Tripsware may be considered a "processor" under the European Union's General Data Protection Regulation by
virtue of receiving certain personal data regarding individuals resident in the European Union from its clients.
Tripsware is actively working to ensure compliance, as necessary, with all relevant rules governing processors and
coordinating its activities with its clients. These efforts include processing personal data consistent with its clients'
instructions, ensuring appropriate technological safeguards with respect to any personal data, and not providing personal
data to any "sub-processors" without controller approval.