Data Processing Agreement (DPA)

Last Updated: June 7, 2026

1. Purpose

This Data Processing Agreement ("DPA") forms part of the Terms of Service between ForceVPS and the Customer.

This DPA governs the processing of Personal Data by ForceVPS on behalf of the Customer in connection with the provision of Services.

2. Definitions

Personal Data

Any information relating to an identified or identifiable natural person.

Processing

Any operation performed on Personal Data, including collection, storage, use, transmission, disclosure, or deletion.

Controller

The entity that determines the purposes and means of processing Personal Data.

Processor

The entity that processes Personal Data on behalf of the Controller.

GDPR

The General Data Protection Regulation (EU) 2016/679.

3. Roles of the Parties

For services such as VPS, Dedicated Servers, and Colocation:

  • the Customer acts as the Data Controller;
  • ForceVPS acts as the Data Processor only to the extent necessary to provide the Services.

The Customer is solely responsible for determining the purposes and legal basis for processing Personal Data.

4. Scope of Processing

ForceVPS may process Personal Data solely for:

  • providing Services;
  • maintaining infrastructure;
  • ensuring security;
  • technical support;
  • complying with legal obligations.

ForceVPS shall not process Personal Data for its own marketing purposes.

5. Categories of Data

Depending on the Services used, Personal Data may include:

  • names;
  • email addresses;
  • telephone numbers;
  • IP addresses;
  • billing information;
  • account information;
  • data stored on Customer systems.

ForceVPS does not actively monitor Customer content except where required for support, abuse investigations, security incidents, or legal obligations.

6. Customer Obligations

The Customer represents and warrants that:

  • Personal Data has been collected lawfully;
  • appropriate legal bases for processing exist;
  • data subjects have been informed where required by law;
  • processing complies with applicable privacy laws.

7. Security Measures

ForceVPS implements reasonable technical and organizational measures designed to protect Personal Data, including:

  • encrypted communications (TLS/HTTPS);
  • access controls;
  • authentication mechanisms;
  • infrastructure monitoring;
  • security logging;
  • backup procedures;
  • network security controls.

8. Confidentiality

ForceVPS shall ensure that personnel with access to Personal Data are subject to confidentiality obligations.

Access to Personal Data shall be limited to personnel who require such access to perform their duties.

9. Subprocessors

ForceVPS may engage third-party subprocessors, including:

  • data centers;
  • payment providers;
  • network providers;
  • infrastructure vendors;
  • software service providers.

ForceVPS shall take reasonable steps to ensure that subprocessors provide appropriate safeguards for Personal Data.

10. International Transfers

Personal Data may be processed in jurisdictions where ForceVPS, its infrastructure providers, or subprocessors operate.

ForceVPS shall take reasonable measures to ensure appropriate safeguards for international data transfers where required by applicable law.

11. Data Subject Requests

Where ForceVPS receives a request from a data subject relating to Personal Data processed on behalf of the Customer, ForceVPS may:

  • notify the Customer;
  • direct the request to the Customer.

The Customer remains responsible for responding to such requests.

12. Data Breach Notification

In the event of a confirmed Personal Data breach affecting Customer data, ForceVPS shall notify the Customer without undue delay where required by applicable law.

Notification may include:

  • the nature of the breach;
  • categories of affected data;
  • measures taken to mitigate the incident.

13. Deletion and Return of Data

Upon termination of Services, ForceVPS may delete Customer data in accordance with its retention policies and Terms of Service.

The Customer remains responsible for exporting and retaining any required data before termination of Services.

14. Liability

The liability of each party under this DPA shall be subject to the limitations of liability set forth in the Terms of Service.

15. Governing Law

This DPA shall be governed by the laws specified in the Terms of Service.

16. Amendments

ForceVPS reserves the right to modify this DPA at any time.

The current version shall be published on the website and shall become effective upon publication.

17. Contact Information

Questions regarding this DPA may be directed to:

Email: privacy@forcevps.com

General Support: support@forcevps.com