Industries

  • Information and Communications Technology
  • Information Technology Services
  • Information and Communications Technology
  • Software

Participation

UK Extension to the EU-U.S. Data Privacy Framework Framework: Active

Original Certification Date: 10/2/2023
Next Certification Due Date: 5/14/2024
Data Collected: HR, NON-HR

Swiss-U.S. Data Privacy Framework Framework: Active

Original Certification Date: 5/24/2017
Next Certification Due Date: 5/14/2024
Data Collected: HR, NON-HR

EU-U.S. Data Privacy Framework Framework: Active

Original Certification Date: 9/23/2016
Next Certification Due Date: 5/14/2024
Data Collected: HR, NON-HR

Purpose of Data Collection

Dropbox provides a website, software, and mobile applications which allow people to store files, synchronize files across multiple devices, and collaborate with others. Dropbox offers services to individual users on both a free and paid subscription basis (Dropbox Basic, Dropbox Plus, Dropbox Professional, Dropbox Family, Dropbox Transfer, and Dropbox Backup). Dropbox also offers services intended for use within teams and organizations on a paid subscription basis (Dropbox Standard, Dropbox Advanced, Dropbox Enterprise, Dropbox Advanced Server Integration, Dropbox Enterprise Server Integration, and Dropbox Education). Certain Dropbox services may also be accessed by Application Programming Interfaces (APIs), which taken together, are elements of the Dropbox Developer Platform. Dropbox, through Dropbox Sign Services, provides a website, software, and mobile applications which allow people to streamline complex transactions through innovative digital solutions such as electronic fax, electronic signature, and workflow automation. Dropbox Sign Services offers services to individual users on both a free and paid subscription basis (Dropbox Sign Free, Dropbox Sign Essentials, Dropbox Sign Dropbox + ESign, Dropbox Sign Standard, Dropbox Premium, Dropbox Fax Free, Dropbox Fax Home Office, Dropbox Fax Professional, Dropbox Fax Small Business, Dropbox Forms Free and Dropbox Forms Standard). Dropbox Sign Services also provides Application Programming Interfaces (the “API”) that allow Customers to build integrated fax, signature, or workflow automation solutions within a Customer’s websites, applications, or other properties. Dropbox collects personal data from individuals in the European Union, European Economic Area, United Kingdom, and Switzerland for the purposes of providing and improving these services, entering into contracts, providing customer support, as well as enforcing its Terms of Service and Business Agreement. Dropbox uses certain trusted third parties (for example, providers of customer support and IT services) to help provide, improve, protect, and promote its Services. The trusted third parties may access user information to perform tasks on behalf of Dropbox. Dropbox remains responsible for the handling of user information per our instruction. Dropbox may disclose your information to additional third parties if we determine that such disclosure is reasonably necessary to: (a) comply with any applicable law, regulation, legal process, or appropriate government request; (b) protect any person from death or serious bodily injury; (c) prevent fraud or abuse of Dropbox or our users; (d) protect Dropbox’s rights, property, safety, or interest; or (e) perform a task carried out in the public interest. Dropbox processes human resources information for a variety of purposes, including, but not limited to: administration of compensation, employment relationship management, compliance with applicable laws and employment-related requirements, providing IT systems and support, benefits, performance management, responding to requests and legal demands from regulators, and compliance with corporate financial responsibilities. Dropbox discloses human resources information to third-party service providers and, when necessary, to regulators and government authorities. Dropbox, Inc. adheres to the Privacy Shield Principles with respect to the Dropbox and Dropbox Sign services; however, this does not include any other services including the DocSend or FormSwift services.

Privacy Policy

HR Data

Dropbox Global Employee Privacy Notice
Description:

Dropbox processes human resources information for a variety of purposes, including, but not limited to: administration of compensation, employment relationship management, compliance with applicable laws and employment-related requirements, providing IT systems and support, benefits, performance management, responding to requests and legal demands from regulators, and compliance with corporate financial responsibilities. Dropbox discloses human resources information to third-party service providers and, when necessary, to regulators and government authorities. The Dropbox Global Employee Privacy Notice is available to all employees on the Dropbox Intranet “Dropbox Policies” webpage.

Effective Date: 8/29/2023
Dropbox Candidate Privacy Notice
Description:

Dropbox processes human resources information for a variety of purposes, including, but not limited to: administration of compensation, employment relationship management, compliance with applicable laws and employment-related requirements, providing IT systems and support, benefits, performance management, responding to requests and legal demands from regulators, and compliance with corporate financial responsibilities. Dropbox discloses human resources information to third-party service providers and, when necessary, to regulators and government authorities. The Dropbox and HelloSign Employee Privacy Notice is available to all employees on the Dropbox Intranet “Legal Resources” webpage. The Candidate Privacy Notice is provided to employment candidates during the recruitment process via the application portal.

Effective Date: 8/29/2023

Non-HR Data

Description:

Dropbox provides a website, software, and mobile applications which allow people to store files, synchronize files across multiple devices, and collaborate with others. Dropbox offers services to individual users on both a free and paid subscription basis (Dropbox Basic, Dropbox Plus, Dropbox Professional, Dropbox Family, Dropbox Transfer, and Dropbox Backup). Dropbox also offers services intended for use within teams and organizations on a paid subscription basis (Dropbox Standard, Dropbox Advanced, Dropbox Enterprise, Dropbox Advanced Server Integration, Dropbox Enterprise Server Integration, and Dropbox Education). Certain Dropbox services may also be accessed by Application Programming Interfaces (APIs), which taken together, are elements of the Dropbox Developer Platform.

Effective Date: 9/26/2023
Description:

Dropbox, through Dropbox Sign Services, provides a website, software, and mobile applications which allow people to streamline complex transactions through innovative digital solutions such as electronic fax, electronic signature, and workflow automation. Dropbox Sign Services offers services to individual users on both a free and paid subscription basis (Dropbox Sign Free, Dropbox Sign Essentials, Dropbox Sign Dropbox + ESign, Dropbox Sign Standard, Dropbox Premium, Dropbox Fax Free, Dropbox Fax Home Office, Dropbox Fax Professional, Dropbox Fax Small Business, Dropbox Forms Free and Dropbox Forms Standard). Dropbox Sign Services also provides Application Programming Interfaces (the “API”) that allow Customers to build integrated fax, signature, or workflow automation solutions within a Customer’s websites, applications, or other properties.

Effective Date: 9/29/2023

Verification Method

Self-Assessment

Dispute Resolution

Questions or Complaints?

If you have a question or complaint regarding the covered data, please contact Dropbox, Inc. at:

William Yoon
Chief Privacy Officer
Dropbox, Inc.
1800 Owens St Ste 200
San Francisco, California 94158-2381

Privacy Shield organizations must respond within 45 days of receiving a complaint.

If you have not received a timely or satisfactory response from Dropbox, Inc. to your question or complaint, please contact the independent recourse mechanism listed below


NON-HR RECOURSE MECHANISM



Appropriate statutory body with jurisdiction to investigate any claims against Dropbox, Inc. regarding possible unfair or deceptive practices and violations of laws or regulations covering privacy Federal Trade Commission