Data processing
When a company uses Wisalix, Codentia Technologies LLC processes personal data on that company's behalf (Art. 28 GDPR). This page summarises the data processing agreement; the signed agreement is available from [...].
Subject and duration
Operating Wisalix for the customer for the term of the contract: storing, showing, sending and deleting the data the customer enters or receives through the service.
Data and people concerned
Contact and contract data of the customer's clients and prospects, their messages and documents, and user data of the customer's staff. Special categories (for example health data in clinics) only where the customer stores them.
Instructions
We process the data only on the customer's documented instructions, which the settings of the service and the contract express.
Security
Each company has its own database and files; access needs a sign in with optional two factor sign in; roles and data scopes limit what each user sees; connections are encrypted; backups are encrypted and kept in Germany (EU); changes are recorded in the history.
Subprocessors
Hosting and storage (Germany (EU)), e-mail delivery, error monitoring and, only where the customer switches them on, AI assistants and messaging providers. We inform customers before adding or replacing a subprocessor, and they may object.
Deletion and return
The customer can export its data at any time. After the end of the contract and the stated waiting period, the database and files are deleted, unless the law requires retention.
Support
We help the customer to answer requests from people concerned (access, correction, deletion and copies) with the privacy tools of the service, and report personal data breaches without undue delay.