Your data doesn't train Genie's AI
You keep IP ownership of your docs
1. Parties: Identification of the Controller and Processor, including full legal names, registration details, and addresses
2. Background: Context of the agreement, relationship between parties, and purpose of the data processing activities
3. Definitions: Definitions of key terms used in the agreement, including technical terms and those defined by applicable data protection laws
4. Scope and Purpose of Processing: Detailed description of the data processing activities, categories of data, and purposes for which the data will be processed
5. Duration: Term of the agreement, including commencement date and termination provisions
6. Obligations of the Controller: Controller's responsibilities, including providing lawful instructions and ensuring legal basis for processing
7. Obligations of the Processor: Processor's duties including processing only on documented instructions, ensuring confidentiality, and implementing security measures
8. Security Measures: Technical and organizational measures required to protect personal data
9. Sub-processing: Conditions and requirements for engaging sub-processors, including notification and approval processes
10. Data Subject Rights: Procedures for handling data subject requests and processor's assistance obligations
11. Personal Data Breach: Notification requirements and procedures in case of data breaches
12. Audit Rights: Controller's rights to audit and processor's obligations to demonstrate compliance
13. Data Return and Deletion: Obligations regarding data return or deletion upon agreement termination
14. Liability and Indemnification: Allocation of liability and indemnification obligations between parties
15. Governing Law and Jurisdiction: Specification of Swiss law as governing law and jurisdiction for disputes
1. Cross-border Data Transfers: Required when personal data will be transferred outside Switzerland, specifying transfer mechanisms and safeguards
2. Special Categories of Data: Required when processing sensitive personal data, specifying additional safeguards and requirements
3. Insurance Requirements: Specific insurance obligations for either party, typically included for high-risk processing activities
4. Business Continuity: Required for critical processing activities, specifying disaster recovery and business continuity requirements
5. Joint Controllers: Required when there are multiple controllers involved in determining processing purposes
6. Data Protection Impact Assessment: Required for high-risk processing activities, outlining DPIA requirements and cooperation
7. Industry-Specific Requirements: Additional provisions for specific sectors (e.g., healthcare, financial services)
1. Schedule 1 - Processing Details: Detailed description of processing activities, including data categories, purposes, and duration
2. Schedule 2 - Technical and Organizational Measures: Detailed specification of security measures implemented by the processor
3. Schedule 3 - Approved Sub-processors: List of pre-approved sub-processors and their processing activities
4. Schedule 4 - Transfer Mechanisms: Details of mechanisms used for any cross-border data transfers
5. Schedule 5 - Security Breach Response Plan: Detailed procedures for handling and reporting data breaches
6. Schedule 6 - Data Return/Deletion Procedures: Specific procedures for returning or deleting data
7. Schedule 7 - Audit Procedures: Detailed procedures for conducting compliance audits
8. Appendix A - Contact Details: Key contacts for both parties including DPO details if applicable
9. Appendix B - Standard Forms: Templates for routine communications such as sub-processor notifications or breach reports
Find the exact document you need
International Data Transfer Addendum
Swiss law-governed addendum for regulating international personal data transfers, ensuring compliance with FADP requirements and data protection standards.
Intra Group Agreement Data Protection
Swiss law-governed agreement regulating data protection and transfers between group companies under FADP/DSG.
Joint Controller Agreement
A Swiss law-governed agreement establishing responsibilities and obligations between joint controllers for personal data processing under FADP and considering GDPR requirements.
Standard Data Processing Agreement
Swiss law-governed Data Processing Agreement establishing controller-processor obligations under FADP/DSG and aligned with GDPR requirements.
Data Addendum
Swiss law-governed data protection addendum establishing data processing obligations and compliance with FADP/DPA requirements.
Data Processing Addendum DPA
A Swiss law-governed agreement defining terms and responsibilities for personal data processing between controller and processor, ensuring compliance with FADP/revFADP and relevant GDPR requirements.
International Data Protection Agreement
Swiss law-governed agreement regulating international data protection and cross-border data transfers, ensuring compliance with Swiss FADP and relevant international standards.
Data Sharing Agreement Controller To Processor
Swiss law-governed Data Sharing Agreement between Controller and Processor, ensuring FADP/LPD compliance and establishing data processing safeguards.
Processor To Processor DPA
A Swiss law-governed agreement between two data processors establishing terms and conditions for delegated data processing activities.
Master Data Protection Agreement
A Swiss law-governed agreement establishing data processing requirements and responsibilities between controllers and processors under FADP/nDSG.
Controller To Controller Data Processing Agreement
Swiss law-governed agreement establishing data sharing framework between two independent data controllers, ensuring FADP compliance and defining mutual data protection responsibilities.
Intercompany Data Processing Agreement
Swiss law-governed agreement regulating intra-group personal data processing activities, ensuring compliance with Swiss FADP and relevant GDPR requirements.
Controller To Controller DPA
Swiss law-governed agreement between two data controllers establishing framework for lawful personal data sharing and processing.
DPA Agreement
Swiss law-governed Data Processing Agreement defining controller-processor relationships and compliance requirements under FADP/DSG.
Order Processing Agreement
A Swiss law-governed agreement between a data controller and processor that establishes obligations and responsibilities for personal data processing under FADP/DSG.
Data Privacy Addendum
Swiss law-governed Data Privacy Addendum ensuring compliance with Swiss FADP/revFADP and alignment with GDPR requirements for personal data processing.
Sub Processing Agreement
A Swiss law-governed agreement establishing terms for sub-processor data handling, ensuring compliance with Swiss FADP and related data protection requirements.
International Data Transfer Agreement
Swiss-law governed International Data Transfer Agreement for compliant cross-border personal data transfers under the revFDPA.
Data Protection Addendum
A Swiss law-governed Data Protection Addendum establishing data processing requirements and responsibilities between parties under Swiss FADP/DSG.
ұԾ’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ұԾ’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
We are ISO27001 certified, so your data is secure
Organizational security:
You retain IP ownership of your documents and their information
You have full control over your data and who gets to see it

.png)