How zForms complies with the General Data Protection Regulation
zForms is fully compliant with the EU General Data Protection Regulation (GDPR). We take data protection seriously and have implemented comprehensive measures to ensure compliance.
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018. It applies to all organizations processing personal data of EU residents, regardless of the organization's location.
This page outlines how zForms complies with GDPR requirements and what measures we have in place to protect your data and the data of your users.
GDPR requires "privacy by design and by default." zForms was built from the ground up with privacy as a core principle:
Under GDPR Article 6, we process personal data on the following legal bases:
Processing is necessary to provide our analytics service to you as outlined in our Terms of Service.
We process certain data based on our legitimate interest to:
For optional features like marketing communications, we obtain explicit consent before processing.
Under GDPR, individuals have the following rights regarding their personal data:
You have the right to request a copy of all personal data we hold about you.
How to exercise: Email privacy@zforms.xyz with subject "GDPR Data Access Request"
Response time: Within 30 days
You have the right to correct inaccurate or incomplete personal data.
How to exercise: Update your information in your dashboard or contact support
You have the right to request deletion of your personal data.
How to exercise: Delete your account in dashboard settings or email privacy@zforms.xyz
Note: Some data may be retained for legal compliance (up to 7 years for financial records)
You have the right to receive your data in a structured, machine-readable format.
How to exercise: Export your data from the dashboard or request via email
Format: JSON or CSV
You have the right to limit how we process your data in certain circumstances.
How to exercise: Email privacy@zforms.xyz
You have the right to object to processing based on legitimate interests.
How to exercise: Contact our Data Protection Officer at dpo@zforms.xyz
You have the right to withdraw consent for processing based on consent.
How to exercise: Manage preferences in your dashboard or email us
We have appointed a Data Protection Officer (DPO) to oversee our GDPR compliance:
For all GDPR-related inquiries, data subject requests, or privacy concerns:
Email: dpo@zforms.xyz
Response time: Within 72 hours for acknowledgment, 30 days for complete response
Your data may be transferred to and stored in countries outside the European Economic Area (EEA). We ensure adequate protection through:
We retain personal data only for as long as necessary for the purposes outlined in our Privacy Policy:
We implement appropriate technical and organizational measures to ensure data security:
For more details, see our Security page.
In the event of a personal data breach:
If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with a supervisory authority.
You can find your local data protection authority at: https://edpb.europa.eu/about-edpb/board/members_en
However, we encourage you to contact us first so we can address your concerns directly.
We maintain comprehensive GDPR compliance documentation:
Standard DPA for enterprise customers
List of third-party service providers
For GDPR-related inquiries: