Certifada
ProductHow it worksPricingBlogHelpFAQ
Sign inGet startedarrow_forward
Productarrow_outwardHow it worksarrow_outwardPricingarrow_outwardBlogarrow_outwardHelparrow_outwardFAQarrow_outward
Sign inGet started arrow_forward
verified_user Security & Trust v2.2

Regulatory Compliance & Governance

How applicable data protection requirements relate to use of Certifada.

event Last updated: 2026-09-13gavel Sharjah Media City, Sharjah, United Arab Emirates
Legal AgreementsshieldPrivacy PolicygavelTerms of ServicecookieCookie PolicydescriptionData Processing AgreementreportAcceptable Use Policy
Trust & SecuritylockSecurity OverviewverifiedTrust Centerverified_userCompliance & GovernancehubSubprocessors Listbug_reportResponsible DisclosureaccessibilityAccessibility Statement
Enterprise ProcurementspeedService Level Agreementreceipt_longRefund & Billing PolicyapiAPI Terms of Usecontact_supportContact & Support
toc On This Page:
1. EU GDPR Compliance Matrix2. UAE PDPL (Federal Law No. 45/2021)3. Saudi Arabia KSA PDPL & GCC Alignment4. ISO 27001 & SOC 2 Safeguards

# 1. EU GDPR Compliance Matrix

Where GDPR applies, processing roles, rights handling, safeguards, and transfer arrangements must be assessed for the customer’s use. Our Privacy Policy and DPA describe the relevant arrangements. Use of the platform is not a certification of the customer’s compliance.

# 2. UAE PDPL (Federal Law No. 45/2021)

UAE personal data protection requirements apply according to their scope and exemptions. Hosting in the UAE does not by itself satisfy all processing or transfer requirements. Breach reporting follows the applicable law and regulator requirements; this page does not substitute a universal 72-hour deadline for those rules.

# 3. Saudi Arabia KSA PDPL & GCC Alignment

Customers subject to Saudi or other regional data protection rules should assess lawful processing, publication, and cross-border transfer requirements before using the service. A UAE business address or hosting region does not establish Saudi data residency or approval by a regulator.

# 4. ISO 27001 & SOC 2 Safeguards

Security frameworks may inform due-diligence discussions. Specific certifications, audited controls, and reports must be confirmed by current documentation rather than inferred from this website. Contact hello@cuspforge.com for the evidence available for your procurement review.

verified_user

Questions about these policies?

Contact us about privacy, security, billing, or an enterprise agreement.

mail Contact usdescription Data processing terms
Certifada

The certificate lifecycle platform. Design, issue, deliver and verify digital credentials your recipients can trust — at any scale.

gavel Privacy & data protectionverified_user Security information

Product

ProductHow it worksPricingVerify a CredentialRecipient WalletAboutComparisonsBlog

Help

Getting startedDocumentationContact us

Trust & Security

Security OverviewTrust CenterCompliance & StandardsSubprocessorsResponsible Disclosure

Legal & Privacy

Privacy PolicyTerms of ServiceCookie PolicyData Processing (DPA)Acceptable Use PolicyCookie preferences

Enterprise & SLA

Enterprise SLAAPI Terms of UseAccessibility StatementRefund & Billing PolicyContact & Legal Support
© 2026 Certifada — All rights reserved.•Sharjah Media City, Sharjah, United Arab Emirates
Powered by CuspForge Technologies L.L.C