Your data doesn't train Genie's AI
You keep IP ownership of your docs
1. Parties: Identification of the data exporter and data importer, including their full legal names, registration numbers, and addresses
2. Background: Context of the data transfer relationship and reference to the main agreement this addendum supplements
3. Definitions: Key terms used in the addendum, aligned with POPIA definitions and international data protection terminology
4. Scope and Purpose: Details of the data transfer activities covered by the addendum and their legitimate purpose
5. Data Protection Obligations: Core obligations of both parties regarding data protection, including compliance with POPIA requirements
6. Transfer Mechanisms: Legal basis for the transfer under Section 72 of POPIA and details of adequacy measures
7. Security Measures: Technical and organizational security measures implemented to protect the transferred data
8. Data Subject Rights: Procedures for handling data subject requests and ensuring their rights are protected
9. Breach Notification: Protocol for reporting and handling personal data breaches
10. Audit Rights: Rights and procedures for conducting audits of data protection compliance
11. Term and Termination: Duration of the addendum and conditions for termination
12. Return or Deletion of Data: Obligations regarding data handling upon termination of the agreement
13. Governing Law and Jurisdiction: Confirmation of South African law application and jurisdiction for disputes
1. Sub-processing: Include when the data importer may engage sub-processors to process the transferred data
2. Special Categories of Data: Include when sensitive personal information as defined in POPIA is being transferred
3. International Organizations: Include when transfers involve international organizations with specific immunities or privileges
4. Direct Collection: Include when data importer collects data directly from data subjects
5. Specific Processing Restrictions: Include when certain types of processing are prohibited or restricted
6. Insurance Requirements: Include when specific insurance coverage for data protection is required
7. Local Representative: Include when either party needs to appoint a local representative
1. Schedule 1 - Description of Transfer: Detailed description of the data transfer including categories of data subjects, types of personal information, frequency of transfer, and retention periods
2. Schedule 2 - Technical and Security Measures: Detailed specification of security measures implemented by both parties
3. Schedule 3 - Sub-processors: List of approved sub-processors and their processing activities, if applicable
4. Schedule 4 - Transfer Impact Assessment: Assessment of the privacy impact of the transfer and mitigation measures
5. Schedule 5 - Contact Points: List of key contacts for data protection matters, breach notification, and operational issues
6. Appendix A - Standard Contractual Clauses: If used, incorporation of standard contractual clauses or similar transfer mechanisms
7. Appendix B - Compliance Certifications: Copies or details of relevant data protection certifications held by either party
Find the exact document you need
International Data Transfer Addendum
A South African law-compliant addendum governing international transfers of personal information under POPIA requirements.
Intra Group Data Processing Agreement
A South African law-governed agreement regulating personal information processing between entities within the same corporate group, ensuring POPIA compliance.
Third Party Processing Agreement
A South African law-governed agreement regulating personal information processing between a responsible party and an operator under POPIA.
Data Processing Addendum
A South African law-compliant agreement governing personal information processing between controllers and processors under POPIA.
Intercompany Data Transfer Agreement
South African law-governed agreement regulating intra-group data transfers in compliance with POPIA and local data protection regulations.
Data Management Agreement
A South African law-compliant agreement governing data management and processing activities between organizations, ensuring POPIA compliance and data protection.
Data Controller To Data Controller Agreement
South African POPIA-compliant agreement governing personal information sharing between two data controllers, establishing mutual obligations and responsibilities.
DPA Agreement
A South African law-compliant Data Processing Agreement establishing terms for handling personal information under POPIA regulations.
Third Party Data Processing Agreement
A South African law-compliant agreement governing the processing of personal information by a third-party operator on behalf of a responsible party under POPIA.
Personal Data Transfer Agreement
A POPIA-compliant agreement for transferring personal information between parties under South African law.
Controller Processor Agreement
A South African law-governed agreement between a data controller and processor establishing terms for personal information processing under POPIA.
Affiliate Addendum
A South African law-compliant addendum establishing terms and conditions for affiliate marketing relationships, including commission structures and compliance requirements.
Sub Processing Agreement
A South African-compliant agreement governing the delegation of personal information processing activities to a sub-processor under POPIA requirements.
International Data Transfer Agreement
A South African law-governed agreement for cross-border personal information transfers, ensuring POPIA compliance and data protection standards.
Data Protection Addendum
A South African law-governed addendum establishing POPIA-compliant terms for personal information processing between parties.
ұԾ’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ұԾ’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
We are ISO27001 certified, so your data is secure
Organizational security:
You retain IP ownership of your documents and their information
You have full control over your data and who gets to see it

.png)