Compliance

Data Processing Agreement (DPA)

What is Data Processing Agreement (DPA)?

A Data Processing Agreement (DPA) is the contract that sets out how a software vendor (the processor) may handle personal data on behalf of the customer (the controller), as GDPR requires.

If a tool stores your employees' data, GDPR expects a DPA between you and the vendor. The better tools make the DPA part of signup rather than a separate negotiation, so it is in place from day one.

Related terms

Put these terms into practice

Flat-rate HR for European SMBs. 30 days free, no card, cancel anytime.

Start 30-day free trial