Current as of 18 August 2026
Data processing addendum
A readiness summary, not an executed agreement.
Status
This page is a DPA-readiness summary for the Amberly MVP. A binding DPA, controller instructions, annexes, transfer terms, and signatures must be completed before processing customer personal data in a hosted service.
Planned safeguards
- Forced tenant row-level security
- Least-privilege runtime roles
- Content-minimized analysis and telemetry
- Policy-bound retention and deletion
- Documented subprocessors and incident handling