This Data Processing Agreement (“Agreement”) forms part of the contract between:
DexinPrime Technologies Private Limited (“Processor”)
and
Client / Customer (“Controller”)
1. Definitions
- Controller: Determines purpose and means of data processing
- Processor: Processes data on behalf of Controller
- Personal Data: Any identifiable information
2. Scope of Processing
Processor shall process Personal Data only:
- As instructed by Controller
- For agreed services
3. Nature & Purpose of Processing
- Hosting, storage, and processing
- Application development and maintenance
- Customer support and analytics
4. Types of Data
- Customer personal data
- Employee or user data
- Transactional data
5. Obligations of Processor
Dexinprime shall:
- Process data only on documented instructions
- Ensure confidentiality of personnel
- Implement appropriate security measures
- Assist Controller with compliance obligations
- Notify data breaches without undue delay
6. Sub-processors
We may engage sub-processors (e.g., AWS, Azure, third-party APIs).
We ensure:
- Binding contractual obligations
- Equivalent data protection standards
7. Data Security Measures
- Encryption (in transit and at rest)
- Role-based access control
- Regular vulnerability assessments
- Backup and disaster recovery
8. Data Subject Rights
Processor shall assist Controller in:
- Access requests
- Data correction or deletion
- Data portability
9. Data Breach Notification
Processor shall notify Controller within 48–72 hours of becoming aware of a breach.
10. Data Return & Deletion
Upon termination:
- Data will be returned or deleted as instructed
- Backup retention may apply for legal purposes
11. Audit Rights
Controller may request audits or compliance evidence
(subject to reasonable notice).
12. Liability
Liability shall be governed by the main service agreement.
13. Governing Law
This Agreement shall be governed by the laws of India.
14. Contact
For data protection matters:
Email:
privacy@dexinprime.com