Ontraport and GDPR
CertReports found no public GDPR evidence for Ontraport as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 14 Feb 2018
- Expires or valid through
- 1 Dec 2026
- Scope
- Our service is a CRM platform. Data is only collected and stored at the direction of our clients (the Data Controllers) and they may collect and store any information they are legally allowed to store in our system. We do not control what data our customers store. We process customer information. We can see when they log in to their accounts along with the paths (URLs) they visit and buttons they click while logged in to the application. This information is shared with the following subprocessors. 1. Pendo - This aggregates customer paths through the application so we can analyze trends and where there may be friction interacting with features. 2. Fullstory - This helps us view actions taken in the application by users to pinpoint when an error or mistake occurred to support bug resolution 3. Opensearch - We provide activity logs to our customers. This allows them to see which records in their account opened and clicked emails, viewed URLs etc. We also provide logs showing what marketing automation ran for their records. This includes things like tracking when an email was sent, how the email was scheduled, and changes to record information etc. This is all sent to opensearch for storage and provided to the customer when interacting with their account.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Ontraport Inc: Active: EU-US Certification, SW-US Certification, UK Extension Certification | Live pagesha256 e4ceda31d5 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is Ontraport GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags) whose GDPR row is verified or vendor-stated, ranked by similarity.
No same-category vendor has GDPR evidence in the index yet.