Data Processing Agreement (DPA)
Between NextGen Intelligence and its Clients
Last Updated: 1 March 2026
1. Parties
This Data Processing Agreement (“DPA”) forms part of the service agreement between:
NextGen Intelligence
733 3rd Avenue
Floor 16 #1078
New York, NY 10017
United States
(“Processor”)
and the client using the NextGen Intelligence platform (“Controller”).
This DPA governs the processing of personal data in connection with the services provided by NextGen Intelligence.
2. Purpose of Processing
NextGen Intelligence provides technology services including intelligent websites, AI assistants, booking systems,
analytics dashboards, and automation tools.
In providing these services, NextGen Intelligence may process personal data on behalf of the client.
The client determines the purposes and means of processing such personal data.
3. Applicable Regulations
This agreement is designed to support compliance with applicable global data protection regulations including:
• General Data Protection Regulation (GDPR) – European Union
• Protection of Personal Information Act (POPIA) – South Africa
• Applicable U.S. privacy and data protection laws
Where applicable, NextGen Intelligence will process data in accordance with these frameworks.
4. Roles of the Parties
Client: Data Controller
The client determines the purpose and legal basis for processing personal data collected from their customers.
NextGen Intelligence: Data Processor
NextGen Intelligence processes personal data solely on behalf of the client and in accordance with the client’s instructions.
5. Types of Personal Data
Personal data processed may include:
• names
• email addresses
• phone numbers
• appointment or booking details
• customer inquiries
• communication records
• business contact details
6. Categories of Data Subjects
Data subjects may include:
• website visitors
• customers of the client
• business contacts
• individuals interacting with AI assistants or booking systems
7. Processing Activities
NextGen Intelligence may process personal data for the following purposes:
• operating intelligent website systems
• enabling AI assistants and voice agents
• processing bookings and inquiries
• generating analytics and reporting
• managing customer interactions
• supporting platform functionality
8. Data Security Measures
NextGen Intelligence implements appropriate technical and organizational security measures including:
• encrypted data transmission
• secure hosting environments
• access control and authentication systems
• platform monitoring and security protocols
These measures are designed to protect personal data from unauthorized access, loss, or disclosure.
9. Subprocessors
NextGen Intelligence may engage trusted third-party service providers to support platform functionality,
including hosting providers, AI infrastructure providers, analytics tools, and communication services.
All subprocessors are required to maintain appropriate security and data protection standards.
10. International Data Transfers
Because NextGen Intelligence operates globally, personal data may be transferred to servers or service providers
located outside the data subject’s country.
Where required by law, appropriate safeguards will be implemented to ensure lawful cross-border data transfers.
11. Data Subject Rights
Where GDPR, POPIA, or similar regulations apply, data subjects may have rights including:
• right of access
• right to correction
• right to deletion
• right to restrict processing
• right to object to processing
• right to data portability
Clients are responsible for responding to data subject requests.
NextGen Intelligence will assist where reasonably required.
12. Data Breach Notification
In the event of a confirmed data breach affecting personal data processed on behalf of a client,
NextGen Intelligence will notify the client without undue delay and provide relevant information to assist
with regulatory reporting obligations.
13. Data Retention
NextGen Intelligence retains personal data only as long as necessary to provide services,
comply with legal obligations, resolve disputes, and enforce agreements.
14. Data Deletion or Return
Upon termination of services, personal data processed on behalf of the client may be returned
or deleted upon request, subject to legal and operational requirements.
Data may be provided in a structured technical export format consistent with platform architecture.
15. Confidentiality
NextGen Intelligence ensures that employees, contractors, and subprocessors with access to personal data
are bound by confidentiality obligations.
16. Audit and Compliance
Where required by applicable regulations, NextGen Intelligence may provide reasonable information
to demonstrate compliance with this DPA and applicable data protection laws.
17. Governing Law
This Data Processing Agreement shall be governed by the laws of the State of New York, United States,
unless otherwise required by mandatory local data protection regulations.
18. Contact
For questions regarding this Data Processing Agreement:
NextGen Intelligence
733 3rd Avenue
Floor 16 #1078
New York, NY 10017
United States
Email: privacy@nxtgen-intel.com
Phone: +1 (844) 638 9094