GDPR Addendum Sample Clauses
A GDPR Addendum is a contractual provision that ensures both parties comply with the requirements of the General Data Protection Regulation (GDPR) when handling personal data. This clause typically outlines the responsibilities of data controllers and processors, specifies the types of data covered, and details security measures and breach notification procedures. By including a GDPR Addendum, the agreement addresses legal obligations for data privacy and protection, reducing the risk of non-compliance and associated penalties.
POPULAR SAMPLE Copied 1 times
GDPR Addendum. This GDPR Addendum (the “Addendum”) is intended to comply with Article 28(3) of the GDPR (as defined below), which requires the processing of personal data to be governed by a contractual arrangement. This Addendum forms part of and is incorporated into the Agreement.
GDPR Addendum. Fyber’s provision of the Service to Demand Partner entails the transmission and processing of data retrieved, sent and received by and from Fyber’s Users, clients and other third parties ("Data"). Certain transmitted Data may constitute Personal Information, as this term is referred to under applicable Data Protection Legislation. Therefore, the parties agree to comply with the following provisions.
GDPR Addendum. The Parties agree “personal data” as such quoted term is defined in the REGULATION (EU) 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL OF 27 APRIL 2016 ON THE PROTECTION OF NATURAL PERSONS WITH REGARD TO THE PROCESSING OF PERSONAL DATA AND ON THE FREE MOVEMENT OF SUCH DATA, AND REPEALING DIRECTIVE 95/46/EC (GENERAL DATA PROTECTION REGULATION), AS SET FORTH AT OJ L 119, May 4, 2016, as amended will not be disclosed under this LSA. If that changes the Parties will enter into a mutually agreeable GDPR Addendum, which will be incorporated into and made part of this LSA upon the signature of an authorized representative from each Party and attached hereto as an Addendum. If a GDPR Addendum is included and notwithstanding anything to the contrary in the Privacy Policy, such personal data will be subject to such GDPR Addendum and ▇▇▇▇▇.▇▇ will use and disclose such personal data only in accordance with such GDPR Addendum.
GDPR Addendum. To the extent applicable, CONTRACTOR agrees to comply with the EU General Data Protection Regulation or any successor to that regulation (“GDPR”). Specifically, CONTRACTOR agrees to:
1. only process TTU data in accordance with TTU’s lawful, documented instructions;
2. only allow third parties to process TTU data where the third party is bound by a contractual or statutory obligation of confidentiality;
3. ensure there are appropriate technical and organizational measures to protect TTU personal data against personal data breaches;
4. let TTU know immediately and without delay if CONTRACTOR detects that a personal data breach has occurred and, where requested, assist TTU to communicate with individuals who are impacted by the data breach;
5. not appoint a third party to process TTU data on CONTRACTOR’S behalf without advising TTU that CONTRACTOR is doing so and TTU has not objected;
6. require any third party appointed to process data on CONTRACTOR’s behalf to ensure they agree to adhere to terms that are at least as protective as these terms and CONTRACTOR will remain responsible for all acts and omissions of such third party;
7. assist TTU to respond to individuals’ exercise of their data subject rights to the extent related to TTU personal data CONTRACTOR processes;
8. tell TTU if CONTRACTOR thinks its processing of TTU data is likely to result in a high risk to the data protection rights and freedoms of individuals, and assist TTU in carrying out a data protection impact assessment and consulting with TTU’s relevant data protection authority;
9. if TTU requests, share with TTU records that relate to the TTU personal data CONTRACTOR processes and any independent third party assessments or audit reports that assess CONTRACTOR’s technical and organizational measures designed to protect TTU personal data;
10. if TTU requests, complete and return TTU’s data privacy and security questionnaire to TTU;
11. not process TTU personal data any longer than necessary in order to provide CONTRACTOR’s services to TTU or to comply with a lawfully documented instruction TTU has given CONTRACTOR; and
12. when finished providing services to TTU, (at TTU’s election) return or destroy data and confirmation of the destruction be provided to TTU unless CONTRACTOR needs to retain the data to comply with an applicable law. For purposes of this section, the terms “personal data”, “personal data breach”, and “process” have the meanings given to them under the GDPR.
GDPR Addendum. If Customer is located within the European Union, or handles data from data subjects of the European Union, Customer shall be bound by the terms of SOPHiA GENETICS’ GDPR Addendum, which is attached to this Agreement, as well as available on the Software.
