
Eyvo and GDPR
CertReports found no public GDPR evidence for Eyvo as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 22 Oct 2018
- Expires or valid through
- 29 Apr 2027
- Scope
- Eyvo, Inc. processes personal data received in reliance on the EU-U.S. Data Privacy Framework (DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF for the purpose of providing cloud-based eProcurement software services to our business clients globally. The types of personal data processed include: • Client Data: Contact information (e.g., name, job title, email address, business phone number) of client employees for the purpose of user account setup, communication, training, support, and access control within the Eyvo platform. • Transaction and System Usage Data: Information related to procurement activities conducted by users on our platform, including purchase requisitions, approvals, supplier interactions, and system logs, to ensure system functionality, security, auditability, and client reporting. • Supplier Data: Business contact and financial data related to suppliers entered into the system by clients, used solely to facilitate client procurement operations. • Website Visitor Data: Information collected from users of our public websites, such as IP address and browser type, for analytics, security, and optimization purposes. Eyvo may share limited personal data with third-party service providers (e.g., cloud infrastructure vendors, email service platforms, support ticketing systems) solely for the purpose of enabling core system functionality, customer support, or communication. These third parties are contractually obligated to process data only on Eyvo’s behalf and in compliance with DPF principles. Eyvo does not sell personal data to third parties. All personal data is stored securely, access is strictly controlled, and data is processed only as necessary to fulfill contractual obligations to clients and regulatory compliance requirements.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Eyvo, Inc.: Active: SW-US Certification, EU-US Certification, UK Extension Certification | Live pagesha256 fbf8c28028 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is Eyvo GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags or the Procurement category) whose GDPR row is verified or vendor-stated, ranked by similarity.
No Procurement vendor has GDPR evidence in the index yet.