Data Processing Addendum
How Gardien handles your users' data for you.
When you install Gardien on your website, Gardien processes your visitors' data on your behalf. This addendum sets out the terms of that processing. It supplements the Terms of Service and Privacy Policy.
Last updated July 10, 2026
Terms
The processing terms.
Roles
For personal data of your own end users that flows through the Gardien checkpoint, you are the controller and Gardien is your processor. For your account data, Gardien is the controller (see the Privacy Policy).
Scope & instructions
Gardien processes end-user data only to provide the checkpoint, analytics, and audit features you enable, and on your documented instructions — not for its own purposes and never sold.
Data & subjects
Typically: your website visitors and the agents acting on your site. Data may include analytics events, pseudonymous visitor/session identifiers, passport and site identifiers, decision outcomes, a bounded user-agent string, and coarse location. Gardien does not retain raw IP addresses or request bodies in analytics records.
Subprocessors
Gardien uses vetted subprocessors (listed in the Privacy Policy) under written contracts, and remains responsible for their processing. We will give notice of new subprocessors so you can object.
Security
Encryption in transit, encryption at rest for the protected vault (AES-256-GCM), pseudonymous identifiers, access controls, and audit logging. Measures evolve as the product hardens.
Data-subject requests
Gardien will help you respond to access, deletion, correction, and objection requests from your end users, given the tooling available in the product.
Breach notification
Gardien will notify you without undue delay after becoming aware of a personal-data breach affecting your data, with the information you need to meet your own obligations.
International transfers
Where data leaves the EEA/UK, transfers rely on Standard Contractual Clauses or another lawful safeguard.
Retention & deletion
Analytics event logs are deleted after no more than 90 days where lawful. Durable public-customer verifier-log storage is not yet enabled; its retention schedule will be published and enforced before launch. On termination, Gardien deletes or returns end-user data on request, except where law requires retention.
Audit
On reasonable request and notice, Gardien will provide information needed to demonstrate compliance with this addendum.
Signing
Need a countersigned DPA?
Business customers who need an executed Data Processing Addendum for their records can request one at admin.gardien.io@gmail.com. A countersigned DPA and current subprocessor list will be available before paid launch.
Do not send personal data or live secrets when requesting a DPA — a request is enough.