Legal

GDPR Compliance

Document version: gdpr_v1.0

Last updated: 06/07/2026

1. Compliance approach

ProNexus is designed to support procedural evidence, access control, auditability and operational traceability for businesses operating in the European context.

2. Controller and processor model

Businesses using ProNexus generally determine the purposes and means of processing their operational data and act as controllers. ProNexus processes such data as a processor according to the business configuration, applicable agreements and lawful instructions.

3. Auditability

The platform includes audit logs, role-based permissions, business isolation, event tracking and legal acceptance records to support accountability and compliance evidence.

4. Security measures

ProNexus applies access control, authentication, authorization, audit logging, business-level segregation and operational monitoring features to help protect business data.

5. Data subject requests

When personal data is controlled by a business customer, data subject requests should normally be handled by that business. ProNexus may support the business in locating, exporting, correcting or deleting data where technically feasible and contractually applicable.

6. Legal acceptance evidence

ProNexus records legal acceptance events with document version, user, business, server-side timestamp, IP address and user agent to provide procedural evidence of acceptance.

This page describes platform-level compliance support. It does not replace legal review of the customer’s own processing activities, notices, contracts or regulatory obligations.