01
How to read the register
The structured provider records below distinguish staging use, test-only use and production approval. An integration being present in code or staging does not make its privacy, contract, transfer, location or deletion review complete.
Rootsly will not send production personal data to a provider until the register records approval and an effective date. New providers use fixtures or synthetic data while review is pending.
02
Changes and client notice
A material provider addition, replacement, purpose change, processing-location change or safeguard change creates a new register version rather than overwriting the earlier record.
Rootsly will notify client owners before a material subprocessor change where the agreement or applicable requirement calls for notice, allowing the required review or objection route before the effective date.