Skip to content

QuaerisAI, Inc. Data Processing Addendum

(Incorporated by Reference)

This Data Processing Addendum (“DPA”), sets forth the rights and obligations regarding the processing of Customer data. By executing an Order Form or subscribing to the Platform, you agree to be bound by the DPA without the need for a separate signature. 

These Data Protection Addendum along with Terms and Conditions (“Terms”) govern your access to and use of the QuaerisAI Platform (“Platform”), including any associated services, software, and documentation, provided by QuaerisAI, Inc. (“QuaerisAI,” “Provider,” or “QAI”). By accessing or using the Platform, you agree to be bound by these Terms. 

 

 

  1. Definitions
    • Data Controller: Entity determining purposes and means of Personal Data processing. 
    • Data Processor: QuaerisAI, Inc., processing Personal Data on behalf of the Data Controller. 
    • Level-Zero Data: Raw data residing in the Customer’s systems that is not replicated outside the Customer environment. 
    • Services: Analytics, reporting, and data access services provided by QuaerisAI. 

  1. Data Processing Scope
    • QuaerisAI processes Customer data solely to provide the Services. 
    • All queries execute directly within Customer systems; Level-Zero Data is never copied, stored, or moved. 
    • Data interactions are ephemeral and scoped by user permissions. 

 

  1. Data Sources and Connectivity
    • Supports cloud, on-prem, private cloud, data lakes, cloud data warehouses, ERP, CRM and all transactional systems. 
    • 300+ connectors including SQL, PostgreSQL, Oracle, Snowflake, Azure Synapse, Redshift, Athena, Salesforce, HubSpot, SAP, Workday. 
    • Custom connectors can be developed.
    • Access is via read-only connections, keeping data in the Customer environment. 

  1. Data Storage, Model Training, and Security
    • QuaerisAI does not store Customer data or use it for AI training. 
    • Query results are transient and permission-scoped. 
    • Role-based access control, Persona-based functionality limits, encryption, audit trails, and granular security at dimension and document levels are applied. 

  1. Multi-Tenant, Risk Mitigation, and API Access
    • Supports enterprise-scale multi-tenant deployments via Dockerized Kubernetes. 
    • Direct query execution mitigates risk of data loss, latency, or replication costs. 
    • Secure API access is available subject to Customer permissions. 

  1. Subprocessors and Audit Rights
    • QuaerisAI may engage subprocessors under equivalent data protection obligations. 
    • Customer may request reasonable audits consistent with confidentiality. 

  1. Term, Termination, and Liability
    • Effective for the duration of the Agreement. 
    • Upon termination, all Customer data processed by QuaerisAI will be deleted or rendered inaccessible. 
    • QuaerisAI is liable for breaches resulting from its negligent or willful acts; Customer indemnifies QuaerisAI for claims arising from inaccurate or unauthorized instructions.

 

For questions regarding these Terms or the DPA, contact us.

All rights reserved.

Last updated September 4, 2025