Legal
GDPR Compliance
Document version: gdpr_v1.0
Last updated: 06/07/2026
1. Compliance approach
ProNexus is designed to support procedural evidence, access control, auditability and operational traceability for businesses operating in the European context.
2. Controller and processor model
Businesses using ProNexus generally determine the purposes and means of processing their operational data and act as controllers. ProNexus processes such data as a processor according to the business configuration, applicable agreements and lawful instructions.
3. Auditability
The platform includes audit logs, role-based permissions, business isolation, event tracking and legal acceptance records to support accountability and compliance evidence.
4. Security measures
ProNexus applies access control, authentication, authorization, audit logging, business-level segregation and operational monitoring features to help protect business data.
5. Data subject requests
When personal data is controlled by a business customer, data subject requests should normally be handled by that business. ProNexus may support the business in locating, exporting, correcting or deleting data where technically feasible and contractually applicable.
6. Legal acceptance evidence
ProNexus records legal acceptance events with document version, user, business, server-side timestamp, IP address and user agent to provide procedural evidence of acceptance.