Release frequency: monthly, quarterly, or as-needed patch updates.
Major vs. minor releases: distinction between feature-rich major releases and security or bug fix patches
Release governance
Roadmap transparency: access to proposed features and timelines.
Backward compatibility: how upgrades affect customizations, APIs, and integrations.
Sandbox/testing: availability of a staging environment to validate upgrades before production.
Upgrade windows: scheduled maintenance windows and communication timelines.
Update process
Notification and planning: advance notice of upcoming releases; detailed release notes.
Impact assessment: compatibility checks with existing configurations, automations, and integrations.
Testing guidance: recommended validation steps, UAT scripts, and rollback plans.
Migration/upgrade support: vendor-led upgrade services or self-service upgrade options.
Training for new features: targeted sessions or docs for new capabilities.
Rollback and emergency fixes
Rollback procedures if a release introduces issues.
Hotfix process: rapid remediation for critical bugs with minimal downtime.
Data Ownership and Portability
ClickSambo acts as a data processor, processing data only on behalf of customers (the data controllers) under GDPR.
Customers own their data and can export data (e.g., CSV) from ClickSambo dashboards.
Clients can request deletion of their data, which ClickSambo handles within 30 business days.
Data Processing Agreement (DPA) governs the data protection roles and responsibilities.
ClickSambo may use sub-processors with customer consent and follows security measures to protect data.
Upon service termination, ClickSambo deletes customer personal data unless legally required to retain it.
Customers have rights to data portability under GDPR, accessing their data in a structured, machine-readable format.
Scaling Up / Down
ClickSambo acts as a data processor under GDPR; customers (data controllers) own and control their data.
Customers can access their data via account dashboards, exporting data in CSV format.
Customers can request deletion or deactivation of data/accounts; ClickSambo complies within 30 business days.
Data Processing Agreement (DPA) outlines roles, rights, and protections, with ClickSambo using customer data only per contract and for legitimate purposes.
Data portability is honored via provision of data in structured, machine-readable formats as required by GDPR.
The terms & conditions for contract renewal and cancellation
Detailed terms for contract renewal or cancellation are not publicly detailed in the publicly available ClickSambo policies or DPA.
Upon service termination, ClickSambo deletes personal data unless retention is legally required.
Terms of Service and DPA are subject to updates by mutual agreement.
Customers likely must comply with terms outlined in the overall Terms of Service for renewal and cancellation, but explicit renewal or cancellation policy details are not found.
Compliance
SOC 2 Type II: Security and privacy controls over time.
ISO 27001: Information security management system (ISMS).
ISO 27701: Privacy information management (PIMS).
HIPAA/HITECH: For healthcare data (if applicable).
** GDPR/CCPA readiness**: Data subject rights, data processing agreements, DPIAs.
PCI DSS: If handling payment data.
FedRAMP/FISMA: For U.S. government or regulated sectors.
CSA STAR: Cloud security alliance framework for cloud providers.
PCI DSS, HITRUST: Industry-specific data security standards.