Skip to main content
OCR Services logo

OCR Services

GDPR evidence

Descartes delivers the industry's leading global trade management software for businesses of every

ocr-inc.comCompliance and GRCLast verified 17 Sep 2026
GDPR mark, CertReports state No public evidenceNo public evidence

OCR Services and GDPR

CertReports found no public GDPR evidence for OCR Services as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.

Evidence

ExpiredInactive
as of 17 Sep 2026 · confidence 100%
Kind
listing
Issued or listed
15 May 2019
Scope
OCR Services Inc. will collect company and/or personal data through the use of its EASE suite of products by its customers. OCR hosts, maintains, and supports its software in the USA, and has clients located in the EU, and plans to expand its customer base to include clients in Switzerland. Because OCR hosts, maintains, and supports its software in the USA, personal and company data that is collected by the EASE suite of products in the EU and/or Switzerland will be transferred to and hosted on servers in the USA. OCR collects visitor, customer, and client data. OCR only processes person name and address for persons, and company name and address for companies. For example, OCR’s Visitor Management module in the EASE suite of products, will collect person name and person address and/or company name and company address when these details are entered into a OCR Visitor Management system at a client’s site by a visitor in order to register his/her visit and gain access to the client site. Similarly, OCR’s Watch List Screening module will collect person name and address and/or company name and address when this data is entered into the OCR Watch List Screening Module by a OCR customer in order to perform denied party screening/watch list screening against their clients or potential business partners. Additionally, when OCR wins new business in the EU or Switzerland, OCR will collect and process these new customer’s data as part of the onboarding process. Other modules in OCR’s EASE suite of products will process personal data as well, limited to person name and address for persons and company name and address for companies. OCR does not share the data, personal or company, that it collects with any third parties. OCR does not collect human resources data related to its employees in the EU member countries or Switzerland. When OCR customers, their clients, or visitors, are located in the EU or Switzerland, OCR will be collecting personal data limited to person name and address and company name and address and transferring this data to the USA under the principles set forth by this Privacy Shield Policy. OCR processes Personal Data that it collects for the for the following purposes, without limitation: 1. Maintaining and supporting its products, delivering, and providing the requested products/services, and complying with its contractual obligations related thereto (including managing transactions, reporting, invoices, renewals, and other operations related to providing services); 2. Performing Watchlist/Denied Party Screening against customers’ clients or visitors 3. Visitor management services for visitors to OCR client sites 4. Satisfying governmental reporting, tax, and other requirements (e.g., import/export); 5. Storing and processing data, including Personal Data, in computer databases and servers located in the United States; 6. Verifying identity (e.g., for online access to the EASE suite of products); 7. For other business-related purposes permitted or required under applicable local law and regulation; 8. And as otherwise required by law.
SourceCapturedQuoteLinks
Data Privacy Framework list
Official registry · HTTP 200
17 Sep 2026OCR Services Inc.: Inactive
Live pagesha256 aae8f10956
What GDPR means, and what it does not

"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.

Read the GDPR guide and browse all vendors with evidence

Questions buyers ask

Is OCR Services GDPR compliant?

There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Change history

  1. 18 Sep 2026First indexed by CertReports1 evidence row across 1 framework entered the index.

Alternatives with GDPR evidence

Similar vendors (shared product tags or the Compliance and GRC category) whose GDPR row is verified or vendor-stated, ranked by similarity.