Security & Compliance

GDPR compliance

How OnceAsked handles data subject rights and cross-border data.

OnceAsked supports the data subject rights required under GDPR, including access, correction, and deletion requests, which can be initiated by a workspace admin on behalf of a member or directly through account settings by the individual concerned.

Full details on data processing, subprocessors, and data residency are covered in the Privacy Policy and our Data Processing Agreement, available to Business Plus and Custom customers on request from the sales team.