Platform Standard Data Processing Framework (DPA)
1. Purpose of this document
This is the platform standard framework for governing its own processing responsibilities and the internal baseline for tenant DPAs. The binding controller–processor relationship is established by the accepted tenant DPA and order documents.
2. Platform roles
The platform generally acts as an independent controller for contracts, subscriptions, billing, customer contacts, security, abuse prevention and legal obligations, and as processor when hosting restaurant staff, supplier, inventory, invoice, hygiene and business records.
3. Documented instructions
When acting as processor, the platform processes data only on documented instructions expressed through the agreement, settings, support requests and tenant actions, unless law requires otherwise.
4. Vendor governance
The platform uses processors and sub-processors that provide appropriate technical and organisational guarantees and contractually imposes confidentiality, security, assistance, deletion, audit and transfer obligations.
5. Data minimisation and purpose limitation
Only data necessary to provide, maintain and secure the service is processed. Tenant data is not sold to advertisers or used for unrelated advertising profiles.
6. Personnel access
Access is limited to authorised personnel with a support, operations, security or legal need, subject to permissions, confidentiality and audit controls.
7. Security and incidents
Measures include tenant isolation, encrypted transport, credential protection, session controls, logs, backups, restore testing and incident response. Confirmed breaches affecting tenant data are notified without undue delay as applicable.
8. Rights and supervisory assistance
As processor, the platform assists tenants with data-subject requests, DPIAs, consultations and audits; as independent controller it handles applicable requests directly.
9. International transfers
Processing outside the EEA relies on an applicable adequacy decision, Standard Contractual Clauses or another valid safeguard, with locations and safeguards disclosed in the sub-processor information.
10. Retention and deletion
Platform-controller data is retained for contract, accounting, security and legal needs; tenant data follows tenant settings, the DPA, verified termination workflows and backup rotation.
11. Document governance
The platform maintains versions, effective dates, hashes, tenant acceptance evidence and sub-processor change records, and notifies affected tenants of material changes.
Standard-text hash:0923a4d201dc3e48ffacd35b2a9d265ce4999f40bb683da2f4a59fa8577f4ac2