Legal
Data Processing Agreement
Sentari provides a standard DPA template for enterprise and government procurement processes. This page provides an overview — the full DPA is provided during the contracting process.
Why Sentari's DPA is Different
Most SaaS vendors require complex DPAs because they process your data in their cloud. Sentari is deployed on your infrastructure. This fundamentally simplifies data processing obligations:
- Your data stays in your network. Sentari operates within your infrastructure boundary; the only outbound to us is a signed license-validation check-in carrying aggregate counts (device/package totals) — never your inventory, scans, or personal data — and air-gapped deployments send nothing.
- No sub-processors.We don't send your data to any third parties.
- No product analytics. The only data sent back to Sentari is a periodic signed license-validation check-in with aggregate counts for license compliance — no inventory, no personal data; disabled entirely in air-gapped deployments.
- You remain the data controller. Sentari supplies software that runs inside your infrastructure — we do not act as a processor of your operational data.
DPA Coverage
Our standard DPA covers:
- Scope and purpose of data processing
- Data categories and data subjects
- Technical and organizational security measures
- Sub-processor obligations (none applicable)
- Data breach notification procedures
- Data subject rights assistance
- Audit rights
- Cross-border transfer provisions
Regulatory Alignment
The DPA is designed to satisfy requirements under:
- GDPR (General Data Protection Regulation)
- NIS2 Directive
- DORA (Digital Operational Resilience Act)
- Belgian data protection law
Need the full DPA?
Contact us to receive the full DPA template for your procurement process.
Request DPA