Data Processing Agreement
Last updated:
This summary describes FoxtINN's standard processor terms. A signed DPA (including SCCs where required) controls for GDPR / UK GDPR / similar regimes. Contact us for the executable agreement. This page is not itself a signed contract.
Roles
Customer is the controller (or a processor on behalf of its customers). FoxtINN acts as processor for Customer Data processed in the service.
Processing purpose
Provide, maintain, secure, and support the FoxtINN service per the Terms of Service and documented instructions, including optional FoxtVoice and Lala features you enable.
Categories of data
Typical categories include staff identity and schedule data, task and ticket content, guest request content you capture, and — if FoxtVoice is enabled — call audio, transcripts, and call metadata. Customers must not instruct us to process PHI without a BAA.
Subprocessors
See the Subprocessors page. We notify customers of material new subprocessors with advance notice and a right to object as stated in the signed DPA (typically 30 days).
Transfers
International transfers governed by SCCs plus supplementary measures where required. Default hosting is AWS us-east-2.
Security
Security measures are described on our Security page. Formal audit reports (including SOC 2 materials when available) are provided under NDA — not as a public certification badge.
Assistance & deletion
We assist with data-subject requests as described in the signed DPA. After termination we delete or return Customer Data on the schedule in the DPA and Data Retention Schedule, except for legally required copies.
Audit rights
Customer audit rights are primarily satisfied by third-party audit reports and questionnaires under NDA, plus reasonable additional information as set out in the signed DPA. On-site audits, if any, follow the signed DPA.
How to request the executable DPA
Email hello@foxtcon.com or Call Laila at (816) 816-3823.
Questions? Call Laila at (816) 816-3823 · hello@foxtcon.com · Back to Trust Center