Data Protection Addendum (DPA)
The Data Protection Addendum (DPA) is a modular, lawyer-vetted addendum that supplements core SaaS or cloud service agreements to address data processing obligations, cross-border transfers, security, and privacy compliance. It is part of OLL’s widely trusted library of open, lawyer-vetted standard agreements.
Data Protection Addendum (DPA) (Version 1.0)
DPA Setup Page | |
By executing this DPA Setup Page, Customer and Provider enter into the Data Protection Addendum (DPA) (Version 1.0). The DPA includes the contents of this DPA Setup Page, including the Key Terms, Schedules and any Additional Terms set forth below. Capitalized terms not defined in this DPA Setup Page have the meanings given in the Data Protection Addendum. |
Key Terms | |
Agreement | This DPA is an Attachment to the Agreement between Customer and Provider identified below: |
[include name and date of agreement between customer and provider to which this dpa becomes an attachment] | |
DPA Effective Date | [fill in date] |
Subprocessor List | [attach or link to location of provider’s subprocessor list and specify method of notification of changes (or state “none”)] |
Schedules (attach) | |
The following Schedules are incorporated into this DPA: | |
Schedule 1: Subject Matter and Details of Processing | |
Schedule 2: Technical and Organizational Measures | |
Schedule 3: Cross-Border Transfer Mechanisms | |
Schedule 4: Region-Specific Terms | |
Additional Terms | |
The following additions to or modifications of the Data Protection Addendum are agreed by the parties and control in the event of any conflicts: | |
Signatures | |
Agreed to as of the DPA Effective Date by each party’s authorized representative: | |
Customer: Date: [customer sign date] | Provider: Date: [provider sign date] |
Standard Terms
This Data Protection Addendum (“DPA”) is an Attachment to the Agreement. Customer and Provider enter into this DPA by executing a DPA Setup Page. Capitalized terms not defined in this DPA are defined in the Agreement or DPA Setup Page.
Definitions.
“Agreement” means the Agreement between Customer and Provider incorporating the Cloud Terms (Version 1.0) which is specified on the DPA Setup Page.
“Audit” and “Audit Parameters” are defined in Section 9.3 below.
“Audit Report” is defined in Section 9.2 below.
“Controller” means the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of Processing of Personal Data.
“Customer Instructions” is defined in Section 3.1 below.
“Customer Personal Data” means Personal Data in Customer Data (as defined in the Agreement).
This is a preview. The full template is free on GitLaw.
5.0 out of 5 on Google
Read reviewsAs seen in








Frequently asked questions
A template isn't binding on its own - like any contract, it becomes binding once it's properly completed and signed. Templates in our curated library are professionally drafted for US or UK law; review any template before you sign it.
Yes. Chat with GitLaw to edit any section, or make changes directly in the editor.
Yes, read about team plans here.
Describe what you need in the chat and GitLaw will draft it for you.
Templates in our curated library are professionally drafted for US or UK law. The wider library comes from the GitLaw community and public sources - a solid starting point, but check any template fits your situation before you rely on it.
Mostly US and UK law. Some templates use general commercial terms that work across jurisdictions, and many note which law they're written for.
It depends on the situation. Templates work well for routine business agreements. For anything involving significant money, complex IP, employment, or areas you're unsure about, it's worth getting professional advice before you sign. GitLaw provides templates and tools, not legal advice.
Open any template in GitLaw and describe the change you want in the chat — 'make clause 4 mutual' or 'add a 30-day notice period', for example. GitLaw drafts the revised language and shows it as a suggested edit. You accept, reject, or keep editing from there.
Yes. Upload a Word, PDF, or Markdown file and GitLaw will open it in the editor. You can review, edit, or chat with GitLaw about it the same way you would with any template from the library.
Trusted by 5,000+ businesses


From template to signed, in one place
Every template opens in an editor with an AI agent alongside it.
Open
Pick a template and open it. Nothing to download, and no credit card to start.
Free to open
Edit with AI
Describe your situation in chat and the agent adapts the wording, clause by clause.
Tracked changes you can review
Send and sign
Share it for negotiation, then collect signatures without leaving GitLaw.
eSign included
Built for your legal work,
with practicing lawyers
Trained on 5,500+ clauses and specialist areas of law. Built with a standards committee of independent lawyers.
As seen in








Ready to get started?
No sales calls, no credit card. Just chat with GitLaw.
GitLaw provides templates and tools, not legal advice. Templates are a starting point, not a substitute for advice on your situation - for anything significant, speak to a qualified lawyer.



