Your data doesn't train Genie's AI
You keep IP ownership聽of your docs
1. Parties: Identification of the data controller and data processor, including full legal names and registered addresses
2. Background: Context of the data processing relationship and brief description of services requiring data processing
3. Definitions: Definitions of key terms used in the agreement, including GDPR-specific terminology
4. Scope and Purpose of Processing: Detailed description of the permitted data processing activities and their specific purposes
5. Duration of Processing: Timeframe of the data processing activities and conditions for termination
6. Nature and Purpose of Processing: Detailed specification of how and why the data will be processed
7. Types of Personal Data: Categories of personal data to be processed
8. Categories of Data Subjects: Description of the groups of individuals whose data will be processed
9. Obligations of the Processor: Processor's duties including security measures, confidentiality, and subprocessing requirements
10. Obligations of the Controller: Controller's responsibilities including instructions, audits, and assistance obligations
11. Technical and Organizational Measures: Security measures required to ensure appropriate level of data protection
12. Subprocessing: Conditions and requirements for engaging subprocessors
13. Data Subject Rights: Procedures for handling data subject requests and ensuring their rights
14. Data Breach Notification: Procedures and timeframes for reporting data breaches
15. Audit Rights: Controller's rights to audit and processor's obligations to demonstrate compliance
16. Data Return and Deletion: Obligations regarding data handling upon contract termination
17. Liability and Indemnification: Allocation of responsibilities and liability between parties
18. Governing Law and Jurisdiction: Specification of German law application and jurisdiction
1. International Data Transfers: Required when personal data will be transferred outside the EEA, specifying transfer mechanisms
2. Special Categories of Data: Required when processing sensitive personal data, specifying additional safeguards
3. Data Protection Impact Assessment: Required when processing is likely to result in high risk to individuals
4. Industry-Specific Compliance: Required for specific sectors like healthcare or finance with additional regulatory requirements
5. Insurance Requirements: Specific insurance obligations for high-risk processing activities
6. Business Continuity: Required for critical processing activities requiring specific continuation measures
7. Exit Management: Detailed procedures for transition of services to another processor
1. Schedule 1 - Processing Activities: Detailed description of all processing activities, purposes, and data categories
2. Schedule 2 - Technical and Organizational Measures: Detailed description of security measures implemented by the processor
3. Schedule 3 - Approved Subprocessors: List of pre-approved subprocessors and their processing activities
4. Schedule 4 - Transfer Mechanisms: Details of mechanisms used for international data transfers if applicable
5. Schedule 5 - Security Breach Response Plan: Detailed procedures for handling and reporting security breaches
6. Schedule 6 - Audit Procedures: Specific procedures and requirements for conducting audits
7. Schedule 7 - Contact Details: Key contacts for both parties for various types of notices and communications
Find the exact document you need
Pre Negotiation Agreement
A German law-governed preliminary agreement establishing the framework and terms for conducting business negotiations, including confidentiality and good faith obligations.
Third Party Processing Agreement
A German law-governed agreement establishing terms for third-party data processing, ensuring GDPR and BDSG compliance.
Controller To Controller Agreement
A German law-governed agreement establishing joint processing arrangements between two or more data controllers under GDPR and BDSG requirements.
Product Development Non Disclosure Agreement
German law-governed NDA for protecting confidential information in product development relationships, compliant with GeschGehG and BGB requirements.
Data Processing Contract
A German law-governed agreement establishing terms for GDPR-compliant personal data processing between controller and processor.
Joint Controller Agreement
A German law-governed agreement establishing shared data protection responsibilities between joint controllers under GDPR Article 26 and BDSG requirements.
Standard Data Processing Agreement
A German law-governed Data Processing Agreement ensuring GDPR compliance for personal data processing between controller and processor.
Order Data Processing Agreement
German law-governed Data Processing Agreement establishing terms for personal data processing under GDPR and BDSG requirements.
Dpia Agreement
A German law-compliant agreement establishing the framework for conducting Data Protection Impact Assessments under GDPR and BDSG requirements.
Data Processing Addendum
A German law-compliant Data Processing Addendum that establishes terms for personal data processing under GDPR and BDSG requirements.
Data Addendum
A German law-governed Data Processing Addendum ensuring GDPR and BDSG compliance for personal data processing activities.
Controller Processor Contract
A GDPR-compliant data processing agreement under German law governing the relationship between a data controller and processor, establishing terms for lawful personal data processing.
International Data Protection Agreement
German law-governed International Data Protection Agreement ensuring GDPR compliance for cross-border data transfers.
Data Sharing Agreement Controller To Processor
A German law-governed agreement establishing terms for personal data processing between a controller and processor under GDPR and BDSG requirements.
Processor To Processor DPA
German law-governed Data Processing Agreement between processors, compliant with GDPR and BDSG requirements.
Intra Group Data Transfer Agreement
German law-governed agreement regulating personal data transfers between group companies, ensuring GDPR and BDSG compliance.
Data Controller To Data Controller Agreement
A German law-governed agreement between two data controllers establishing terms for sharing personal data in compliance with GDPR and German data protection laws.
Intercompany Data Processing Agreement
German law-governed data processing agreement between group companies, compliant with GDPR and BDSG requirements.
Controller To Controller DPA
A German law-governed agreement between two data controllers establishing terms for joint personal data processing, compliant with GDPR and BDSG requirements.
Third Party Data Processing Agreement
A German law-governed agreement establishing terms for personal data processing, ensuring compliance with GDPR and German data protection requirements.
Data Transfer Addendum
German law-governed Data Transfer Addendum ensuring GDPR compliance and German BDSG requirements for secure personal data transfers between organizations.
Personal Data Transfer Agreement
A German law-governed agreement for compliant transfer of personal data between parties, ensuring GDPR and BDSG compliance.
Controller Processor Agreement
A German law-governed agreement between data controller and processor defining data processing terms and obligations under GDPR and BDSG.
Order Processing Agreement
A German-law governed agreement between a data controller and processor establishing terms for compliant personal data processing under GDPR and BDSG.
Affiliate Addendum
A German law-governed addendum establishing terms and conditions for affiliate marketing relationships, including commission structures and compliance requirements.
Sub Processing Agreement
A German law-governed agreement between a processor and sub-processor for GDPR-compliant personal data processing, incorporating specific requirements under German data protection law.
International Data Transfer Agreement
German law-governed agreement for regulating international transfers of personal data from German organizations to non-EEA recipients, ensuring GDPR compliance.
骋别苍颈别鈥檚 Security Promise
Genie is the safest place to draft. Here鈥檚 how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; 骋别苍颈别鈥檚 AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
We are ISO27001 certified, so your data is secure
Organizational security:
You retain IP ownership of your documents and their information
You have full control over your data and who gets to see it
