Skip to main content
DocsSecurityCompliance

Compliance

GDPR compliance, data processor disclosures, and policy documents.

GDPR

Staffify AI processes data in compliance with the General Data Protection Regulation (GDPR). This includes:

  • Lawful basis for processing established for all data types
  • Data subject rights: access, rectification, erasure, portability, and objection
  • 72-hour breach notification to supervisory authorities
  • Data Processing Agreements (DPA) available on request
  • Two-factor authentication available for all account types

Data Processors

The following third-party processors are used in the operation of the Staffify AI platform:

ProcessorPurpose
Payment ProcessingBilling and payments
Telephony & SMSVoice calls and messaging
Speech ServicesSpeech-to-text and text-to-speech
Cloud InfrastructureHosting and storage
AI ProcessingLanguage model inference
CDN & SecurityDNS, domains, and DDoS protection
Error MonitoringReliability and issue detection

Policy Documents

Security - Compliance