⚓ FormDock

Data Processing Addendum

Last updated: 29 July 2026

This DPA applies where you use FormDock to process personal data of third parties (your form submitters) and forms part of the Terms of Service. It is written to satisfy Art. 28 GDPR and the Swiss Federal Act on Data Protection (FADP); FormDock is operated from Switzerland.

Roles

You (or your client) are the data controller of submission data. FormDock is the data processor. We process submission data only to provide the service: storage, spam filtering, notification delivery, webhooks, and export.

Subprocessors

Neon (Postgres hosting), Vercel (application hosting), Postmark (transactional email), Stripe (billing — where Stripe Managed Payments applies, Stripe acts as merchant of record and is an independent controller of the payment transaction rather than our processor), Cloudflare (Turnstile spam verification), Sentry (error monitoring, EU-hosted — submission payloads and submitter identifiers are stripped before capture). We'll give 30 days' notice before adding subprocessors.

International transfers

Subprocessors above host data in the United States. Transfers from Switzerland and the EU/EEA rely on the EU/Swiss–US Data Privacy Framework where the subprocessor is certified, and on standard contractual clauses otherwise.

Security measures

Encryption in transit (TLS) and at rest; access limited to operational need; no payload contents in application logs; per-form rate limiting and abuse controls.

Data subject requests

The dashboard provides search, export, and deletion of individual submissions so you can service access and erasure requests directly. We'll assist with requests we receive by forwarding them to you.

Breach notification

We'll notify you without undue delay, and in any case within 72 hours, of becoming aware of a personal data breach affecting your submission data.

Deletion on termination

On account deletion, all submission data is deleted within 30 days.