Data Processing Addendum
Last updated: January 1, 2026
Last updated: January 1, 2026
This Data Processing Addendum ("DPA") forms part of the Terms of Service between you ("Controller") and Hyperscrape, Inc. ("Processor") and applies where we process personal data on your behalf.
1. Roles
For personal data contained in the inputs you provide and the outputs your scrapers produce, you act as the Controller and we act as the Processor. For account and billing data, we act as an independent Controller as described in our Privacy Policy.
2. Scope and instructions
We process personal data only to provide the Service and in accordance with your documented instructions, which include your configuration and use of the Service, unless required otherwise by law.
3. Confidentiality
We ensure that personnel authorized to process personal data are bound by appropriate confidentiality obligations.
4. Security
We implement appropriate technical and organizational measures to protect personal data, including encryption in transit, access controls, least-privilege service credentials, and monitoring, taking into account the state of the art and the risks of processing.
5. Sub-processors
You authorize us to engage sub-processors (such as hosting, database, and infrastructure providers) to support the Service. We impose data-protection obligations on sub-processors consistent with this DPA and remain responsible for their performance. We will provide information about sub-processors on request.
6. Data-subject requests
Taking into account the nature of the processing, we will assist you with appropriate technical and organizational measures, insofar as possible, to respond to requests from data subjects to exercise their rights.
7. Personal-data breaches
We will notify you without undue delay after becoming aware of a personal-data breach affecting your content, and provide information reasonably necessary for you to meet your notification obligations.
8. Deletion and return
Upon termination, we will delete or return personal data processed on your behalf in accordance with our standard retention period and applicable law, except where retention is legally required.
9. International transfers
Where personal data is transferred across borders, we rely on appropriate safeguards, such as standard contractual clauses, to protect that data.
10. Audits
We will make available information reasonably necessary to demonstrate compliance with this DPA and allow for audits, subject to reasonable confidentiality and security conditions.
Contact
For data-protection matters, contact us through the form at hyperscrape.com/contact.