Data Processing Agreement
Last updated: 27 August 2026
Our role
When Animus builds and operates AI workflows connected to your systems, we act as a data processor and you remain the data controller. We process personal data only on your documented instructions — the workflows you have scoped and approved — and for no other purpose. Your data is never used to train AI models, ours or anyone else's.
What we process
The categories of data depend on the systems you connect and the workflows we build — typically contact details, correspondence, calendar entries, and business records held in your CRM, inbox, and connected tools. The scope is agreed in writing during onboarding and can be inspected at any time in your workflow run history.
Security measures
- Dedicated, isolated infrastructure per client — your workflows and data never share a server or database with another client
- UK data residency for client workloads and backups (London datacentres)
- Encryption in transit (TLS / encrypted private networking) and at rest
- Nightly encrypted backups held separately from production, with restores tested on an automated monthly drill
- Administrative access restricted to named engineers over an authenticated private network — no public admin surfaces
- Read-only access to your systems by default; write access is added per approved workflow
- Human approval gates available on any action that contacts your customers or changes state
- Continuous monitoring with alerting on failures, connection health, and backup freshness
- Full logging of workflow activity, retained for audit
Sub-processors
We use a small set of vetted sub-processors to operate the service. The current list, purposes, and locations are published on our Sub-Processors page. We will notify you before adding a sub-processor that processes your data.
Breach notification, audits, and data subject rights
We notify you without undue delay after becoming aware of a personal data breach affecting your data, and assist with data subject access requests and ICO correspondence relating to processing we perform. Workflow activity logs are available to support audits.
Termination and return of data
On termination, we export and return your workflow definitions and data, then delete client data from our infrastructure, including backups as they expire from the backup retention cycle (35 days). What we built for you leaves with you.
Obtaining a signed DPA
A countersigned Data Processing Agreement incorporating these terms is part of every client engagement and is executed during onboarding, before any system is connected. To request a copy in advance, email team@tryanimus.com.