| Before | After | ||
|---|---|---|---|
| 11 | In the event of any conflicts between this DPA and the Agreement, the DPA shall control. | 11 | In the event of any conflicts between this DPA and the Agreement, the DPA shall control. 1. |
| 16 | The terms “ Business ,” “ Controller ,” “ Data Subject ,” “ Processor ,” “ Process ,” “ Sell ,” “ Service Provider ,” and “ Share ” shall have the meaning given to them under applicable Privacy Laws. | 16 | The terms “ Business ,” “ Controller ,” “ Data Subject ,” “ Processor ,” “ Process ,” “ Sell ,” “ Service Provider ,” and “ Share ” shall have the meaning given to them under applicable Privacy Laws. 2. |
| 18 | The Parties acknowledge that in relation to any Personal Data received from Customer in providing the Services, for purposes of Privacy Laws, Customer is the Controller or Processor or Business and Perplexity is the Service Provider or Processor. | 18 | The Parties acknowledge that in relation to any Personal Data received from Customer in providing the Services, for purposes of Privacy Laws, Customer is the Controller or Processor or Business and Perplexity is the Service Provider or Processor. 3. |
| 19 | Customer Obligations: Customer shall comply with all applicable Privacy Laws in providing Personal Data to Perplexity in connection with its use of the Services, including the use of any integrations with the Services. | 19 | Customer Obligations. |
| 20 | Customer shall comply with all applicable Privacy Laws in providing Personal Data to Perplexity in connection with its use of the Services, including the use of any integrations with the Services. | ||
| 22 | Customer shall notify Perplexity immediately if Customer makes a determination that the processing of Personal Data under the Agreement does not or will not comply with Privacy Laws, in which case, Perplexity shall not be required to continue processing such Personal Data. | 23 | Customer shall notify Perplexity immediately if Customer makes a determination that the processing of Personal Data under the Agreement does not or will not comply with Privacy Laws, in which case, Perplexity shall not be required to continue processing such Personal Data. 4. |
| 25 | In processing Personal Data under the Agreement, Perplexity shall: a. only process Personal Data on documented instructions from Customer, for the limited and specific purpose described in Annex 1, unless otherwise permitted to process such Personal Data by applicable Privacy Laws, and at all times in compliance with Privacy Laws and the terms of this DPA, providing the same level of privacy protection as is required by Privacy Laws; b. notify Customer promptly if it: (i) makes a determination that it can no longer comply with Customer’s instructions for the processing of Personal Data, its obligations under Privacy Laws or the terms of this DPA or (ii) believes that the instruction of Customer infringes applicable Privacy Laws; c. to the extent required by Privacy Laws, grant Customer the right to take reasonable and appropriate steps to help ensure that Perplexity uses the Personal Data in a manner consistent with Customer’s obligations under this DPA and Privacy Laws, and stop and remediate any unauthorized use of the Personal Data; and d. require that each employee or other person processing Personal Data is subject to an appropriate duty of confidentiality with respect to such Personal Data. | 26 | In processing Personal Data under the Agreement, Perplexity shall: a. only process Personal Data on documented instructions from Customer, for the limited and specific purpose described in Annex 1, unless otherwise permitted to process such Personal Data by applicable Privacy Laws, and at all times in compliance with Privacy Laws and the terms of this DPA, providing the same level of privacy protection as is required by Privacy Laws; b. notify Customer promptly if it: (i) makes a determination that it can no longer comply with Customer’s instructions for the processing of Personal Data, its obligations under Privacy Laws or the terms of this DPA or (ii) believes that the instruction of Customer infringes applicable Privacy Laws; c. to the extent required by Privacy Laws, grant Customer the right to take reasonable and appropriate steps to help ensure that Perplexity uses the Personal Data in a manner consistent with Customer’s obligations under this DPA and Privacy Laws, and stop and remediate any unauthorized use of the Personal Data; and d. require that each employee or other person processing Personal Data is subject to an appropriate duty of confidentiality with respect to such Personal Data. 5. |
| 29 | If Perplexity receives (i) any legally binding request for disclosure of Personal Data by a law enforcement authority; or (ii) any notice, inquiry or investigations with respect to the Personal Data from any supervisory authority/regulator (or similar); or (iii) any complaint or request from a data subject, in each case related to Perplexity’s processing of Personal Data for or on behalf of the Customer under this DPA, then (to the extent permitted by law) Perplexity shall notify the Customer. | 30 | If Perplexity receives (i) any legally binding request for disclosure of Personal Data by a law enforcement authority; or (ii) any notice, inquiry or investigations with respect to the Personal Data from any supervisory authority/regulator (or similar); or (iii) any complaint or request from a data subject, in each case related to Perplexity’s processing of Personal Data for or on behalf of the Customer under this DPA, then (to the extent permitted by law) Perplexity shall notify the Customer. 6. |
