Skip to main content
AIRIN
PricingSign in

Modal Labs policy evolution

Before/after stance changes across captured policy versions, with exact citations. If no before/after delta is available yet, AIRIN shows the latest citation-backed stance events instead.

Diffs
0
Improved
0
Worsened
0
Changed
0
No before/after stance delta is available for this filter yet. Latest citation-backed stance events are shown below.
Jul 27, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Privacy Act; Virginia Consumer Data Protection Act. " Customer Personal Data " means any Personal Data Processed by a Subprocessor on behalf of Customer pursuant to or in connection with the Agreement; " Data Breach " means a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, Customer Personal Data. " Controller ", " Data Subject ", " Process ", (whether or not capitalized) " Processor ", and " Subprocessor " have the meanings ascribed to them by GDPR and include equivalent terms in California Data Protection Law, in each case as applicable to the Services. " EEA " means the European Economic Area; " Standard Contractual Clauses " or " SCCs " means: (a) where EU Data Protection Law or the Swiss DPA applies, the contractual clauses annexed to the European Commission's
Open citation
Jul 27, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Processor shall take reasonable steps to ensure the reliability of any employee, agent or contractor of any Subprocessor who may have access to the Customer Personal Data, ensuring in each case that access is strictly limited to those individuals who need to know / access the relevant Customer Personal Data, as strictly necessary for the purposes of the Agreement, and to comply with Applicable Laws in the context of that individual's duties to the Subprocessor, ensuring that all such individuals are subject to confidentiality undertakings or professional or statutory obligations of confidentiality.
Open citation
Jul 27, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

of Personal Data under this Agreement. Modal's current Subprocessors are listed on Schedule 3 hereto. Modal confirms that it: has entered (or, for future appointments, will enter) into a written agreement with each Subprocessor incorporating terms which are at least as protective of Personal Data provided by
Open citation
Jul 27, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Module 3: Transfer processor to processor, Clauses 1 to 6 and 8 to 18 apply where Modal Processes Personal Data as a Processor, Modal and its relevant Sub-Processor Affiliates are located in non-adequacy approved third countries, and Customer and its relevant Affiliates are established in the EEA.
Open citation
Jul 27, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

are identified on Modal's Subprocessor list, as further described in the Data Processing Addendum.
Open citation
Jul 20, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

are identified on Modal's Subprocessor list, as further described in the Data Processing Addendum.
Open citation
Jul 20, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Privacy Act; Virginia Consumer Data Protection Act. " Customer Personal Data " means any Personal Data Processed by a Subprocessor on behalf of Customer pursuant to or in connection with the Agreement; " Data Breach " means a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, Customer Personal Data. " Controller ", " Data Subject ", " Process ", (whether or not capitalized) " Processor ", and " Subprocessor " have the meanings ascribed to them by GDPR and include equivalent terms in California Data Protection Law, in each case as applicable to the Services. " EEA " means the European Economic Area; " Standard Contractual Clauses " or " SCCs " means: (a) where EU Data Protection Law or the Swiss DPA applies, the contractual clauses annexed to the European Commission's
Open citation
Jul 20, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Processor shall take reasonable steps to ensure the reliability of any employee, agent or contractor of any Subprocessor who may have access to the Customer Personal Data, ensuring in each case that access is strictly limited to those individuals who need to know / access the relevant Customer Personal Data, as strictly necessary for the purposes of the Agreement, and to comply with Applicable Laws in the context of that individual's duties to the Subprocessor, ensuring that all such individuals are subject to confidentiality undertakings or professional or statutory obligations of confidentiality.
Open citation
Jul 20, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

of Personal Data under this Agreement. Modal's current Subprocessors are listed on Schedule 3 hereto. Modal confirms that it: has entered (or, for future appointments, will enter) into a written agreement with each Subprocessor incorporating terms which are at least as protective of Personal Data provided by
Open citation
Jul 20, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Module 3: Transfer processor to processor, Clauses 1 to 6 and 8 to 18 apply where Modal Processes Personal Data as a Processor, Modal and its relevant Sub-Processor Affiliates are located in non-adequacy approved third countries, and Customer and its relevant Affiliates are established in the EEA.
Open citation
Jun 17, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

are identified on Modal's Subprocessor list, as further described in the Data Processing Addendum.
Open citation
Jun 17, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Module 3: Transfer processor to processor, Clauses 1 to 6 and 8 to 18 apply where Modal Processes Personal Data as a Processor, Modal and its relevant Sub-Processor Affiliates are located in non-adequacy approved third countries, and Customer and its relevant Affiliates are established in the EEA.
Open citation
Jun 17, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Privacy Act; Virginia Consumer Data Protection Act. " Customer Personal Data " means any Personal Data Processed by a Subprocessor on behalf of Customer pursuant to or in connection with the Agreement; " Data Breach " means a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, Customer Personal Data. " Controller ", " Data Subject ", " Process ", (whether or not capitalized) " Processor ", and " Subprocessor " have the meanings ascribed to them by GDPR and include equivalent terms in California Data Protection Law, in each case as applicable to the Services. " EEA " means the European Economic Area; " Standard Contractual Clauses " or " SCCs " means: (a) where EU Data Protection Law or the Swiss DPA applies, the contractual clauses annexed to the European Commission's
Open citation
Jun 17, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

of Personal Data under this Agreement. Modal's current Subprocessors are listed on Schedule 3 hereto. Modal confirms that it: has entered (or, for future appointments, will enter) into a written agreement with each Subprocessor incorporating terms which are at least as protective of Personal Data provided by
Open citation
Jun 17, 2026privacymedium

data sharing

Latest stance: third party or vendor sharing

Processor shall take reasonable steps to ensure the reliability of any employee, agent or contractor of any Subprocessor who may have access to the Customer Personal Data, ensuring in each case that access is strictly limited to those individuals who need to know / access the relevant Customer Personal Data, as strictly necessary for the purposes of the Agreement, and to comply with Applicable Laws in the context of that individual's duties to the Subprocessor, ensuring that all such individuals are subject to confidentiality undertakings or professional or statutory obligations of confidentiality.
Open citation

Generated from live stance events. Informational only, not legal advice.

📢 POLICY UPDATES ALERT

AIRIN Brief

Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.