HomeLegal & PoliciesGDPR & Data Protection Policy
Official Policy Document

GDPR & Data Protection Policy

Our commitment to the EU General Data Protection Regulation (GDPR) and international data privacy frameworks for scholarly publishers.

Last Updated: January 15, 2026

1. GDPR Compliance Framework

Manna Manuscript is architected to comply with the European Union General Data Protection Regulation (GDPR). We act as a Data Processor on behalf of journal publishers and academic institutions (the Data Controllers).

We process personal data only in accordance with documented instructions from our institutional clients.

2. Principles of Data Processing

Lawfulness, Fairness, and Transparency: Data is processed strictly for academic publishing and editorial workflows.

Purpose Limitation: Data collected for peer review and editorial screening is never repurposed for unrelated commercial operations.

Data Minimization: We collect only the information strictly necessary to facilitate author verification, reviewer matching, and publication.

3. Subprocessors & Security Controls

We maintain an audited list of cloud subprocessors (hosting, email delivery, similarity screening) bound by strict Data Processing Agreements matching GDPR Article 28 requirements.

All subprocessor transfers adhere to Standard Contractual Clauses (SCCs) and rigorous security controls.

4. Data Subject Rights & DPO Contact

Authors, reviewers, and editors can exercise their rights to access, rectification, portability, and restriction by contacting their journal editor or emailing dpo@mannaanalytics.com.

© 2026 Manna Analytics Private Limited. All rights reserved.

Contact Compliance & Legal Team →