Your data doesn't train Genie's AI
You keep IP ownership聽of your docs
1. Parties: Identification of the data controller and data processor, including their legal representatives
2. Background: Context of the agreement, relationship between parties, and purpose of data processing
3. Definitions: Key terms used in the agreement, aligned with Indonesian PDP Law definitions
4. Scope and Purpose of Processing: Detailed description of the data processing activities, types of personal data, and processing purposes
5. Duration of Processing: Timeline for data processing activities and terms for agreement renewal
6. Obligations of the Data Controller: Responsibilities and duties of the data controller, including providing instructions and ensuring legal basis for processing
7. Obligations of the Data Processor: Detailed processor obligations including security measures, confidentiality, and processing limitations
8. Security Measures: Technical and organizational security measures required to protect personal data
9. Sub-processing: Conditions and requirements for engaging sub-processors
10. Data Subject Rights: Procedures for handling data subject requests and assisting the controller
11. Data Breach Notification: Procedures and timelines for reporting data breaches
12. Audit Rights: Controller's right to audit and processor's obligation to demonstrate compliance
13. Termination: Conditions for termination and data handling upon termination
14. Governing Law and Jurisdiction: Specification of Indonesian law as governing law and jurisdiction for disputes
1. Cross-border Data Transfers: Required when personal data will be transferred outside Indonesia, including compliance with transfer requirements under PDP Law
2. Sector-Specific Requirements: Additional provisions for specific sectors (e.g., financial services, healthcare) subject to additional regulatory requirements
3. Data Localization Requirements: Specific provisions for compliance with Indonesian data localization requirements, if applicable
4. Insurance Requirements: Specific insurance obligations for data processing activities, if required by the controller
5. Business Continuity: Provisions for ensuring continuity of data processing services in emergency situations
6. Costs and Fees: Required when there are specific fee arrangements for data processing services
1. Description of Processing Activities: Detailed list of processing activities, including data categories, purposes, and processing operations
2. Technical and Organizational Security Measures: Detailed description of security measures implemented by the processor
3. Approved Sub-processors: List of pre-approved sub-processors and their processing activities
4. Data Transfer Mechanisms: Details of mechanisms used for international data transfers, if applicable
5. Service Level Agreement: Specific performance metrics and service levels for data processing activities
6. Personal Data Breach Response Plan: Detailed procedures for handling and reporting data breaches
Find the document you need
骋别苍颈别鈥檚 Security Promise
Genie is the safest place to draft. Here鈥檚 how we prioritise your privacy and security.
Your data is private:
We do not train on your data; 骋别苍颈别鈥檚 AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
We are ISO27001 certified, so your data is secure
Organizational security:
You retain IP ownership of your documents and their information
You have full control over your data and who gets to see it
