GDPR Compliance
Effective May 12, 2026
Version 2.1
Our Commitment to GDPR
Ternio II, Inc. ("Ternio") is committed to protecting personal data in compliance with the General Data Protection Regulation (GDPR) (EU) 2016/679. This page explains how we comply with GDPR in the delivery of the Ternio App and related services.
Ternio's data minimization architecture means we process only the minimum personal data necessary — agent name and username — to deliver our authentication gateway service. We have no access to contact center data, call recordings, or customer information.
Data Controller
Ternio II, Inc. acts as the Data Controller for the personal data we collect and process in connection with the Ternio App.
Ternio II, Inc.
900 Foulk Road, Suite 201
Wilmington, DE 19803, USA
Email: support@ternio.com
Phone: 1-800-429-9277
Our Data Architecture
Ternio maintains a minimal data footprint by design:
Core Mobile Application
All contact center data remains between your contact center platform provider and your organization. Ternio only processes agent name and username for authentication purposes.
CRM Adapter (Optional)
Data passes through isolated Ternio servers to mobile apps but is not stored. These servers act as a real-time pass-through only and are logically separated from our core infrastructure.
Lawful Basis for Processing
| Basis | How It Applies |
|---|---|
| Contract Performance | Processing necessary to provide authentication gateway services to our customers |
| Legitimate Interests | Service improvement, security monitoring, and fraud prevention |
| Legal Obligation | Compliance with applicable laws and regulations |
| Consent | Where specifically required, such as push notification delivery |
Data Retention
Session and usage data is automatically deleted within 30 days. Account information (agent name, username) is retained for the duration of the customer relationship. For CRM Adapter services, data passes through in real-time and is not stored. Manual deletion is available upon request at any time.
Your Rights Under GDPR
As a data subject under GDPR, you have the following rights with respect to personal data we hold about you:
- Right of Access: Request a copy of the personal data we hold about you.
- Right to Rectification: Request correction of any inaccurate personal data.
- Right to Erasure: Request deletion of your personal data ("right to be forgotten").
- Right to Restrict Processing: Request that we limit how we process your personal data.
- Right to Data Portability: Receive your personal data in a machine-readable format.
- Right to Object: Object to processing based on legitimate interests.
To exercise any of these rights, contact us at support@ternio.com with the subject line "GDPR Request." We will respond within 30 days. You may also lodge a complaint with your local data protection supervisory authority.
International Data Transfers
Ternio processes all data in the United States on Microsoft Azure infrastructure. When transferring data from the EU/EEA to the United States, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission to provide adequate safeguards.
Standard Contractual Clauses
Our use of SCCs ensures that any transfer of personal data outside the EEA is subject to appropriate safeguards consistent with GDPR requirements.
Sub-Processors
Ternio uses the following sub-processors that may process personal data in connection with our services:
| Sub-Processor | Role | Location |
|---|---|---|
| Microsoft Azure | Cloud infrastructure and hosting | United States |
| Google Firebase | Push notification delivery | United States |
Your contact center platform provider operates under a separate agreement between your organization and that provider. Ternio is not responsible for the data practices of your contact center platform.
Data Breach Notification
In the event of a personal data breach, Ternio will notify affected customers without undue delay and no later than 48 hours of discovery. We will notify the relevant supervisory authority within 72 hours as required by Article 33 of the GDPR.
Exercising Your Rights
To exercise any GDPR right or submit a privacy-related request, contact us at:
- Email: support@ternio.com — subject line: "GDPR Request"
- Phone: 1-800-429-9277
- Mail: 900 Foulk Road, Suite 201, Wilmington, DE 19803, USA
We will acknowledge your request within 5 business days and respond in full within 30 days. If we require additional time, we will notify you of the extension and the reason.
You also have the right to lodge a complaint with your local EU/EEA data protection supervisory authority if you believe we have not handled your personal data in accordance with GDPR.