Legal

Data Processing Addendum

Last updated: July 12, 2026

This DPA supplements the Terms of Service and applies where VoicaX processes personal data on behalf of a Customer that acts as a Controller under GDPR or equivalent laws.

This document is a template pending review by qualified legal counsel. It is not legal advice.

1. Roles

Customer is the Controller; VoicaX is the Processor. Subprocessors are engaged under equivalent written obligations.

2. Scope and Purpose

VoicaX processes Customer Personal Data solely to provide the Service in accordance with documented instructions.

3. Subprocessors

A current list of subprocessors is available on request. We provide notice of material changes.

4. Security Measures

VoicaX maintains the technical and organizational measures described in our Trust Center.

5. International Transfers

Where required, the parties rely on the EU Standard Contractual Clauses, incorporated by reference.

6. Data Subject Rights

VoicaX provides reasonable assistance to Customer in fulfilling data-subject requests.

7. Breach Notification

VoicaX will notify Customer without undue delay after becoming aware of a Personal Data Breach.

8. Deletion

Upon termination, VoicaX will delete or return Customer Personal Data as instructed, subject to legal retention obligations.

9. Signed DPA

To execute a countersigned DPA, please contact us. The text above is a placeholder pending legal review.