Your data doesn't train Genie's AI
You keep IP ownership of your docs
1. Parties: Identification of the contracting parties and their roles (Responsible Party/Operator)
2. Background: Context of the agreement and its relationship to the main agreement it supplements
3. Definitions: Definitions of key terms, aligned with POPIA terminology
4. Scope and Purpose: Details of the personal information processing activities covered by the addendum
5. Obligations of the Parties: Core responsibilities and commitments of each party regarding data protection
6. Data Processing Requirements: Specific requirements for processing personal information in compliance with POPIA
7. Security Measures: Required technical and organizational security measures
8. Data Breach Notification: Procedures and timeframes for reporting and handling data breaches
9. Confidentiality: Confidentiality obligations regarding processed personal information
10. Audit Rights: Rights and procedures for auditing compliance
11. Term and Termination: Duration of the addendum and termination provisions
12. Return or Destruction of Data: Requirements for handling personal information upon termination
13. General Provisions: Standard contractual terms including governing law and jurisdiction
1. Cross-Border Transfers: Requirements for transferring personal information outside South Africa - include when international transfers are contemplated
2. Sub-processors: Terms governing the appointment and oversight of sub-processors - include when sub-processing is allowed
3. Special Personal Information: Additional safeguards for processing special personal information as defined in POPIA - include when processing sensitive data
4. Direct Marketing: Specific requirements for processing personal information for direct marketing purposes - include when marketing activities are involved
5. Children's Personal Information: Special provisions for processing children's personal information - include when processing minors' data
6. Insurance Requirements: Specific insurance obligations related to data protection - include for high-risk processing
7. Regulatory Cooperation: Procedures for cooperating with regulatory authorities - include for regulated industries
1. Schedule 1: Description of Processing Activities: Detailed description of personal information processing activities, including categories of data subjects and personal information
2. Schedule 2: Technical and Organizational Security Measures: Specific security measures and controls implemented to protect personal information
3. Schedule 3: Approved Sub-processors: List of approved sub-processors and their processing activities
4. Schedule 4: Transfer Mechanisms: Details of mechanisms used for cross-border transfers of personal information
5. Appendix A: Data Breach Response Plan: Detailed procedures for responding to and reporting data breaches
6. Appendix B: Compliance Checklist: Checklist of POPIA compliance requirements and responsibilities
Find the exact document you need
International Data Transfer Addendum
A South African law-compliant addendum governing international transfers of personal information under POPIA requirements.
Intra Group Data Processing Agreement
A South African law-governed agreement regulating personal information processing between entities within the same corporate group, ensuring POPIA compliance.
Third Party Processing Agreement
A South African law-governed agreement regulating personal information processing between a responsible party and an operator under POPIA.
Data Processing Addendum
A South African law-compliant agreement governing personal information processing between controllers and processors under POPIA.
Intercompany Data Transfer Agreement
South African law-governed agreement regulating intra-group data transfers in compliance with POPIA and local data protection regulations.
Data Management Agreement
A South African law-compliant agreement governing data management and processing activities between organizations, ensuring POPIA compliance and data protection.
Data Controller To Data Controller Agreement
South African POPIA-compliant agreement governing personal information sharing between two data controllers, establishing mutual obligations and responsibilities.
DPA Agreement
A South African law-compliant Data Processing Agreement establishing terms for handling personal information under POPIA regulations.
Third Party Data Processing Agreement
A South African law-compliant agreement governing the processing of personal information by a third-party operator on behalf of a responsible party under POPIA.
Personal Data Transfer Agreement
A POPIA-compliant agreement for transferring personal information between parties under South African law.
Controller Processor Agreement
A South African law-governed agreement between a data controller and processor establishing terms for personal information processing under POPIA.
Affiliate Addendum
A South African law-compliant addendum establishing terms and conditions for affiliate marketing relationships, including commission structures and compliance requirements.
Sub Processing Agreement
A South African-compliant agreement governing the delegation of personal information processing activities to a sub-processor under POPIA requirements.
International Data Transfer Agreement
A South African law-governed agreement for cross-border personal information transfers, ensuring POPIA compliance and data protection standards.
Data Protection Addendum
A South African law-governed addendum establishing POPIA-compliant terms for personal information processing between parties.
ұԾ’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ұԾ’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
We are ISO27001 certified, so your data is secure
Organizational security:
You retain IP ownership of your documents and their information
You have full control over your data and who gets to see it

.png)