EntityReach / legal
LEGAL · UPDATED 14 SEPTEMBER 2026

Data processing & enterprise agreements

Confirm the processing terms for your organisation before uploading restricted account information.

01

Request the applicable agreement

Where EntityReach processes personal information on your organisation’s instructions, an applicable data processing agreement should define the parties, instructions, scope and safeguards. This page describes the contracting checklist; it is not itself an executed DPA. Contact nbuldumac@globaldatabase.com for privacy, support and legal requests. Include the email associated with your account and the scope of your request; do not send passwords or API keys.

02

Scope to confirm

Specify the authorised workspaces, business purpose, data categories, data subjects, access roles, processing duration, retention and deletion instructions. Ordinary use may include employee business contact information and customer account notes. Avoid special-category or highly sensitive personal data unless explicitly agreed.

03

Required contractual subjects

The agreement should address confidentiality, appropriate technical and organisational measures, assistance with rights requests and incidents, subprocessors, international transfers, deletion or return at termination and applicable audit rights. Any security certifications, hosting location commitments, breach response times or service levels must be evidenced and agreed; no unsupported commitment is implied by this website.

04

Before onboarding a team

Review Privacy, Cookies & storage, Service providers and Security. Confirm the operator and order details, your lawful basis for uploading information, which colleagues can access the workspace, and whether integration outputs can enter downstream systems.