5.1 Privacy Policies - Subprocessors
Updated 17 October 2025
This document is a template for a Subprocessor List, designed to help a company identify and manage third-party entities authorized to process customer and personal data. It outlines the company's definition of customer data, including personal data as defined under GDPR, and provides a structured table for listing subprocessors, their processing activities, and locations. The template also includes guidance on how to update and customize the list.
Subprocessors
This document is taken from the GitHub website - more information about GitHub and its functions can be found at https://github.com/. Please note that many of the included provisions are designed for GitHub or similar site (such as for building and developing software with online communities), so they are not relevant to all types of business.
You can amend this document to be suitable for your own Community and purposes using the smart fields and customizing the bracketed sections. We recommend adding hyperlinks to your own policies and website pages - make sure your business has in place all the policies referred to here.
Please find the other specific Privacy Policies in this 'GitHub Site Policies for Startups' repository.
[company name] defines customer data as all data provided by the customer to [company name] through their use of [company name] services. Some customer data is personal data as defined under GDPR.
The [company name] Subprocessor List identifies subprocessors authorized to subprocess customer or personal data on behalf of [company name] to provide services to our Enterprise customers. This list is applicable for all [company name] services governed by the [[company name] Data Protection Agreement].
[company name] publishes the names of any new subprocessors for its online services at least [30 days] in advance of the subprocessor’s authorization to perform services that may involve access to customer data or personal data.
[To receive notifications of updates to this Subprocessor list, please follow the instructions provided in [insert link to instructions, if applicable]].
If you have questions about this list, please contact us at [insert email address or method of contact].
Complete the table below with the list of subprocessors used on your site. An example has been provided in row 2 from the GitHub site.
Name of Subprocessor | Description of Processing | Location of Processing | Corporate Location |
[Amazon Web Services (AWS)] | [Cloud Hosted Infrastructure and Data Hosting] | [United States] | [United States] |
About this template
What is this template?
5.1 Privacy Policies - Subprocessors is a free, ready-to-use Commercial law template you can open, customize, and download on GitLaw. It gives you a professionally structured starting point, so you never have to draft from a blank page. The wording is plain and modern, organized into clear sections that are easy to read, edit, and adapt to your own situation before you share or sign it.
When should you use it?
Reach for this Commercial law template whenever you need a reliable agreement quickly and want to be sure the essentials are covered. It suits individuals, freelancers, startups, and established businesses alike. Instead of paying for a document drafted from scratch, you can start here, tailor the details to your arrangement, and have a polished draft ready in minutes. This version is drafted with European Union and United States of America in mind, though you should always review the final wording against the laws that apply to you.
What's typically included?
A well-drafted Commercial law usually sets out the parties involved, the scope of the agreement, and each side's rights and responsibilities. Expect sections covering key terms and definitions, how long the agreement lasts, how it can be ended, and what happens if something goes wrong. This template brings those building blocks together in a sensible order, so you can focus on the specifics rather than worrying about what to include. Open it to read the full document, then sign up to edit, negotiate, and e-sign it directly in GitLaw.