
CluePoints and GDPR
CertReports found no public GDPR evidence for CluePoints as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 3 Jul 2018
- Expires or valid through
- 15 Jun 2027
- Scope
- CluePoints is a technology company providing cloud computing services to its customers enabling Risk-Based Monitoring and Central Statistical Monitoring to determine the quality, accuracy, and integrity of clinical trial data both during and after study conduct In connection with the service customers s performed, CluePoints processes human resource data for their own employees to include: names, addresses, payroll information, We also process customer and supplier personal data including names, email addresses, company names, and phone numbers. Our clients are contractually obligated not to include any personally identifiable information into our Saas Application. All clinical trial data is pseudonymized subject (patient) health information. Data is in all formats including electronically stored and manually processed information. The personal data is processed to manage HR functions and to provide services to our customers. Personal data is shared with Third-party HR subcontractors and contact information shared with third party subcontractors for logon purposes to computer systems. CluePoints only shares personal data with third parties under a contract with each third party that obligates the third party to safeguard personal data according to CluePoints policies. In all the activities mentioned above, CluePoints limits the personal data shared to the minimum amount necessary and CluePoints complies with the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | CluePoints Inc.: Active: EU-US Certification, UK Extension Certification | Live pagesha256 3561214276 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is CluePoints GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the Life sciences and biotech category) whose GDPR row is verified or vendor-stated, ranked by similarity.