Data Processing Addendum (DPA)

Last updated: January 2026

This Data Processing Addendum forms part of the agreement between TimeOffLedger and the Customer.

1. Roles of the Parties

  • The Customer is the Data Controller.
  • TimeOffLedger is the Data Processor.

2. Scope of Processing

TimeOffLedger processes personal data solely to provide the Service, including hosting, storage, analytics, and customer support.

3. Processor Obligations

TimeOffLedger shall:

  • Process data only on documented instructions
  • Ensure confidentiality of personnel
  • Implement appropriate security measures
  • Assist with data subject rights requests
  • Notify Customer of data breaches without undue delay

4. Sub-processors

We may engage sub-processors for infrastructure, analytics, or support. We remain responsible for their compliance.

5. International Transfers

Where personal data is transferred internationally, appropriate safeguards such as SCCs shall apply.

6. Data Breach Notification

We will notify the Customer promptly upon becoming aware of a personal data breach.

7. Data Deletion and Return

Upon termination of the Service, personal data will be deleted or returned upon request, subject to legal retention requirements.

8. Audit Rights

Customers may request reasonable audit information to verify compliance with this DPA.

9. Governing Law

This DPA shall be governed by applicable data protection laws and the governing law specified in the Terms and Conditions.

Contact Us

If you have questions or requests regarding this Privacy Policy, please contact us:

Time Off Ledger LLC
5900 Balcones Drive #10433
Austin, TX 78731
United States

Email: admin@timeoffledger.com
Tel: +1 775 522 9719