Data Processing Agreement
1. Roles
The Client (or the Consultant acting on the Client’s behalf) is the data controller. Sendrow is a data processor, processing operational and emissions-related data solely to produce the emissions inventory and reporting deliverables the controller instructs.
2. Scope of data
Utility usage and billing data, vehicle-fuel and expense data, vendor spend exports, employee commute survey responses (no names required), and company operational details provided during onboarding.
3. Processing commitments
Data is processed only to deliver the contracted service; never sold; never used to train models; never shared except with the subprocessors listed in the security overview. Cross-client learning is limited to vendor-to-category mappings that contain no client quantities, prices, or totals.
4. Security
Encryption at rest and in transit, role-verified access on every request, and a complete audit log of data changes, as described in the security overview.
5. Deletion and return
On request, all controller data is exported to the controller and deleted from production systems within 30 days, with written confirmation.
6. Tool, not advice
Sendrow provides calculation and document-production tooling. Professional judgment on methodology, materiality, and regulatory interpretation remains with the Consultant or the Client’s qualified advisor.