Compliance
GDPR Implementation
A5 Tech is EU-based and treats GDPR as the default operating model for inquiries, delivery and AI work.
G.01Data minimisationWe ask for the input, desired output and constraints needed to scope work. We avoid collecting unnecessary personal data.Default
G.02Processor termsWhere we process client personal data on instructions, the order or DPA defines subject matter, duration, purpose, categories, security and sub-processors.DPA ready
G.03SecurityAccess is limited to the work. Project data is separated by engagement, and deletion/handover is planned at project close.Least access
G.04International transfersIf a tool, cloud provider or model endpoint transfers data outside the EEA, that dependency is identified before acceptance and appropriate safeguards are agreed.Before order
G.05Rights requestsRequests are handled through email. We may need to verify identity and may refuse or limit requests where GDPR allows.info@a5tech.ee