Data Processing Overview
Effective date: March 17, 2026
Cryptodam may process limited personal and operational data on behalf of enterprise customers in connection with onboarding, eligibility workflows, notifications, payout administration, reporting, and related support activities. This page provides a high-level overview only. A fuller Data Processing Addendum may be made available during enterprise review or contracting.
1. Roles of the parties
Depending on the workflow and agreement structure, enterprise customers may act as controllers or equivalent decision-makers for relevant personal data, and Cryptodam may act as a processor or service provider handling data on their behalf for defined operational purposes.
2. Scope and purpose of processing
Processing may include:
- Account and onboarding administration
- Eligibility and workflow handling
- Incident notifications and communications
- Payout administration support
- Audit, reporting, and operational review
- Security, diagnostics, and service support
3. Categories of data
Depending on configuration and customer use, categories of data may include:
- Account and contact information
- Subscriber or user identifiers
- Eligibility and operational workflow records
- Transaction- or incident-related reference data where applicable
- Support, audit, and system-log information
4. Processing instructions and confidentiality
Where Cryptodam acts on behalf of an enterprise customer, processing is intended to occur in accordance with documented contractual instructions, subject to applicable law. Personnel with access to relevant data should be subject to confidentiality obligations or comparable duties.
5. Security measures summary
Cryptodam aims to apply technical and organizational controls appropriate to the nature of the service, including access controls, operational logging, role-aware workflows, and reviewable administration patterns. More detailed descriptions may be provided during enterprise review.
6. Subprocessors and service providers
We may use third-party infrastructure, hosting, analytics, communications, or support vendors in connection with operating the service. Where required, additional details may be provided through contractual documentation or enterprise review materials.
7. Retention and deletion
Data is retained for operational, legal, security, and contractual purposes for no longer than reasonably necessary, subject to applicable law and written agreement. After the end of services, deletion or return handling may be governed by contract and technical feasibility.
8. Security incidents and assistance
Where applicable and contractually required, we may support enterprise customers in responding to relevant security incidents, data-subject requests, audits, or compliance reviews to the extent appropriate to the service and available information.
9. Audit and review support
Qualified prospects and customers may request high-level documentation relevant to privacy, security, and operational review. Additional information may be provided subject to confidentiality, access controls, and commercial stage.
10. Request the DPA
If you are evaluating Cryptodam for enterprise use and need our Data Processing Addendum, contact us through the Contact page and select Legal / Privacy or Sales / Partnerships.