Data Processing Agreement
Terms governing the processing, protection and security of customer data handled through NaamX services.
This Data Processing Agreement ("DPA") describes how NaamX may process and protect personal data on behalf of customers when providing hosting, ERP, SaaS, cloud, business software and other digital services through naamx.com.
This DPA is intended to supplement the applicable service agreement, Terms & Conditions and Privacy Policy between NaamX and the customer.
1. Purpose of This Agreement
The purpose of this DPA is to establish responsibilities and safeguards relating to personal data processed by NaamX on behalf of a customer in connection with applicable services.
2. Definitions
For purposes of this DPA, "Personal Data" means information relating to an identified or identifiable individual, where applicable under relevant data-protection law.
"Processing" includes activities such as collecting, storing, organizing, accessing, retrieving, transmitting, modifying, protecting or deleting personal data.
3. Roles of the Parties
Depending on the applicable service and legal requirements, the customer may act as the data controller or equivalent role, while NaamX may process personal data on the customer's behalf as a service provider, processor or equivalent role.
4. Processing Instructions
NaamX will process customer data only as necessary to provide, maintain, secure and support the applicable services and according to the customer's lawful instructions.
NaamX may also process information where required to comply with applicable law, legal obligations, security requirements or legitimate operational requirements.
5. Customer Responsibilities
The customer is responsible for ensuring that it has an appropriate legal basis and all necessary permissions, notices and consents required to collect and process personal data through NaamX services.
6. Types of Personal Data
Depending on the services used, customer data may include information such as:
- Names and contact information
- Email addresses and telephone numbers
- Business and employee information
- Customer and supplier records
- Transaction and invoice information
- Account and login information
- Technical and device information
- Information submitted by authorized users
7. Categories of Data Subjects
Depending on the customer's use of NaamX services, affected individuals may include customers, employees, suppliers, business contacts, website users or other individuals whose information is entered into the customer's systems.
8. Confidentiality
NaamX will take reasonable measures to ensure that personnel and authorized service providers who have access to customer data are subject to appropriate confidentiality obligations.
9. Security Measures
NaamX may implement reasonable technical and organizational measures designed to protect data against unauthorized access, alteration, disclosure, loss or destruction.
Depending on the service, security measures may include access controls, authentication mechanisms, encryption where appropriate, monitoring, backups and infrastructure security.
10. Access Controls
Access to customer data should be limited to authorized personnel, systems and service providers who require access for legitimate operational or support purposes.
11. Customer Account Security
Customers are responsible for maintaining the confidentiality of account credentials and for implementing appropriate access controls for their users.
12. Data Breach
If NaamX becomes aware of a confirmed security incident involving customer personal data, NaamX may take reasonable steps to investigate, contain and mitigate the incident.
Where legally required and reasonably practicable, NaamX may notify the affected customer regarding a relevant data-security incident.
13. Data Retention
Customer data may be retained for the period necessary to provide the applicable services, comply with legal obligations, resolve disputes, maintain security or meet legitimate business requirements.
14. Data Deletion
Following termination of applicable services, customer data may be deleted or otherwise handled according to the applicable service terms, retention requirements and technical procedures.
15. Backups
Depending on the selected service, NaamX may maintain backups for operational recovery, security and business-continuity purposes.
Backup retention periods may vary by service and infrastructure.
16. Subprocessors
NaamX may use trusted third-party providers to support hosting, infrastructure, security, communications, payment processing, backups, analytics or other service functions.
Such providers may process limited information where necessary to perform their contracted services.
17. Third-Party Services
If a customer chooses to connect a third-party application, integration or external service to NaamX, data processing may also be governed by the third party's own terms and privacy policies.
18. International Data Transfers
Depending on the service architecture and infrastructure, data may be processed or stored in different countries or regions.
Where applicable, NaamX will seek to use appropriate safeguards for international data transfers as required by applicable law.
19. Data Subject Requests
Where appropriate and technically feasible, NaamX may assist customers with reasonable requests relating to access, correction, deletion, export or other data-subject rights.
Customers remain responsible for responding to requests from their own customers, employees or other data subjects unless otherwise agreed.
20. Data Accuracy
Customers are responsible for ensuring that personal data entered into NaamX systems is accurate, relevant and appropriately maintained.
21. Sensitive Information
Customers should not upload highly sensitive or regulated personal information unless the applicable NaamX service expressly supports such information and the customer has confirmed that appropriate safeguards are in place.
22. Compliance With Law
Each party is responsible for complying with the data-protection, privacy and other laws applicable to its respective activities.
23. Government & Legal Requests
NaamX may disclose information when required by applicable law, valid legal process, court order or a lawful request from a competent authority.
24. Audit & Compliance Information
Where appropriate, NaamX may provide customers with reasonable information about relevant security and data-processing practices, subject to confidentiality, security and operational limitations.
25. Data Portability
Depending on the applicable service, customers may be able to export or retrieve certain customer data using available tools or agreed procedures.
26. Customer Cooperation
Customers should cooperate with NaamX where necessary to maintain account security, investigate incidents, respond to lawful requests and protect customer data.
27. Security Incidents
NaamX may take immediate measures to protect systems and data when security incidents, malicious activity or unauthorized access are detected.
28. Term & Termination
This DPA applies while NaamX processes customer data in connection with the applicable services.
Certain obligations relating to confidentiality, security and legally required data handling may continue after termination where applicable.
29. Changes to This DPA
NaamX may update this DPA when necessary to reflect changes in services, technology, security practices or applicable legal requirements.
30. Contact Us
For questions regarding data processing, privacy, security or this DPA, please contact NaamX.
Web Hosting, ERP Solutions & Digital Business Services
Last Updated: 20 August 2026




