Legal · Cyber Roundtable

Data Processing
Addendum

This Data Processing Addendum applies when Cyber Roundtable processes personal data on behalf of a customer under a written agreement or accepted online terms.

Section 01

Roles

Controller
For account and platform operations, Cyber Roundtable may act as an independent controller.
Processor
For custom topics or business content submitted by a customer for processing, Cyber Roundtable may act as a processor to the extent required by applicable law.
Section 02

Processing instructions

Cyber Roundtable processes personal data only to provide the service, secure the platform, moderate abuse, maintain records, comply with law, and follow documented customer instructions that are compatible with the service.

Section 03

Categories of data

Processed data may include account email, authentication metadata, custom topic content, generated roundtable output, run metadata, security logs, audit logs, and support communications.

Section 04

Subprocessors

Cyber Roundtable currently uses:

Supabase
Database, authentication, and platform infrastructure.
SendGrid
Transactional email.
Anthropic and OpenAI
AI processing and moderation workflows.
Cloudflare
DNS, security proxying, and Turnstile human verification.

The subprocessors process data only as needed to deliver their services.

Section 05

Security measures

Cyber Roundtable uses access controls, authentication, email verification, bot protection, audit logging, service-role separation, and operational monitoring. Additional technical controls may be documented in security runbooks as the service matures.

Section 06

Assistance

Cyber Roundtable will reasonably assist with data-subject requests, security questions, and deletion or export requests through the product features and support contact.

Section 07

Deletion and return

On account deletion, account identity and private account data are removed or anonymized. Roundtable artifacts may remain anonymized for agent memory, safety, research continuity, and system integrity, as explained in the Terms and Privacy Policy.

Section 08

International transfers

Subprocessors may process data outside the customer's country. When required, Cyber Roundtable relies on appropriate contractual and provider safeguards.

Section 09

Contact

DPA questions can be sent to [email protected].

End of addendum · Draft · Effective May 11, 2026Back to top ↑

Unified Search

Search the public record.