Compliance
Straight answers about data and the law.
Helix processes business data, identifies companies visiting your site, and acts on connected accounts. Here's how we handle the obligations that come with that.
14-day trial · No credit card · Approval controls on by default
Roles: controller and processor
For your workspace data and the visitor data collected through your properties, you are the controller and Helix acts as a processor on your instructions. For our own marketing site and customer accounts, Helix is the controller.
GDPR / UK GDPR
We support data subject requests (access, correction, deletion, restriction, objection, portability) for data held in your workspace. Visitor Intelligence is designed around company-level identification for B2B account research rather than profiling named individuals, and you can restrict or disable it per property.
Where personal data is transferred internationally, we rely on the appropriate safeguards, including Standard Contractual Clauses with subprocessors that operate outside the EEA/UK.
CCPA / CPRA
We do not sell personal information, and we do not share it for cross-context behavioral advertising. California residents can request access to or deletion of personal information we hold, and can request details of the categories collected. Requests are handled through the contact below.
Data Processing Agreement
A DPA, including our subprocessor list and the SCC modules where applicable, is available on request for paid plans. Email legal@helixcmo.com and tell us the entity name and jurisdiction.
Subprocessors
Helix relies on a small set of infrastructure, database, email, analytics, and AI model providers to deliver the service. The current list, with purpose and location for each, is available on request and included as an annex to the DPA.
Retention and deletion
Retention is described by data type in our Privacy Policy. You can delete a workspace at any time; Enterprise customers can agree custom retention and deletion schedules.
Certifications
We're transparent about status rather than implying more than we have: if you need a specific framework attestation for procurement, ask us where that program currently stands before you build a requirement around it. We'd rather tell you plainly than paste a badge.
Privacy requests and contact
Privacy requests: privacy@helixcmo.com. Security reports: security@helixcmo.com. Legal and contracts: legal@helixcmo.com.
Bring your legal team to the demo.
We'll answer procurement questions directly on the call.
14-day free trial. No credit card required.
