Is Stape GDPR compliant?
Yes, Stape is fully GDPR compliant. Stape acts as a data processor and complies with applicable GDPR requirements. Stape maintains appropriate technical and organisational measures to protect personal data and can provide relevant documentation, such as its Data Processing Agreement, security measures, and applicable audit or compliance reports. This means that Stape only processes and hosts the data you send, doesn’t decide why or how personal data is used, and provides the contracts, EU hosting, and security controls a processor must have. You remain the data controller and are responsible for determining the purposes and means of processing personal data. This includes ensuring that you collect and process data lawfully, transparently, and in accordance with applicable data protection laws. You are also responsible for obtaining and documenting any required consents, informing data subjects of their rights, responding to data subject requests, and ensuring that disclosures to third parties are lawful and appropriately governed.
Stape handles data in the following way:
- Stape only processes and hosts data you submit
- Stape doesn’t decide the purpose of processing
- Stape stores only what you send
For more information you can check Trust Center.
Was this article helpful?
Comments