Data Processing Agreement (DPA)
Last Updated: June 7, 2026
1. Purpose
This Data Processing Agreement ("DPA") forms part of the Terms of Service between ForceVPS and the Customer.
This DPA governs the processing of Personal Data by ForceVPS on behalf of the Customer in connection with the provision of Services.
2. Definitions
Personal Data
Any information relating to an identified or identifiable natural person.
Processing
Any operation performed on Personal Data, including collection, storage, use, transmission, disclosure, or deletion.
Controller
The entity that determines the purposes and means of processing Personal Data.
Processor
The entity that processes Personal Data on behalf of the Controller.
GDPR
The General Data Protection Regulation (EU) 2016/679.
3. Roles of the Parties
For services such as VPS, Dedicated Servers, and Colocation:
- the Customer acts as the Data Controller;
- ForceVPS acts as the Data Processor only to the extent necessary to provide the Services.
The Customer is solely responsible for determining the purposes and legal basis for processing Personal Data.
4. Scope of Processing
ForceVPS may process Personal Data solely for:
- providing Services;
- maintaining infrastructure;
- ensuring security;
- technical support;
- complying with legal obligations.
ForceVPS shall not process Personal Data for its own marketing purposes.
5. Categories of Data
Depending on the Services used, Personal Data may include:
- names;
- email addresses;
- telephone numbers;
- IP addresses;
- billing information;
- account information;
- data stored on Customer systems.
ForceVPS does not actively monitor Customer content except where required for support, abuse investigations, security incidents, or legal obligations.
6. Customer Obligations
The Customer represents and warrants that:
- Personal Data has been collected lawfully;
- appropriate legal bases for processing exist;
- data subjects have been informed where required by law;
- processing complies with applicable privacy laws.
7. Security Measures
ForceVPS implements reasonable technical and organizational measures designed to protect Personal Data, including:
- encrypted communications (TLS/HTTPS);
- access controls;
- authentication mechanisms;
- infrastructure monitoring;
- security logging;
- backup procedures;
- network security controls.
8. Confidentiality
ForceVPS shall ensure that personnel with access to Personal Data are subject to confidentiality obligations.
Access to Personal Data shall be limited to personnel who require such access to perform their duties.
9. Subprocessors
ForceVPS may engage third-party subprocessors, including:
- data centers;
- payment providers;
- network providers;
- infrastructure vendors;
- software service providers.
ForceVPS shall take reasonable steps to ensure that subprocessors provide appropriate safeguards for Personal Data.
10. International Transfers
Personal Data may be processed in jurisdictions where ForceVPS, its infrastructure providers, or subprocessors operate.
ForceVPS shall take reasonable measures to ensure appropriate safeguards for international data transfers where required by applicable law.
11. Data Subject Requests
Where ForceVPS receives a request from a data subject relating to Personal Data processed on behalf of the Customer, ForceVPS may:
- notify the Customer;
- direct the request to the Customer.
The Customer remains responsible for responding to such requests.
12. Data Breach Notification
In the event of a confirmed Personal Data breach affecting Customer data, ForceVPS shall notify the Customer without undue delay where required by applicable law.
Notification may include:
- the nature of the breach;
- categories of affected data;
- measures taken to mitigate the incident.
13. Deletion and Return of Data
Upon termination of Services, ForceVPS may delete Customer data in accordance with its retention policies and Terms of Service.
The Customer remains responsible for exporting and retaining any required data before termination of Services.
14. Liability
The liability of each party under this DPA shall be subject to the limitations of liability set forth in the Terms of Service.
15. Governing Law
This DPA shall be governed by the laws specified in the Terms of Service.
16. Amendments
ForceVPS reserves the right to modify this DPA at any time.
The current version shall be published on the website and shall become effective upon publication.
17. Contact Information
Questions regarding this DPA may be directed to:
Email: privacy@forcevps.com
General Support: support@forcevps.com