| 39 | In the event Perplexity engages a subprocessor to carry out specific processing activities on behalf of Customer pursuant to applicable Privacy Laws, Perplexity shall remain liable to Customer for that subprocessor’s performance of the data-protection obligations flowed down to it, to the same extent and subject to the same limitations as apply to Perplexity’s own performance under this DPA. | 40 | In the event Perplexity engages a subprocessor to carry out specific processing activities on behalf of Customer pursuant to applicable Privacy Laws, Perplexity shall remain liable to Customer for that subprocessor’s performance of the data-protection obligations flowed down to it, to the same extent and subject to the same limitations as apply to Perplexity’s own performance under this DPA. 7. |
| 41 | Perplexity shall, in relation to the processing of Personal Data and to enable Customer to comply with its obligations which arise as a result thereof, provide assistance to Customer by: a. notifying Customer of requests from individuals pursuant to their rights under Privacy Laws, including by providing, deleting or correcting the relevant Personal Data, or by enabling Customer to do the same, insofar as this is possible ; b. to the extent required by Privacy Laws, conducting data protection impact assessments and, if required, prior consultation with relevant competent authorities; and c. notifying Customer of any accidental, unauthorized or illegal access, destruction, use, loss, modification, or disclosure of Personal Data (“ Personal Data Breach ”) without undue delay after Perplexity becomes aware of such Personal Data Breach. | 42 | Perplexity shall, in relation to the processing of Personal Data and to enable Customer to comply with its obligations which arise as a result thereof, provide assistance to Customer by: a. notifying Customer of requests from individuals pursuant to their rights under Privacy Laws, including by providing, deleting or correcting the relevant Personal Data, or by enabling Customer to do the same, insofar as this is possible ; b. to the extent required by Privacy Laws, conducting data protection impact assessments and, if required, prior consultation with relevant competent authorities; and c. notifying Customer of any accidental, unauthorized or illegal access, destruction, use, loss, modification, or disclosure of Personal Data (“ Personal Data Breach ”) without undue delay after Perplexity becomes aware of such Personal Data Breach. 8. |
| 44 | Perplexity shall provide data protection and security training to those employees and other persons authorized to access Personal Data. | 45 | Perplexity shall provide data protection and security training to those employees and other persons authorized to access Personal Data. 9. |
| 49 | Notwithstanding the foregoing, in no event shall Perplexity be required to give Customer access to information, facilities or systems to the extent doing so would cause Perplexity to be in violation of confidentiality obligations owed to other customers or its legal obligations. | 50 | Notwithstanding the foregoing, in no event shall Perplexity be required to give Customer access to information, facilities or systems to the extent doing so would cause Perplexity to be in violation of confidentiality obligations owed to other customers or its legal obligations. 10. |
| 50 | Deletion of Personal Data . | 51 | Deletion of Personal Data. |
| 51 | Perplexity shall delete (or, at Customer’s option, return) all Personal Data within thirty days of the end of the provision of the Services to Customer, unless retention of the Personal Data is required by law, in which case, Perplexity shall notify Customer without undue delay of such legal requirement and shall upon the expiration of such retention obligation delete (or, at Customer’s option, return) the Personal Data. | 52 | Perplexity shall delete (or, at Customer’s option, return) all Personal Data within thirty days of the end of the provision of the Services to Customer, unless retention of the Personal Data is required by law, in which case, Perplexity shall notify Customer without undue delay of such legal requirement and shall upon the expiration of such retention obligation delete (or, at Customer’s option, return) the Personal Data. 11. |
| 55 | At Customer’s request, Perplexity shall enter separately into the Controller to Processor Clauses with Customer and shall take any other alternative or additional steps reasonably requested by Customer in order to ensure that Perplexity’s processing of Personal Data takes place in accordance with the requirements of Privacy Laws.to a party hereunder. | 56 | At Customer’s request, Perplexity shall enter separately into the Controller to Processor Clauses with Customer and shall take any other alternative or additional steps reasonably requested by Customer in order to ensure that Perplexity’s processing of Personal Data takes place in accordance with the requirements of Privacy Laws.to a party hereunder. 12. |
Follow unlimited companies, monitor the clauses that matter across every platform, and get the full institutional analysis on what each change obligates you to do.