Data Processing Agreement
How to obtain the VoiceDock Data Processing Agreement, and why it is released on request rather than published here.
VoiceDock offers a Data Processing Agreement under Article 28 GDPR, at no cost, to every customer processing personal data through the platform.
It is no longer published on this page.
Where to get it
Request access through the VoiceDock Trust Center. Tell us who you are and why you need it, and we release the current version once the request is verified.
Alongside the DPA, the Trust Center holds the security overview, the sub-processor list with each provider's processing location and transfer basis, the retention policy, the incident-response and business-continuity statements, and self-serve answers to the questions a vendor security assessment usually asks.
Why it is not simply downloadable
A Data Processing Agreement is a contract with a named counterparty, not a public notice. Publishing it as an open download meant we had no record of who held which version, which is exactly what we need when a version changes and the people relying on it have to be told.
The documents the GDPR requires us to make openly available, the Privacy Policy and the Cookie Policy, stay public and unrestricted. Those are information duties. The DPA is an agreement.
Practical
- Cost: none. It is included in your subscription.
- Scope: it covers all processing of customer data under the agreement, in every configuration of the service. Which sub-processors are engaged, where data is processed and how long it is retained follow from your configuration; the agreement sets out those consequences rather than limiting its own scope to one setup.
- Signature: electronic, signed on our side by the director of Flireo B.V.
- Earlier versions: available on request for audit or record-keeping.
- Redlines: small changes such as notice addresses can usually be handled within the standard process. Substantive changes to liability, audit or sub-processor terms are handled as a custom agreement.
- Translations: Dutch and other European languages on request.
Corrected
An earlier version of this page described the DPA as applying only to one specific configuration (Vertex AI in the EU together with GDPR Mode), and stated that reconfiguring an assistant caused its protections to lapse automatically for subsequent processing.
That was the old scoping and it no longer holds. The current agreement applies in every configuration. If you signed on the basis of the earlier text, the current version is broader rather than narrower, but ask us and we will confirm your position in writing.
Contact
Flireo B.V. · Leeuwenbrug 89a, 7411 TH Deventer, The Netherlands · KvK 92548806
| Subject | Contact |
|---|---|
| Requesting the DPA | VoiceDock Trust Center |
| Privacy and data-subject requests | privacy@flireo.com |
| Contractual notices | legal@flireo.com |
| Security incidents | security@flireo.com |
Related
- EU-resident configuration — how to configure an assistant that processes only in the EU
- Privacy & Compliance — GDPR Mode and recording consent