DragonSec

Legal placeholder

DPA / Auftragsverarbeitung

Data processing agreement placeholder for DragonSec.

This page is a drafting placeholder for product and website planning. It is not legal advice and must be reviewed by qualified German counsel before publication.

Purpose

Placeholder for processing personal data in connection with website, platform, assessment, support, and security operations.

Processor obligations

Confidentiality, security measures, subprocessors, assistance, deletion/return, audits, and breach notification.

Technical and organizational measures

Access control, encryption, logging, vulnerability management, incident response, backup, and least privilege placeholders.

Subprocessors

To be completed with hosting, observability, support, scheduling, and security vendors.

International transfers

To be completed after vendor and hosting-region decisions.

Customer responsibilities

Customers must scope authorized testing, avoid unnecessary production personal data sharing, and configure access appropriately.