📅 Last Updated: November 12, 2025
📄 Total Policies: 6 Active
🔄 Update Frequency: Quarterly Review

Enhanced Data Retention & User Export Controls

New Privacy Effective: Dec 01, 2025

We're introducing granular data retention controls and one-click export features to give you full ownership of your workspace data. This update aligns with GDPR Art. 17 and CCPA data portability requirements.

Key Changes

  • Customizable retention periods for logs, audit trails, and user activity (30, 90, 180, 365 days)
  • New "Export All Data" endpoint in API v3 & dashboard settings
  • Automatic anonymization of PII after retention period expires
  • Clear user-facing notifications 7 days before data deletion

Service Level Agreement (SLA) & Uptime Guarantees

Updated Terms Effective: Nov 15, 2025

Our Pro and Enterprise plans now include enhanced uptime guarantees, structured compensation tiers, and clearer incident communication protocols during maintenance windows.

Key Changes

  • Uptime guarantee increased from 99.5% to 99.9% for Pro plans
  • New credit calculation formula based on actual downtime minutes
  • Mandatory 24-hour advance notice for planned maintenance
  • Real-time status dashboard integration for all tiers

Third-Party Integration & Subprocessor Disclosures

Updated Compliance Effective: Oct 28, 2025

We've revised our Data Processing Addendum to include updated subprocessor locations, encryption standards, and cross-border data transfer mechanisms (SCCs & TIA).

Key Changes

  • Added 4 new regional data centers (Frankfurt, Singapore, São Paulo, Toronto)
  • Updated subprocessor list with security audit certificates
  • Explicit consent workflow for cross-border data routing
  • SOC 2 Type II and ISO 27001 compliance documentation linked

Acceptable Use Policy & AI Model Guidelines

New Security Effective: Sep 10, 2025

With the rollout of Admin AI features, we've established clear boundaries around model usage, prompt injection prevention, and prohibited content generation to maintain platform integrity.

Key Changes

  • Explicit prohibition of malicious prompt engineering & data exfiltration attempts
  • Rate limits and abuse detection for AI inference endpoints
  • Zero-retention mode for sensitive AI processing sessions
  • Updated enforcement actions for policy violations