Legal
Data Processing Agreement
Last updated 31 August 2026 · wproxy Networks Ltd.
This DPA applies when wproxy processes personal data on your behalf in the course of providing the proxy network. It forms part of the Terms of Service. Enterprise customers can countersign an identical instrument from the dashboard.
1. Subject matter
Processing of connection metadata (timestamp, source identifier, destination host, bytes transferred, status code) for the purpose of routing, billing, security and abuse handling, for the duration of the service plus 30 days.
2. Instructions
wproxy processes this data only on documented instructions: these terms, the configuration you set in the dashboard and API, and applicable law. We will inform you if an instruction, in our view, infringes UK or EU data-protection law.
3. Security
Measures include TLS in transit, encryption at rest for logs, role-based access for staff, audit logging of production access, and a 30-day retention cap. Details are on the Security page. We notify you of a personal-data breach affecting your data without undue delay and at latest within 72 hours of becoming aware of it.
4. Sub-processors
Infrastructure is hosted with EU/UK providers listed in the dashboard under Settings → Compliance. We impose equivalent obligations by contract and remain liable for their performance. Material additions are notified at least 14 days in advance, with a right to object on reasonable grounds.
5. Return and deletion
On termination we delete traffic metadata on the standard 30-day cycle. Account records follow the retention periods in the Privacy Policy. A deletion certificate is available on written request for enterprise accounts.
Questions about this document: legal@wproxy.io