AI CodeOps

Data Processing Agreement (Draft)

Last updated: Jul 3, 2026

This page is a placeholder for counsel review. It is not a contractual DPA and must not be relied on for paid GA or enterprise procurement until legal sign-off.

Scope

When TechInnoHub provides the hosted AI CodeOps console as a processor, we process personal data on your behalf to deliver the service — account credentials, workspace metadata, audit logs, and configuration you store in the product.

Subprocessors

Current subprocessors are listed on the Trust center. We will provide 30-day notice before adding material subprocessors, subject to final counsel-approved language.

Data subject rights

  • Portable export: GET /api/account?export=1 or async POST /api/account?action=schedule-export
  • Erasure: DELETE /api/account with confirmation body
  • Retention: audit logs subject to org-configured retention policy

Security measures (summary)

  • Encryption at rest for SSO client secrets and sensitive config
  • MFA enforcement on hosted tier (`MFA_ENFORCE=1` default)
  • Domain verification required before enterprise SSO login
  • SAML assertion signature validation against IdP certificate

Contact

For enterprise DPA requests during private beta, contact your account representative or [email protected]. Final executed agreements require counsel review.

See also: Privacy Policy, Terms of Use, Trust center.