Data Processing Addendum

How Gardien handles your users' data for you.

When you install Gardien on your website, Gardien processes your visitors' data on your behalf. This addendum sets out the terms of that processing. It supplements the Terms of Service and Privacy Policy.

Last updated July 10, 2026

ControllerThe business customer
ProcessorGardien
PurposeRun the checkpoint, analytics, and audit the customer enables
Selling dataNever

Terms

The processing terms.

01

Roles

For personal data of your own end users that flows through the Gardien checkpoint, you are the controller and Gardien is your processor. For your account data, Gardien is the controller (see the Privacy Policy).

02

Scope & instructions

Gardien processes end-user data only to provide the checkpoint, analytics, and audit features you enable, and on your documented instructions — not for its own purposes and never sold.

03

Data & subjects

Typically: your website visitors and the agents acting on your site. Data may include analytics events, pseudonymous visitor/session identifiers, passport and site identifiers, decision outcomes, a bounded user-agent string, and coarse location. Gardien does not retain raw IP addresses or request bodies in analytics records.

04

Subprocessors

Gardien uses vetted subprocessors (listed in the Privacy Policy) under written contracts, and remains responsible for their processing. We will give notice of new subprocessors so you can object.

05

Security

Encryption in transit, encryption at rest for the protected vault (AES-256-GCM), pseudonymous identifiers, access controls, and audit logging. Measures evolve as the product hardens.

06

Data-subject requests

Gardien will help you respond to access, deletion, correction, and objection requests from your end users, given the tooling available in the product.

07

Breach notification

Gardien will notify you without undue delay after becoming aware of a personal-data breach affecting your data, with the information you need to meet your own obligations.

08

International transfers

Where data leaves the EEA/UK, transfers rely on Standard Contractual Clauses or another lawful safeguard.

09

Retention & deletion

Analytics event logs are deleted after no more than 90 days where lawful. Durable public-customer verifier-log storage is not yet enabled; its retention schedule will be published and enforced before launch. On termination, Gardien deletes or returns end-user data on request, except where law requires retention.

10

Audit

On reasonable request and notice, Gardien will provide information needed to demonstrate compliance with this addendum.

Signing

Need a countersigned DPA?

Business customers who need an executed Data Processing Addendum for their records can request one at admin.gardien.io@gmail.com. A countersigned DPA and current subprocessor list will be available before paid launch.

Do not send personal data or live secrets when requesting a DPA — a request is enough.