to statutory retention.