Skip to main content
Xigo logo

Xigo

GDPR evidence

global.nttBusiness servicesLast verified 17 Sep 2026
GDPR mark, CertReports state No public evidenceNo public evidence

Xigo and GDPR

CertReports found no public GDPR evidence for Xigo as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.

Evidence

ExpiredInactive
as of 17 Sep 2026 · confidence 100%
Kind
listing
Issued or listed
25 Oct 2016
Scope
NTT Managed Services Americas, LLC as a corporate entity handles, stores, protects personnel and human resources data for the purposes of administering and carrying out the employment or personnel relationship for NTT Managed Services Americas employees and contractors. Human Resources / Personnel Data, may include Personal Identifiable Information (PII), and/or Protected Health Information (PHI), as well as Personal Data / Personal Information (PI). NTT Managed Services Americas, LLC as a service provider handles, stores, and protects client data, which varies according to the purposes of the business services provided to potential and current clients but often include; marketing and sales client contact data to improve services and / or maintain marketing / client relationship as well as other pertinent business contact data. Furthermore, NTT Managed Services Americas, LLC as part of the client service relationship, acquires, stores, and transmits customer communications and client information, which clients may regard as confidential, private or sensitive. This client classified data may or may not include, Private Information (PI), Personally Identifiable Information (PII) and/or Protected Health Information (PHI). NTT Managed Services Americas will treat client data according to the client assigned classification. Personal information collected by NTT Managed Services Americas, LLC shall be disclosed to third parties only for the purposes described in the notice, and for which the individual has provided implicit or explicit consent, unless a law or regulation specifically requires or allows otherwise. NTT Managed Services Americas shall ensure that any third party vendor/sub-contractor NTT Managed Services Americas has procured for which Personal Information scoped to the European Union may be disclosed enter into legal agreements subject to appropriate safeguards (SCCs). Third parties who have legal agreements with NTT Managed Services Americas shall protect personal information in a manner consistent with the relevant aspects of NTT Managed Services Americas privacy policies or other specific instructions or requirements and are subject to law providing the same level of privacy protection as is required by SCCs.
SourceCapturedQuoteLinks
Data Privacy Framework list
Official registry · HTTP 200
17 Sep 2026NTT Managed Services Americas, LLC: Inactive
Live pagesha256 4f50506df5
ExpiredInactive
as of 17 Sep 2026 · confidence 100%
Kind
listing
Issued or listed
8 Mar 2017
Scope
Xigo may collect personal data on behalf of clients while providing telecom expense management services. Personal data that may be collected includes call detail records as well as employee data such as name, corporate identifier, phone number, and email. This data is used to support placing and approving orders, inventory assignment, and tracking of expenses.
SourceCapturedQuoteLinks
Data Privacy Framework list
Official registry · HTTP 200
17 Sep 2026Xigo LLC: Inactive
Live pagesha256 063ef1301b
What GDPR means, and what it does not

"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.

Read the GDPR guide and browse all vendors with evidence

Questions buyers ask

Is Xigo GDPR compliant?

There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.

How does CertReports verify this?

Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.

Alternatives with GDPR evidence

Similar vendors (shared product tags or the Business services category) whose GDPR row is verified or vendor-stated, ranked by similarity.

No Business services vendor has GDPR evidence in the index yet.