PrionIQ legal
Data processing and subprocessors
This page is an operational summary for organizations evaluating PrionIQ as a processor. A signed data-processing agreement and order-specific terms govern where required.
Roles and instructions
The organization generally determines why workspace personal data is processed, and PrionIQ processes it to provide the contracted service. We follow documented instructions, maintain confidentiality, and notify the organization of relevant security incidents as required by the applicable agreement.
Subprocessors
PrionIQ may use hosting and database providers, email delivery, payment processing, authentication, AI processing and connected third-party integrations. The current provider list, processing locations and change-notice process should be confirmed in the applicable DPA or by contacting us before enabling a regulated workload.
Customer responsibilities
Customers must provide a lawful basis, appropriate notices and instructions; configure integrations carefully; limit sensitive data where possible; and respond to data-subject requests relating to their workspace.
Security and deletion
Access controls, tenant boundaries, encryption in transit, logging and recovery controls are applied according to the service architecture. Return and deletion of customer data follow the order, DPA and retention schedule.
Last updated: 6 August 2026. Contact us through support or contact for questions about these documents.