Data Processing Agreement

Last updated: 27 August 2026

Our role

When Animus builds and operates AI workflows connected to your systems, we act as a data processor and you remain the data controller. We process personal data only on your documented instructions — the workflows you have scoped and approved — and for no other purpose. Your data is never used to train AI models, ours or anyone else's.

What we process

The categories of data depend on the systems you connect and the workflows we build — typically contact details, correspondence, calendar entries, and business records held in your CRM, inbox, and connected tools. The scope is agreed in writing during onboarding and can be inspected at any time in your workflow run history.

Security measures

  • Dedicated, isolated infrastructure per client — your workflows and data never share a server or database with another client
  • UK data residency for client workloads and backups (London datacentres)
  • Encryption in transit (TLS / encrypted private networking) and at rest
  • Nightly encrypted backups held separately from production, with restores tested on an automated monthly drill
  • Administrative access restricted to named engineers over an authenticated private network — no public admin surfaces
  • Read-only access to your systems by default; write access is added per approved workflow
  • Human approval gates available on any action that contacts your customers or changes state
  • Continuous monitoring with alerting on failures, connection health, and backup freshness
  • Full logging of workflow activity, retained for audit

Sub-processors

We use a small set of vetted sub-processors to operate the service. The current list, purposes, and locations are published on our Sub-Processors page. We will notify you before adding a sub-processor that processes your data.

Breach notification, audits, and data subject rights

We notify you without undue delay after becoming aware of a personal data breach affecting your data, and assist with data subject access requests and ICO correspondence relating to processing we perform. Workflow activity logs are available to support audits.

Termination and return of data

On termination, we export and return your workflow definitions and data, then delete client data from our infrastructure, including backups as they expire from the backup retention cycle (35 days). What we built for you leaves with you.

Obtaining a signed DPA

A countersigned Data Processing Agreement incorporating these terms is part of every client engagement and is executed during onboarding, before any system is connected. To request a copy in advance, email team@tryanimus.com.

Book a discovery call