Your data doesn't train Genie's AI
You keep IP ownership of your docs
1. Parties: Identification of the data transferor and transferee companies, including registration details and addresses
2. Background: Context of the agreement, relationship between the parties, and purpose of the data transfer arrangement
3. Definitions: Detailed definitions of key terms used in the agreement, including technical terms and those defined in POPIA
4. Purpose and Scope: Specific purposes for which data will be transferred and processed, scope of data transfer activities
5. Data Protection Principles: Commitment to comply with POPIA's conditions for lawful processing of personal information
6. Obligations of the Data Transferor: Responsibilities of the sending party, including data accuracy, security measures, and notification requirements
7. Obligations of the Data Recipient: Responsibilities of the receiving party, including processing limitations, security measures, and confidentiality
8. Security Measures: Technical and organizational measures required to protect the transferred data
9. Data Subject Rights: Procedures for handling data subject requests and ensuring their rights under POPIA
10. Breach Notification: Procedures and timeframes for reporting and handling data breaches
11. Audit Rights: Rights and procedures for auditing compliance with the agreement
12. Term and Termination: Duration of the agreement and circumstances for termination
13. Return or Destruction of Data: Obligations regarding data handling upon termination
14. General Provisions: Standard contractual terms including governing law, jurisdiction, and amendment procedures
1. Cross-Border Transfer Provisions: Required when data will be transferred outside South Africa, addressing additional requirements under POPIA Section 72
2. Special Categories of Data: Required when transferring sensitive personal information as defined in POPIA
3. Sub-Processing: Include when the recipient may need to engage other entities to process the transferred data
4. Industry-Specific Compliance: Required when transfers involve regulated industries (e.g., financial services, healthcare)
5. Data Protection Impact Assessment: Include when high-risk processing activities require prior impact assessment
6. Business Continuity: Optional section covering disaster recovery and business continuity measures
7. Insurance Requirements: Include when specific insurance coverage is required for data protection
8. Cost Allocation: Required when there are specific costs associated with the data transfer that need to be allocated between parties
1. Schedule 1 - Categories of Data: Detailed list of personal information categories being transferred
2. Schedule 2 - Approved Purposes: Comprehensive list of approved purposes for data processing
3. Schedule 3 - Security Measures: Technical and organizational security measures to be implemented
4. Schedule 4 - Transfer Mechanisms: Technical details of how data transfers will be executed
5. Schedule 5 - Contact Points: Key contacts for operational, technical, and legal matters
6. Schedule 6 - Sub-Processors: List of approved sub-processors (if applicable)
7. Appendix A - Data Processing Agreement: Detailed terms for data processing activities as required by POPIA
8. Appendix B - Service Level Agreement: Performance metrics and service levels for data transfers
Find the exact document you need
International Data Transfer Addendum
A South African law-compliant addendum governing international transfers of personal information under POPIA requirements.
Intra Group Data Processing Agreement
A South African law-governed agreement regulating personal information processing between entities within the same corporate group, ensuring POPIA compliance.
Third Party Processing Agreement
A South African law-governed agreement regulating personal information processing between a responsible party and an operator under POPIA.
Data Processing Addendum
A South African law-compliant agreement governing personal information processing between controllers and processors under POPIA.
Intercompany Data Transfer Agreement
South African law-governed agreement regulating intra-group data transfers in compliance with POPIA and local data protection regulations.
Data Management Agreement
A South African law-compliant agreement governing data management and processing activities between organizations, ensuring POPIA compliance and data protection.
Data Controller To Data Controller Agreement
South African POPIA-compliant agreement governing personal information sharing between two data controllers, establishing mutual obligations and responsibilities.
DPA Agreement
A South African law-compliant Data Processing Agreement establishing terms for handling personal information under POPIA regulations.
Third Party Data Processing Agreement
A South African law-compliant agreement governing the processing of personal information by a third-party operator on behalf of a responsible party under POPIA.
Personal Data Transfer Agreement
A POPIA-compliant agreement for transferring personal information between parties under South African law.
Controller Processor Agreement
A South African law-governed agreement between a data controller and processor establishing terms for personal information processing under POPIA.
Affiliate Addendum
A South African law-compliant addendum establishing terms and conditions for affiliate marketing relationships, including commission structures and compliance requirements.
Sub Processing Agreement
A South African-compliant agreement governing the delegation of personal information processing activities to a sub-processor under POPIA requirements.
International Data Transfer Agreement
A South African law-governed agreement for cross-border personal information transfers, ensuring POPIA compliance and data protection standards.
Data Protection Addendum
A South African law-governed addendum establishing POPIA-compliant terms for personal information processing between parties.
ұԾ’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ұԾ’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
We are ISO27001 certified, so your data is secure
Organizational security:
You retain IP ownership of your documents and their information
You have full control over your data and who gets to see it

.png)