Legal Center

Data Processing Addendum

Last updated: January 1, 2026

Last updated: January 1, 2026

This Data Processing Addendum ("DPA") forms part of the Terms of Service between you ("Controller") and Hyperscrape, Inc. ("Processor") and applies where we process personal data on your behalf.

1. Roles

For personal data contained in the inputs you provide and the outputs your scrapers produce, you act as the Controller and we act as the Processor. For account and billing data, we act as an independent Controller as described in our Privacy Policy.

2. Scope and instructions

We process personal data only to provide the Service and in accordance with your documented instructions, which include your configuration and use of the Service, unless required otherwise by law.

3. Confidentiality

We ensure that personnel authorized to process personal data are bound by appropriate confidentiality obligations.

4. Security

We implement appropriate technical and organizational measures to protect personal data, including encryption in transit, access controls, least-privilege service credentials, and monitoring, taking into account the state of the art and the risks of processing.

5. Sub-processors

You authorize us to engage sub-processors (such as hosting, database, and infrastructure providers) to support the Service. We impose data-protection obligations on sub-processors consistent with this DPA and remain responsible for their performance. We will provide information about sub-processors on request.

6. Data-subject requests

Taking into account the nature of the processing, we will assist you with appropriate technical and organizational measures, insofar as possible, to respond to requests from data subjects to exercise their rights.

7. Personal-data breaches

We will notify you without undue delay after becoming aware of a personal-data breach affecting your content, and provide information reasonably necessary for you to meet your notification obligations.

8. Deletion and return

Upon termination, we will delete or return personal data processed on your behalf in accordance with our standard retention period and applicable law, except where retention is legally required.

9. International transfers

Where personal data is transferred across borders, we rely on appropriate safeguards, such as standard contractual clauses, to protect that data.

10. Audits

We will make available information reasonably necessary to demonstrate compliance with this DPA and allow for audits, subject to reasonable confidentiality and security conditions.

Contact

For data-protection matters, contact us through the form at hyperscrape.com/contact.

This document is provided for the operation of the Hyperscrape platform. It is not legal advice. Consult your own counsel for your specific circumstances.