This agreement is between you, the agency ("the controller"), and Yarqat LTD trading as SiteBench ("the processor"). It forms part of the terms of service and applies whenever we process personal data on your behalf. It is written to meet Article 28 of the UK GDPR.
You are the controller. Where the personal data belongs to your own client, that client is usually the controller and you are their processor; in that case you appoint us as a sub-processor and you confirm you have the authority to do so.
We act only on your documented instructions. These terms, the portal settings you choose, and the tickets you raise are your instructions. If we think an instruction breaks data protection law we will tell you and may decline it.
| Category | What it is | Why we have it |
|---|---|---|
| Your staff | Name, work email, hashed password, two-factor secret, role, IP address and timestamps in the audit log | Running the portal and keeping it secure |
| Site credentials | WordPress administrator accounts, SFTP or SSH details, hosting logins | Doing the maintenance you have asked for |
| Site backups | A full copy of each site's database and files, which will contain whatever personal data the site holds: customer accounts, orders, form submissions, comments | Restoring a site after a failure |
| Operational records | Update runs, uptime history, scan results, tickets and time logged | Delivering and reporting on the service |
| Health check leads | Agency name, email address, site addresses | Sending the report you asked for |
Site backups are the significant one. We do not read them, index them or use them for anything but restoring a site, and they are encrypted at rest.
Data subjects are your staff, your clients' staff, and the visitors and customers of the sites we maintain.
The measures we take, stated plainly so you can check them:
You give us general authorisation to use the sub-processors below. We will give you 30 days' written notice before adding or replacing one, and you may object; if we cannot resolve your objection you may cancel the affected sites without penalty.
| Sub-processor | What they do | Where |
|---|---|---|
| The hosting provider of this platform | Runs the servers holding the portal and backups | To be confirmed |
| Object storage provider | Holds off-site backups | To be confirmed |
| Transactional email provider | Delivers reports and notifications | To be confirmed |
| Stripe Payments Europe Ltd | Takes payment. Stripe is a controller for payment data and we never see full card numbers | Ireland, with transfers to the United States under Stripe's own safeguards |
We aim to keep all personal data in the United Kingdom or the European Economic Area. Where a sub-processor transfers data elsewhere, that transfer relies on UK adequacy regulations or on the International Data Transfer Addendum to the European Commission's standard contractual clauses, together with a transfer risk assessment.
Everyone who can reach your data is bound by a written confidentiality obligation that survives the end of their engagement with us.
On cancellation, and as set out in the terms of service, we take a final backup and make it available to you for 30 days, give you a written list of the credentials we hold, and remove monitoring. Thirty days later we delete all personal data we hold on your behalf, including backups, unless you have asked in writing for longer or the law requires us to keep it. We will confirm the deletion in writing if you ask.
The liability limits in the terms of service apply to this agreement. Where this agreement and the terms of service conflict on the processing of personal data, this agreement wins.
Data protection enquiries: engineering@wpcare.yarqat.com, Yarqat LTD, registered in England and Wales.