* (n/a = not applicable)
** (optional; depends on the Customer’s configuration of the system, the connection to other systems, and the categories chosen by the Customer to be collected from Third Party Users).
| Categories of Personal Data | Categories of Data Subjects | Purpose of Processing | Categories of Data Recipients | Needed for Core Features | Processing Location | Acquia Inc. acts as Processor |
|---|---|---|---|---|---|---|
| The service does not process personal data. | The service does not process personal data. | N/A | N/A | N/A | N/A | N/A |
*** Alternative data center locations are not supported at this time.
| Objective | Technology / Measure | Data at Rest | Data in Transit |
|---|---|---|---|
| Anonymization and Pseudonymization | Data anonymization at Customer level is optional for Customer | N/A | N/A |
| Data confidentiality | Access control measures:
For more information, visit Security Annex and Product Description. | N/A N/A N/A | N/A N/A N/A |
| Data integrity | Anti-tampering technology For more information, visit Security Annex. | N/A | N/A |
| Data availability including restoring availability, restoring access to personal data, and data resilience | Business continuity and disaster recovery measures For more information, visit Security Annex. | N/A | N/A |
| Regular testing, assessing and evaluating of TOMs | Regular security and process reviews For more information, visit Security Annex. | N/A | N/A |
Data is retained in the Customer’s Drupal application, not in the Service.
The specific list of Acquia’s sub-processors is available on Acquia Sub-processors.
Data importer has implemented and will maintain appropriate administrative, physical, and technical safeguards for the protection of the security, confidentiality and integrity of Personal Data uploaded to the Services, as described in the Acquia Security Annex (available from Acqjuia Security Annex) applicable to the specific Services purchased by data exporter, as updated from time to time, and made available by data importer upon request. The data exporter is wholly responsible for implementing and maintaining security and data administration within any data exporter applications, configuration settings, or log settings used by data exporter in conjunction with the Services.
If this content did not answer your questions, try searching or contacting our support team for further assistance.
| N/A |
| N/A |
| Regular testing, assessing and evaluating of TOMs | Regular security and process reviews For more information, visit Security Annex. | N/A | N/A |
If this content did not answer your questions, try searching or contacting our support team for further assistance.