Loading...
Back to top
Legal & Privacy

Data Processing Addendum

DPA for customer privacy, security, and vendor review

CoSkip’s Data Processing Addendum explains how CoSkip processes personal data on behalf of customers, the roles of the parties, security measures, subprocessors, international transfer safeguards, data subject assistance, incident notification, audit support, and return or deletion obligations.

  • Version 1.0
  • Last updated 15 Oct 2025
  • Processor / Service Provider
  • SCCs where applicable
  • Subprocessor registry
  • Technical & organisational measures
  • PDF available
DPA at a glance

A faster way to review the agreement

This summary is provided for convenience. The DPA text below controls.

01

Parties

Customer acts as Controller or Business. CoSkip acts as Processor or Service Provider where CoSkip processes personal data on behalf of Customer.

02

Processing purpose

CoSkip processes personal data to provide, secure, support, and improve the services as described in the DPA and applicable agreement.

03

Instructions

CoSkip processes personal data only on documented instructions from Customer, including the Agreement and this DPA.

04

Security measures

Technical and organisational measures include access controls, encryption, logging, secure development, vendor management, and incident response, as described in Annex II.

05

Subprocessors

CoSkip may use subprocessors to support the services and maintains the current list at /subprocessors.

06

Transfers

International transfers are addressed through appropriate safeguards, including SCCs and the UK Addendum/IDTA where applicable.

07

Assistance

CoSkip assists Customer with data subject requests, audits, and compliance support as described in the DPA.

08

Return and deletion

Upon termination or expiry, CoSkip deletes or returns personal data in accordance with Customer instructions and the Agreement, unless retention is required by law.

Document status

Current DPA record

Document
Data Processing Addendum
Version
1.0
DPA last updated
15 Oct 2025
Page design updated
July 8, 2026
Legal entity
CoSkip, Inc., a Delaware corporation
Brand
CoSkip
Applies when
CoSkip processes personal data on behalf of Customer subject to applicable data protection law.
Related registry
Subprocessors
Related policy
Privacy Policy
Download
PDF
Processing roles

Processing roles in plain English

For most customer use cases covered by this DPA, Customer determines the purposes and means of processing. CoSkip processes personal data on Customer’s behalf to provide the configured services and follows documented instructions in the Agreement and this DPA.

CustomerController / Business

Defines users, workflows, configurations, and instructions. Responds to end-user and customer-side obligations where applicable.

CoSkipProcessor / Service Provider

Provides, secures, supports, and improves the services as instructed. Assists Customer with requests and compliance obligations as described in the DPA.

Role labels depend on the processing covered by this DPA and applicable law.

Review path

Need a DPA review path?

If your organization needs to review CoSkip’s DPA, complete a vendor questionnaire, discuss customer-specific processing, or request procurement documentation, contact CoSkip with the relevant requirements.

Legal entity
CoSkip, Inc., a Delaware corporation
Privacy / DPA
privacy@coskip.com
Security / vendor review
security@coskip.com
Location
Queens / New York City
Trust by design

Review the data path before expanding field AI

CoSkip helps field teams guide work, capture proof, and close out jobs with clearer records. For pilots and customer reviews, CoSkip’s trust resources help teams understand processing roles, data categories, safeguards, subprocessors, and practical deployment requirements before rollout.

Apply to Become a Pilot Partner

Tell us a bit about your team. We'll follow up with next steps.

Join the Waitlist

Get launch updates and early access invites.