DPAflow

GDPR vendor compliance

GDPR vendor compliance

Track subprocessor changes, Schrems II transfer signals, and Article 28 documentation across your SaaS vendor stack.

Core compliance jobs

DPA review

Know when vendor processor lists require contract or policy updates.

Transfer risk

Flag EU-US and third-country location changes before they become audit gaps.

Evidence

Store change history and review notes for future regulator or customer requests.

Monitor subprocessor changes before they become audit work.

Create a vendor watchlist, receive risk-ranked alerts, and keep Article 28 evidence ready.

View evidence workflow