Data processing agreement status — draft

Controlled-preview status: no public repository DPA is effective or available for execution.

Controlled-preview documentation

Shielda is not generally available. Source code, fixtures, tests, version labels, plans, and historical checklists do not establish live availability, compatibility, compliance, or contract terms.

DRAFT — NOT EFFECTIVE — LEGAL APPROVAL PENDING. No party has executed this repository document. It is not a DPA, SCC, transfer mechanism, security warranty, audit report, deletion certificate, or subprocessor authorization.

Draft source reviewed: July 12, 2026

Effective date: Not established

Execution status: Unavailable

Purpose of the review packet

The current internal packet records what counsel, privacy, security, Shielda, and the prospective customer need to resolve before producing a transaction-specific data processing agreement. A controlled preview that requires a DPA must use a separately reviewed and executed agreement.

Required schedules and decisions

An executable DPA needs deployment-specific details for:

  • legal parties, roles, addresses, contacts, affiliates, and signing authority;
  • subject matter, duration, purpose, data subjects, data categories, and instructions;
  • deployment mode, regions, storage, network paths, connectors, and model providers;
  • actually engaged subprocessors, contracts, locations, transfers, and change terms;
  • verified technical and organizational measures for the evaluated release;
  • retention, export, return, deletion, backups, legal holds, and deletion evidence;
  • rights-request assistance and incident notification responsibilities;
  • transfer mechanisms, audit rights, termination, precedence, and liability.

Current nonclaims

This page does not represent SOC 2, ISO, PCI, GDPR, HIPAA, regional-hosting, zero-retention, or deletion certification. A provider is not approved merely because its SDK, endpoint, or environment variable appears in source. Repository code and local tests do not prove live tenant isolation, deletion, export, incident response, or provider configuration.

Current next step

Contact Shielda with the intended deployment, data categories, jurisdictions, and required agreement. Do not provide product data or secrets through the initial website form.