Legal & Policies

Transparent contracts and privacy practices

Master service agreements, data processing frameworks, and privacy commitments anchored in clarity and regulatory compliance across multi-jurisdictional engagements.

Key legal documents

Standard agreements covering service delivery, data handling, and acceptable use. Clients may request jurisdiction-specific addenda for GDPR, HIPAA, or state-level data residency mandates.

Master Service Agreement (MSA)

Governs service scope, intellectual property ownership, indemnification, liability limits, and dispute resolution. Includes provisions for regulatory change and force majeure events.

Available upon engagement kickoff. Custom MSAs available for Fortune 500 and government programmes.

Data Processing Agreement (DPA)

GDPR-compliant framework covering data controller/processor roles, sub-processing transparency, breach notification timelines, and cross-border data transfer mechanisms.

Standard DPA available via legal@gopsco.com. HIPAA Business Associate Agreements (BAA) also available.

Acceptable Use Policy (AUP)

Defines prohibited activities including unauthorized access, data exfiltration, and misuse of Gopsco platforms. Covers client responsibilities for end-user conduct and security hygiene.

Brand Guidelines

Covers Gopsco mark usage, co-marketing permissions, and reference approval processes. Includes logo assets, color palettes, and trademark restrictions.

Download brand kit via

marketing@gopsco.com

Privacy practices

Our privacy framework governs personal data collection, retention, and subject rights across service delivery and evidence portal access.

Data subject rights: Clients and personnel may exercise access, rectification, erasure, portability, and objection rights via

privacy@gopsco.com

Gopsco responds within 7 calendar days and fulfills requests within 30 days.

Retention: Operational data retained per regulatory schedules (typically 7 years for financial records, 3 years for service telemetry). Personal data deleted within 90 days of contract termination unless legal hold applies.

Sub-processors: Gopsco maintains a public sub-processor register covering infrastructure providers, payment processors, and observability vendors. Clients notified 30 days before adding new sub-processors.

Jurisdiction & dispute resolution

Governing law: Standard MSAs governed by California law. Jurisdiction-specific addenda available for European, Canadian, and Australian clients requiring local law application.

Dispute resolution: Disputes escalated through negotiation → mediation → binding arbitration (American Arbitration Association rules). Litigation only for injunctive relief or IP enforcement.

Regulatory cooperation: Gopsco cooperates with lawful regulatory inquiries including subpoenas, audit requests, and investigations. Clients notified unless prohibited by law.

Legal inquiries

For contract questions, privacy rights, or regulatory inquiries, contact our legal team at

legal@gopsco.com