Cardamon procurement policy evidence
Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.
| Topic | Plan or tier | Risk | Their words | Source |
|---|---|---|---|---|
| Data retention | All applicable tiers | medium | “ We retain personal information only for as long as necessary to fulfill the purposes outlined in this Policy or to comply with legal, tax, and regulatory obligations.” | Captured 2026-07-19Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | unknown | “ Regulatory or legal authorities , if required by law. If data is transferred outside the EU/EEA, we ensure adequate protection through standard contractual clauses or equivalent safeguards.” | Captured 2026-07-19Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | unknown | “ Information provided by partners or integrations you authorize (e.g., CRM, analytics, or compliance tools).” | Captured 2026-07-19Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ We do not sell or rent your personal data. We may share limited data with: Service providers that help us operate (e.g., cloud hosting, analytics, payment processors).” | Captured 2026-07-19Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | unknown | “ Payment or billing information (processed securely by third-party providers).” | Captured 2026-07-19Open source →Finding permalink → |
Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.