Legal Documentation

Data Processing Agreement

Our commitment to protecting your data as outlined in our GDPR-compliant Data Processing Agreement.

What is a Data Processing Agreement?

A Data Processing Agreement (DPA) is a legally binding contract between a data controller (you) and a data processor (us) that governs how personal data is processed. Under GDPR Article 28, this agreement is required whenever a processor handles personal data on behalf of a controller.

GDPR Compliant

Fully aligned with GDPR Article 28 requirements

Data Security

Enterprise-grade security measures and encryption

Sub-processors

Transparent list of vetted sub-processors

Data Transfers

Standard Contractual Clauses for international transfers

Who Needs a Signed DPA?

If you're subject to GDPR or other data protection regulations and collect personal data through our forms, you should have a signed DPA in place. This is particularly important for:

  • • Organizations based in the EU/EEA
  • • Organizations processing EU residents' data
  • • Healthcare, financial, or other regulated industries
  • • Enterprise customers with compliance requirements

Agreement Terms

Our Certifications & Compliance

SOC 2 Type II

Certified

ISO 27001

Certified

GDPR

Compliant

CCPA

Compliant

Request a Signed DPA

Enterprise customers can request a countersigned Data Processing Agreement. Our legal team typically processes requests within 5 business days.

Email Request

Send your request to our legal team

legal@formbuilder.com

Download Template

Get our standard DPA template

Last updated: December 1, 2023

This DPA supplements our Privacy Policy and Terms of Service

For questions about this DPA, contact: dpo@formbuilder.com