Effective Date: 20 July 2025
This Data Processing Agreement (“DPA”) forms part of the Terms of Service between Saga ERP (“Processor,” “we,” “our,” or “us”) and the customer using the Saga ERP platform (“Controller,” “Customer,” or “you”). This agreement governs the processing of personal data by Saga ERP on behalf of the Customer in connection with the use of the Saga ERP Software-as-a-Service (SaaS) platform.
For the purposes of this Agreement:
Processor refers to Saga ERP, which processes personal data on behalf of the Customer.
Saga ERP will process personal data only to the extent necessary to provide the Service to the Customer, including:
Saga ERP does not use Customer Data for advertising, profiling, or unrelated commercial purposes.
Depending on how the Service is used, personal data may relate to:
The types of personal data processed may include:
The Customer determines which categories of personal data are stored within the platform.
The Customer agrees to:
Saga ERP is not responsible for verifying the legality of the data submitted by the Customer.
Saga ERP agrees to:
Saga ERP implements security measures designed to protect personal data, which may include:
These measures are periodically reviewed and improved as part of Saga ERP’s security practices.
Saga ERP may engage third-party service providers (“Subprocessors”) to assist in providing the Service, including:
Saga ERP ensures that any subprocessors are bound by contractual obligations that provide an equivalent level of data protection as outlined in this Agreement.
Saga ERP remains responsible for the performance of its subprocessors.
If personal data is transferred or stored outside the Customer’s jurisdiction, Saga ERP will take appropriate safeguards to ensure that such transfers comply with applicable data protection laws.
Where reasonably possible, Saga ERP will assist the Customer in responding to requests from data subjects exercising their rights, which may include:
The Customer remains responsible for responding to such requests.
In the event of a confirmed personal data breach affecting Customer Data, Saga ERP will:
Saga ERP will retain personal data only for as long as necessary to provide the Service or comply with legal obligations.
Upon termination of the Service or upon written request from the Customer:
Upon reasonable request and subject to confidentiality obligations, Saga ERP may provide information necessary to demonstrate compliance with this Agreement and applicable data protection laws.
Any audits must be conducted in a manner that does not disrupt normal operations or compromise the security of other customers.
Each party’s liability under this DPA shall be subject to the limitations of liability set forth in the Saga ERP Terms of Service.
Saga ERP may update this Data Processing Agreement from time to time to reflect legal, technical, or operational changes. Updated versions will be posted on the website with a revised effective date.
If you have any questions about this Data Processing Agreement or Saga ERP’s data protection practices, please contact: