Pulse

Data Processing Agreement

Last updated: June 15, 2026 • Valid DPA parameters for corporate customers.

1. Scope & Processing Definitions

This Data Processing Agreement (DPA) applies to the processing of personal data (visitor chat records, operator logins, telemetry logs) by Pulse on behalf of our enterprise clients. Pulse processes this data as a Processor under GDPR parameters.

2. Processing Instructions

We process customer data solely to deliver the live chat widget configurations, route operator signals, compile RAG grounding sandboxes, and perform database logs reporting. We operate strictly under standard instruction mandates from workspace admins.

3. Security Measures

We implement SOC2 security parameters, isolate Neon PostgreSQL database tables, restrict employee access permissions, and encrypt client communication packages in transit and backups at rest.

4. Sub-processors

Our active sub-processors list includes AWS (infrastructure hosting), Neon (database branching services), Supabase (user authentications), and Google Cloud Gemini (RAG employee LLM inference loops).