Legal & trust
Data Processing Information
Last updated: September 13, 2026
Controller and processor roles
For information WordPressistic collects for its own account, support, security and marketing purposes, WordPressistic LLC generally acts as the controller or business responsible for that processing. When a customer uses Insightistic to process connected business data on the customer’s instructions, the customer may act as controller and WordPressistic may act as processor or service provider, depending on applicable law and the relationship.
Processing instructions
Insightistic processes connected data to provide analytics, reporting, synchronisation, support and security features selected by the customer. The customer is responsible for configuring the connection lawfully, limiting access, and avoiding data that is not needed for the selected feature.
Data subject requests
Customers should route requests from people whose information is in connected data to the relevant customer first. We will provide reasonable assistance available through the service and may require the customer to confirm authority before acting.
Subprocessors and safeguards
Current service categories are listed on our Subprocessors page. We use contractual, technical or organisational safeguards appropriate to the service and applicable requirements. International transfer details should be agreed in the customer’s contract or data processing addendum where required.
Deletion and return
When a customer closes an account or requests deletion, data is handled according to the account workflow, applicable retention requirements and legitimate backup/security needs. A customer that needs a signed DPA or a specific deletion/return commitment should contact hello@wordpressistic.com before connecting regulated or sensitive data.