indie.audio

citizen.stream

Data processing terms

Version 2026-10-03

These terms apply where an organisation (the controller) uses citizen.stream and citizen.stream (operator legal name to be confirmed before public launch) (the processor) handles personal data on its behalf. They meet Article 28 of the GDPR and the UK GDPR.

Scope

Subject matterRunning radio channels, a newsroom and a console for the controller's places
DurationThe term of the agreement, plus 30 days for deletion
Data subjectsThe controller's staff and contributors; people named in broadcasts; sponsors' contacts
CategoriesNames, email addresses, voice recordings, role and activity records. No special category data is required by the service.

Our obligations

  • We process personal data only on the controller's documented instructions, which include using the service as configured.
  • Everyone with access is bound by confidentiality.
  • We apply the measures on the security page: encryption in transit, hashed credentials, encrypted secrets, tenant isolation, audit logging, least-privilege access, tested backups.
  • We use only the listed sub-processors, under equivalent terms, and give 30 days' notice of a change so the controller can object.
  • We help the controller answer data subject requests and carry out impact assessments.
  • We notify the controller without undue delay, and within 48 hours, of a personal data breach.
  • At the end we return or delete the data, at the controller's choice.
  • We make available what is needed to demonstrate compliance and allow audits on reasonable notice.

International transfers

Data is stored in the EU. Any transfer outside the EEA or UK uses the standard contractual clauses (Module 3) and the UK international data transfer addendum.