This European Union General Data Protection Regulation Policy (the “GDPR Policy”) is incorporated into the End User Subscription Agreement between the parties (the “Agreement”), and details the additional terms and conditions that apply to Cigent Technology, Inc. (“Cigent”) processing of Personal Data as required by Article 28 of the General Data Protection Regulation. All capitalized terms not defined in this GDPR Policy will have the meanings set forth in the Agreement. This GDPR Policy is effective as of the effective date of the Agreement (“Effective Date”).
For purposes of this GDPR Policy, Customer and Cigent agree that Customer is the controller of Personal Data and Cigent is the processor of such data, except when Customer acts as a processor of Personal Data, in which case Cigent is a subprocessor to Customer. This GDPR Policy applies to the processing of Personal Data, within the scope of the GDPR, by Cigent on behalf of Customer. The GDPR Policy does not limit or reduce any data protection commitments Cigent makes to Customer in the Agreement between Cigent and Customer. The GDPR Policy does not apply where Cigent is a controller of Personal Data.