Loading...
Please wait a moment
Loading...
Please wait a moment
Standard contractual clauses and technical safeguards governing personal data processing under GDPR Article 28 and India's DPDP Act 2023 for enterprise software engineering engagements.
This Data Processing Addendum ("DPA") supplements the Terms of Service between CodeYB Studio (trading as codeYB β Code Your Business, accessible at www.codeyb.com) and the entity commissioning software engineering services ("Client").
codeYB covenants that it shall:
π SOC-2 & ISO 27001 Aligned Security Framework:
codeYB engages vetted cloud infrastructure subprocessors operating under strict data processing agreements matching the security obligations of this DPA:
| Subprocessor | Role | Hosting Region | Compliance Certifications |
|---|---|---|---|
| Amazon Web Services (AWS) | Cloud Compute (EC2, ECS, S3, RDS) | India (ap-south-1) / US / EU | SOC 1/2/3, ISO 27001, HIPAA |
| Google Cloud Platform / Firebase | Firestore, Cloud Storage, Serverless | India (asia-south1) / US | SOC 2 Type II, ISO 27001 |
| Cloudflare Inc. | Edge CDN, DDoS Defense, DNS | Global Edge Anycast | SOC 2 Type II, PCI-DSS Level 1 |
β‘ Guaranteed Incident Escalation Protocol:
In the confirmed event of a security incident affecting Client Personal Data within systems managed by codeYB, codeYB will:
Upon completion of an engineering contract or formal written request by Client:
This DPA is governed by and construed in accordance with the laws of the Republic of India. The parties irrevocably submit to the exclusive jurisdiction of the competent courts in Hyderabad, Telangana, India.