Data Processing Addendum (DPA)
This DPA page describes the structure Elqorin Pocket may use when processing personal data for a business client. A signed client-specific DPA should contain the final legal details for any engagement subject to GDPR or similar processor obligations.
1. Relationship of the parties
Where a client determines the purposes and means of processing personal data and Elqorin Pocket processes that data on documented instructions, the client generally acts as controller and Elqorin Pocket acts as processor or service provider, subject to applicable law.
2. Processing instructions
Elqorin Pocket will process personal data only as necessary to provide the contracted services, follow documented client instructions, secure the environment, comply with law, and protect systems from misuse. Instructions that materially change scope, risk, or architecture may require a written change order.
3. Processing details
The signed DPA should identify the subject matter, duration, nature and purpose of processing, categories of personal data, categories of data subjects, client instructions, and any special handling restrictions.
4. Confidentiality
Personnel and contractors authorized to process client personal data should be subject to confidentiality obligations and receive access only to information reasonably required for their responsibilities.
5. Security measures
Technical and organizational measures may include encrypted transmission, access controls, secure secrets, managed infrastructure, logging, source control, code review, testing, environment separation, backup protections, and incident procedures appropriate to the project.
6. Subprocessors
Elqorin Pocket may use hosting, storage, authentication, database, communications, monitoring, AI, analytics, and integration providers. The signed DPA may establish a subprocessor list, notice process, objection rights, or approval requirements.
7. Data subject requests
Taking into account the nature of processing, Elqorin Pocket will provide reasonable assistance to the client for access, correction, deletion, restriction, portability, or objection requests where required by applicable law and the signed DPA.
8. Incident notification
Elqorin Pocket will notify the client of a confirmed security incident affecting client personal data according to the timing and procedure stated in the signed DPA and applicable law, and will provide information reasonably available for investigation and response.
9. Return and deletion
At the end of services, client personal data will be returned or deleted according to the contract, retention schedule, legal requirements, backup lifecycle, and technical feasibility. Backup copies may remain protected until they expire through normal retention cycles.
10. International transfers
If processing subject to GDPR or similar transfer rules occurs outside the originating jurisdiction, the parties should implement the required transfer mechanism, contractual clauses, and supplementary safeguards as applicable.
11. Audit information
Reasonable information needed to demonstrate processor obligations may be provided subject to confidentiality, security, proportionality, and any audit procedure defined in the signed DPA.
12. Client-specific execution
This public DPA page is informational and does not replace a signed DPA. A client-specific DPA should be executed when required by the applicable data, jurisdiction, and project architecture.
Company contact information
EMAIL: projects@elqorinpocket.com
ADDRESS: 7950 W Colfax Ave, Lakewood, CO 80214
PHONE: +1 860 846 7486