How to Read This Log
Each entry below includes the effective date, policy type, a brief summary of what changed, and an expandable section with detailed clause modifications. Major changes require 30 days' advance notice via email and in-app notifications. Minor clarifications or typographical corrections are logged immediately upon publication.
Policy Change History
Introduction of AI-Powered Content Workflows
Added clauses governing automated content generation, semantic tagging, and AI-driven SEO optimization. Clarified data usage boundaries for machine learning training.
- Added Section 4.2: AI Processing Scope & User Control
- Modified Section 2.1: Data Retention for Generated Assets
- Clarified that AI models do not retain identifiable content after processing
- Added opt-out mechanism for AI-assisted drafting
GDPR & CCPA Compliance Updates
Aligned data processing terms with latest EU AI Act guidelines and California Privacy Rights Act amendments. Updated subprocessor inventory and cross-border transfer mechanisms.
- Revised Appendix A: Subprocessor List (added 3 new vendors)
- Updated Section 3.4: International Data Transfers & SCCs
- Added right to automated decision-making explanation
- Clarified data deletion SLAs (now 14 days max)
Enhanced Security & Incident Response
Updated security obligations to reflect SOC 2 Type II certification completion. Modified breach notification timelines and encryption-at-rest specifications.
- Updated Section 5.1: Security Controls & Audits
- Reduced breach notification window from 72 to 48 hours
- Added AES-256 encryption requirement for all stored content
- Clarified customer responsibilities for MFA enforcement
API Usage & Rate Limiting Clarification
Revised API usage limits, scraping restrictions, and commercial licensing boundaries to prevent abuse while maintaining fair usage for all tiers.
- Modified Section 7.3: API Rate Limits & Throttling
- Added Section 8.1: Prohibited Automation & Scraping
- Clarified enterprise custom quota negotiation process
- Updated service credit policy for downtime events
Cookie & Analytics Tracking Updates
Implemented granular consent management for marketing cookies, session analytics, and third-party integration tracking. Added explicit opt-in for behavioral personalization.
- Revised Section 3.2: Cookie Categories & Consent Preferences
- Added Section 3.5: Analytics Data Sharing with Partners
- Updated data retention periods for session logs (90 days)
- Added direct link to privacy dashboard for self-service management
How You'll Be Notified
Transparency is core to our relationship with customers. We ensure you're never caught off guard by policy changes.
Notification Methods
- Email Alerts: Major changes trigger an email to your account's primary contact 30 days before effective date.
- In-App Banner: A persistent banner appears in your dashboard for 60 days leading up to the effective date.
- Webhook Events: Enterprise customers can subscribe to `policy.updated` webhooks for automated compliance tracking.
- Public Log: This page is updated in real-time and serves as the canonical source of truth for all modifications.
Questions About Policy Changes?
Our legal and compliance team is available to clarify modifications, assist with internal reviews, or address regulatory concerns specific to your region.
📧 Contact Legal Team