Data processing agreement status — draft
Controlled-preview status: no public repository DPA is effective or available for execution.
Controlled-preview documentation
Shielda is not generally available. Source code, fixtures, tests, version labels, plans, and historical checklists do not establish live availability, compatibility, compliance, or contract terms.
DRAFT — NOT EFFECTIVE — LEGAL APPROVAL PENDING. No party has executed this repository document. It is not a DPA, SCC, transfer mechanism, security warranty, audit report, deletion certificate, or subprocessor authorization.
Draft source reviewed: July 12, 2026
Effective date: Not established
Execution status: Unavailable
Purpose of the review packet
The current internal packet records what counsel, privacy, security, Shielda, and the prospective customer need to resolve before producing a transaction-specific data processing agreement. A controlled preview that requires a DPA must use a separately reviewed and executed agreement.
Required schedules and decisions
An executable DPA needs deployment-specific details for:
- legal parties, roles, addresses, contacts, affiliates, and signing authority;
- subject matter, duration, purpose, data subjects, data categories, and instructions;
- deployment mode, regions, storage, network paths, connectors, and model providers;
- actually engaged subprocessors, contracts, locations, transfers, and change terms;
- verified technical and organizational measures for the evaluated release;
- retention, export, return, deletion, backups, legal holds, and deletion evidence;
- rights-request assistance and incident notification responsibilities;
- transfer mechanisms, audit rights, termination, precedence, and liability.
Current nonclaims
This page does not represent SOC 2, ISO, PCI, GDPR, HIPAA, regional-hosting, zero-retention, or deletion certification. A provider is not approved merely because its SDK, endpoint, or environment variable appears in source. Repository code and local tests do not prove live tenant isolation, deletion, export, incident response, or provider configuration.
Current next step
Contact Shielda with the intended deployment, data categories, jurisdictions, and required agreement. Do not provide product data or secrets through the initial website form.