Data Processing Agreement

Last updated: February 2026

This Data Processing Agreement ("DPA") forms part of the Terms of Service between Humanizer PRO ("Processor", "we", "us") and the user ("Controller", "you") and governs the processing of personal data in connection with the Humanizer PRO text humanization service available at texthumanizer.pro.

1. Definitions

2. Scope and Purpose of Processing

The Processor processes personal data solely for the purpose of providing the Humanizer PRO text humanization service, which includes:

2.1 Categories of Data Subjects

Users of the Humanizer PRO service, including individuals who create accounts and submit text for processing.

2.2 Types of Personal Data Processed

Data TypePurposeRetention
Email addressAccount creation, authentication, communicationDuration of account
Name (if provided)Account personalizationDuration of account
Text content submittedHumanization processingTransient; not stored after processing unless saved to history
Usage statisticsService delivery, billing enforcementDuration of account
Payment informationSubscription and billing (via Stripe)Managed by Stripe; not stored by Processor
Authentication tokensSession management, OAuth accessSession duration or token expiry

3. Obligations of the Processor

The Processor shall:

4. Sub-processors

The Controller provides general authorization for the Processor to engage the following sub-processors. The Processor will inform the Controller of any intended changes to sub-processors, giving the Controller the opportunity to object.

Sub-processorPurposeLocation
Supabase (Supabase Inc.)Database hosting, user authenticationUnited States (AWS)
RephrasyText humanization API processingUnited States
Stripe (Stripe Inc.)Payment processingUnited States
Resend (Resend Inc.)Transactional email deliveryUnited States
Replit (Replit Inc.)Application hostingUnited States

Each sub-processor is bound by data protection obligations no less protective than those set out in this DPA.

5. International Data Transfers

Where personal data is transferred outside the European Economic Area (EEA), the Processor ensures that appropriate safeguards are in place, including:

6. Security Measures

The Processor implements the following technical and organizational security measures:

7. Data Subject Rights

The Processor will assist the Controller in fulfilling data subject requests, including:

Requests will be responded to within 30 days of receipt.

8. Data Breach Notification

In the event of a personal data breach, the Processor will:

9. Audit Rights

The Controller has the right to conduct audits, including inspections, to verify the Processor's compliance with this DPA. The Processor will cooperate with such audits and provide access to relevant information, systems, and premises upon reasonable notice.

10. Duration and Termination

This DPA remains in effect for the duration of the Controller's use of the Humanizer PRO service. Upon termination:

11. Liability

Each party's liability under this DPA is subject to the limitations set out in the Terms of Service. The Processor will be liable for damage caused by processing that does not comply with this DPA or applicable data protection law.

12. Governing Law

This DPA is governed by the laws applicable to the Terms of Service. For data subjects in the EEA, the provisions of GDPR shall apply in addition to any local laws.

13. Contact

For questions about this Data Processing Agreement or to exercise data subject rights, please contact:

Email: support@texthumanizer.pro

Company: Humanizer PRO

Website: texthumanizer.pro