Data Processing Agreement

Last updated: July 2026.

1. Roles

Customer is the Controller; Lojycal is the Processor. Sub-processors act under Lojycal's instructions per the Sub-processor list.

2. Subject matter & duration

Processing takes place for the duration of the subscription and covers personal data submitted to the Workplace Operations Graph (employee directory, access, assets, contracts, procurement, compliance events).

3. Instructions & lawfulness

Lojycal processes personal data only on documented instructions from the Customer, including with regard to international transfers, unless required otherwise by EU or Member State law.

4. Security measures

TLS in transit; encryption at rest; per-tenant Row-Level Security; AAL2 for privileged roles; WORM audit logs; least-privilege access to production data; regular restore tests.

5. Sub-processors

Current sub-processors are published at /sub-processors. Customers receive at least 30 days' notice of material additions and may object.

6. International transfers

Where personal data is transferred outside the EEA, Lojycal relies on the EU Standard Contractual Clauses (2021/914) and supplementary measures.

7. Data subject requests & breach notification

Lojycal will assist Customer with data-subject requests and notify Customer without undue delay (target: 72 hours) after becoming aware of a personal data breach.

8. Return & deletion

Upon termination, Customer may export data via the Tenant Migration Pack for 30 days; Lojycal will delete or return remaining copies thereafter subject to statutory retention.