
Conga and GDPR
CertReports found no public GDPR evidence for Conga as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 26 Jun 2019
- Expires or valid through
- 12 Jun 2027
- Scope
- Conga collects Personal Information regarding its current, prospective and former customers, its customer’s clients (“Customer Data”), and visitors (collectively “Individuals”). Conga also collects Personal Information regarding current, temporary, permanent, prospective and former employees, directors, contractors, workers or retirees of Conga and its subsidiaries worldwide (“Employees”). We collect, process, and store the following types of Personal Information: (1) information you explicitly provide to us by completing a form on our website; (2) information we automatically collect when you visit our website; (3) information our customers provide about themselves to obtain Services; (4) information Employees provide to us for employment purposes; and (5) information that our customers provide about other individuals that is processed by the Service
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Conga Corporation: Active: EU-US Certification, SW-US Certification, UK Extension Certification | Live pagesha256 60c5d9ef5f |
- Kind
- listing
- Scope
- NON-HR DATA: Depending on who you are and how you interact with us we may collect different data about you. Regardless, we will only collect information if we have a reason to do so and only to the extent necessary for that specific business purpose. Conga collects data regarding its current customers (“Customers”), potential customers (“Prospects”) and website visitors (“Visitors”) or event attendees (“Attendees”). An overview of the categories of information we collect is outlined below: We collect information that you voluntarily provide, such as by subscribing to Conga marketing communications, registering for events, or providing testimonials for our use on our Websites or other promotional materials. Information you directly provide to us include your personal identification data (for example, name, surname) and contact information (phone, email, address, country). Additional transaction and billing information is also required when procuring Conga Services or registering for Conga fee-based events. We also collect information automatically when you visit our Websites our use our Services. This information may include things such as your Internet protocol (IP) address, browser type, internet service provider, referring/exit pages, operating system, date and time stamp and clickstream data. HUMAN RESOURCES DATA: In the normal course of human resources and business activities, Conga will process the following categories of personal information about its employees: • Personal identification information, such as your name, home address, date of birth, gender, work- related photographs, and phone number(s); • Government-issued identification numbers, such as national ID or passport for payroll and travel purposes; • Immigration, right-to-work and residence status; • Family and emergency contact details; • Job-related information, such as years of service, work location, employment ID, work record, vacation absences, and contract data; • Educational and training information, such as your educational awards, certificates and licenses, vocational records and in-house training attendance; • Recruitment and performance-related data, such as resumes, objectives, ratings, comments, feedback results, career history, work equipment, career and succession planning, skills and competencies and other work-related qualifications; • Information related to your usage of Conga’s assets, in particular its computers and telecommunication systems, and traffic generated on Internet; • Voicemails, e-mails, correspondence, documents, and other work product and communications created, stored or transmitted using our networks, applications, devices, computers or communications equipment; • Acknowledgements regarding our policies, including employee handbooks, ethics and/or conflicts of interest policies and computer and other corporate resource usage policies; • Information needed for compliance and risk management, such as disciplinary records, background check reports and security data; and • Payroll and payment or benefits related information, such as salary and insurance information, dependents, government identifier or tax numbers, bank account details, and employment related benefits information, family and dependent information.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | AppExtremes, LLC DBA Conga: Inactive | Live pagesha256 7f18563633 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is Conga GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the Sales tools category) whose GDPR row is verified or vendor-stated, ranked by similarity.
No Sales tools vendor has GDPR evidence in the index yet.