LEGAL

GDPR Compliance

How Formsyx handles data protection under the General Data Protection Regulation (GDPR) for EU users.

Last updated: December 29, 2025

The contents of this page do not constitute legal advice. For questions about how the GDPR applies to your specific situation, please consult a qualified legal professional.

What is GDPR?

The General Data Protection Regulation (GDPR) is a privacy and data protection law in the European Union (EU). It grants individuals (EU residents) certain rights regarding their personal data, including the right to access, correct, and delete their data.

Does the GDPR apply to you?

If you are based in the EU or if you collect any personal data from individuals located in the EU, the GDPR likely applies to you. Please check with your legal advisor to confirm how GDPR should be implemented in your business operations.

Is Formsyx GDPR-compliant?

Formsyx takes GDPR compliance seriously by implementing industry-standard practices around data protection and privacy. We continuously review our processes and procedures to ensure that we meet or exceed the requirements of the GDPR.

Privacy Policy

Our Privacy Policy explains the data we collect, the purposes, retention periods, and your rights as a data subject.

Encryption

All Formsyx form data is encrypted both in transit (HTTPS/TLS) and at rest on our servers.

Data Control

You maintain full ownership of the form data you collect and manage through Formsyx.

Data Processing Agreement

We have a standard DPA available. Contact us at support@formsyx.com if you require a signed agreement.

Data Processing Agreement (DPA)

By creating a Formsyx account and agreeing to our Terms of Service, you enter into a Data Processing Agreement with Formsyx. If you need a separate signed copy or have additional questions, please reach out to us at support@formsyx.com.

What happens with your form data?

Formsyx is a platform for creating and distributing forms. When you use Formsyx:

  • You (the form creator) act as the Data Controller of the responses you collect.
  • Formsyx is the Data Processor, storing and processing data on your behalf.

As long as your Formsyx account remains active, you control how long data is stored. You can export or delete your form responses at any time. Once deleted, any form data is removed from our systems and backups in accordance with our retention policy.

How do we use your personal data?

Formsyx acts as a Data Controller regarding the personal information you provide to register an account and use our service. We do not sell your personal information to third parties or use it for unsolicited marketing.

We share your data only with service providers necessary for the functioning of our platform (e.g., hosting providers, analytics services, or email delivery). Any third-party sub-processors we use are contractually bound to comply with GDPR.

Sub-processors

We may use the following categories of sub-processors to help deliver the Formsyx service. Each sub-processor has committed to complying with GDPR requirements:

Hosting & Infrastructure

Secure data centers that manage servers and storage.

Email Services

Tools for sending account notifications and form submission alerts.

Analytics

Services that help us improve our product by understanding usage patterns.

Customer Support

Tools that allow us to respond quickly to your questions or issues.

To get the most up-to-date list of our sub-processors, please see our Privacy Policy or contact us at support@formsyx.com.

Questions about GDPR?

We are committed to ensuring data privacy and security for all users. Please reach out to us at support@formsyx.com if you have any questions or need further assistance regarding GDPR compliance.