Skip to content

Legal

Data Processing

This page summarizes how Memo processes Customer Data when you use the Service. It is not a substitute for a separately negotiated data processing agreement where one is required by your organization.

Effective June 30, 2026

Last updated

1. Roles

When you use Memo for your organization's email design work, you determine what Customer Data is placed in your workspace and the purposes for which that data is used in your business. Memo processes Customer Data on your behalf solely to provide the Service as described in the Terms of Service and this page. Where applicable law distinguishes between controller and processor roles, Memo generally acts as a processor with respect to workspace template content and as a business/controller with respect to account, billing, and website data described in the Privacy Policy.

2. Processing Instructions

Memo will process Customer Data only on documented instructions provided through your use of the Service and applicable agreements, including to provide, secure, maintain, and support the Service, unless required by law. In such case, Memo will notify you where legally permitted.

3. Categories of Data Processed

Categories processed on your behalf may include workspace and account data, template content, brand assets, version snapshots, integration configuration, controlled test-send records, and support communications related to your workspace. See the Privacy Policy for additional detail.

4. Subprocessors

Memo engages subprocessors to provide infrastructure, authentication, storage, billing, delivery, analytics (where consented), and AI features. The current list is published at Subprocessors. Memo requires subprocessors to process personal information only for authorized purposes and subject to appropriate confidentiality and security obligations.

5. Security Measures

Memo implements technical and organizational measures described on the Security page, including access controls, tenant isolation, server-side authorization, and quality gates for sensitive actions. No security program eliminates all risk.

6. Assistance with Requests

If you receive a data subject request relating to Customer Data Memo processes on your behalf, contact us at privacy@memo.ly. Memo will provide reasonable assistance consistent with the Service and applicable law. Requests relating to your own Memo account may be submitted through our Data Request process.

7. Data Return and Deletion

You may export workspace content through product export features. Upon termination of your account or verified deletion request, Memo will delete or de-identify Customer Data within a reasonable period, subject to backup retention, legal obligations, and fraud prevention requirements.

8. Contact

Data processing inquiries: privacy@memo.ly or legal@memo.ly.

See also: Terms of Service, Privacy Policy, Privacy requests, Acceptable Use, Data Processing, Data Request, Cookie Policy, Billing and Refunds, Partner Program, Subprocessors, Security, Accessibility, Vulnerability Disclosure, and Service Status.