Data Processing Agreement

How Revimize processes customer personal data when acting as a processor.

Last updated: 22 July 2026

This is a summary DPA outline for transparency on the website. Execute a signed DPA with counsel review for production customer agreements.

Roles

When you use Revimize with customer personal data, you are typically the controller (or a processor for your own customer) and Revimize acts as a processor. For website enquiry data about your own representatives, Revimize acts as a controller as described in the Privacy Policy.

Nature and purpose of processing

Revimize processes personal data contained in CRM records, opportunity and account data, communications metadata, and related revenue signals solely to provide revenue intelligence, risk scoring, explanations, recommendations, and support.

Instructions and confidentiality

Revimize processes personal data only on documented customer instructions and ensures personnel authorised to process personal data are bound by confidentiality obligations.

Security measures

Security measures include EU Azure hosting, encryption in transit and at rest, logical tenant isolation, access controls, and controlled pilot scoping. Details are summarised on the Security page.

Sub-processors

Revimize may use infrastructure, email, and AI sub-processors needed to deliver the service. Material changes to sub-processors will be communicated through customer channels as the product matures.

International transfers

Primary hosting is in the EU. Where transfers outside the EEA are required for specific providers, Revimize will use appropriate transfer mechanisms such as Standard Contractual Clauses where applicable.

Assistance, deletion, and audits

Revimize will assist with data-subject requests, security incidents affecting personal data, and deletion or return of personal data at the end of the service relationship, subject to legal retention requirements. Audit rights can be agreed in a signed customer DPA.