RELIANOID Data Processing Agreement (DPA)

Last Reviewed: 6th April 2026
Next Review Due: 6th April 2027
(Public Summary)

Purpose

This Data Processing Agreement (“DPA”) outlines how RELIANOID processes personal data on behalf of its customers in connection with the provision of our load balancing software, hardware, and cloud services. It ensures compliance with applicable data protection regulations, including the General Data Protection Regulation (GDPR).

Scope of Processing

RELIANOID acts as a data processor when handling personal data transmitted through, or stored in, our services. This may include:

  • IP addresses
  • HTTP headers or metadata
  • Admin user account details (name, email)
  • Logs containing end-user identifiers (depending on customer configuration)

Note: RELIANOID does not intentionally access or store application-layer personal data unless provided by the customer.

Roles and Responsibilities

  • Customer (Data Controller): Determines the purpose and means of data processing.
  • RELIANOID (Data Processor): Processes data only on the customer’s documented instructions.

Data Security Measures

RELIANOID maintains technical and organizational safeguards to protect data, including:

  • Encryption in transit and at rest
  • Role-based access controls
  • Logging and monitoring
  • Regular vulnerability and penetration testing
  • Staff training in data privacy and security

RELIANOID applies continuous security monitoring, proactive vulnerability management, and periodic security reviews to strengthen data protection and operational resilience.

Application security practices, secure configuration baselines, and controlled change management procedures are integrated into RELIANOID’s service delivery and product development processes.

Access permissions and administrative privileges are periodically reviewed following least-privilege and security governance principles.

More details are available in our Security and Compliance page.

Data Location and Transfers

Customer data is processed within secure infrastructure environments located across Europe and North America. Cross-border transfers, if any, are governed by Standard Contractual Clauses (SCCs) or equivalent safeguards.

Sub-Processors

RELIANOID uses select sub-processors to support service delivery (e.g., hosting providers, support tools). Each sub-processor is:

  • Bound by equivalent DPA terms
  • Assessed for security and compliance

Sub-processors are periodically reviewed to verify ongoing compliance with security, privacy, and operational resilience requirements.

Data Subject Rights and Assistance

We support our customers in responding to:

  • Access, rectification, and deletion requests
  • Restriction or objection to processing
  • Data portability requests

Data Retention and Deletion

Data is retained only as long as needed for the purpose defined by the customer. Upon contract termination or customer request, data is securely deleted within 90 days.

Breach Notification

In the event of a personal data breach affecting customer data, RELIANOID will:

  • Notify affected customers without undue delay
  • Provide sufficient detail to support regulatory reporting and risk mitigation

Incident response procedures include internal escalation workflows, investigation processes, mitigation activities, and coordinated customer communications when required.

Data Subject Rights & Requests

Under the GDPR, individuals have the right to access, rectify, and erase their personal data, as well as other rights related to the processing of their data. RELIANOID assists clients in managing data subject requests by providing clear processes for:

  • Access requests: Allowing individuals to request copies of their personal data.
  • Rectification: Enabling individuals to correct inaccurate or incomplete data.
  • Erasure requests: Facilitating individuals’ requests to delete their personal data when applicable.

We work closely with our clients to ensure that data subject rights are respected and that requests are addressed promptly.

RELIANOID continuously reviews and improves its data protection and security practices through operational assessments, internal reviews, and ongoing compliance activities.

Final Statement

RELIANOID is committed to ensuring compliance with data protection regulations, including the GDPR, through robust Data Processing Agreements and security governance practices. Our DPA reflects our commitment to safeguarding personal data, maintaining strong security controls, supporting customer compliance obligations, and continuously improving operational resilience.

Document Reviews

DateComment
14th April 2025Initial document publication.
6th April 2026Updated with enhanced security governance practices, continuous monitoring controls, application security measures, and operational resilience improvements.

Contact and Assurance

We welcome requests for detailed security documentation, risk mapping matrices, or compliance disclosures.

Contact our Compliance & Security Team

Download Latest Security Report