Skip to main content
Platform Review
PricingSign in
← All platforms
Workflow & Automation · gecko.security

Gecko Security

Graded against 811 verified platforms, from its own policy text. Automated assessment against a published rubric — not legal advice.

Overall riskMEDReviewed 2026-08-18
Creator: low · GRC: low · Counsel: low
Benchmark

No lens is bandable yet — banding requires fully verified documents with on-criteria findings. The gap is shown honestly, never estimated.

19 verified findings5 policy surfaces2/2 core docs verified
Risk triage

Watch: Data retention

Start here. These are the highest-risk verified clauses AIRIN found in the platform's own policy text.

0
high
2
medium
2
low
2/2
docs
Trains on your data?
Not yet assessed
no verified finding covers this surface yet
Who owns outputs?
Not yet assessed
no verified finding covers this surface yet
Commercial use?
Not yet assessed
no verified finding covers this surface yet
Every rating:verbatim-citedsnapshot-datedchange-loggedHow we keep ratings honest →

How to read this page: Overall risk rates what Gecko Security's own policy terms mean for your prompts, outputs, and data. The benchmark bands below grade those same verified terms relative to peers — a platform in a risky-by-default category can rate HIGH risk and still grade STRONG against its peer set. Both trace to the cited findings.

Fully verifiedWorkflow & Automation

Fully verified — complete core corpus captured and read in full.

Document status
  • Terms of Service
    Verified - read in full - 0 citationsstaticLast captured 2026-08-18
  • Privacy Policy
    Verified - read in full - 19 citationsstaticLast captured 2026-07-20
Tier conditions

Only citation-backed plan differences are shown here; absent cells mean AIRIN has not verified a tier-specific claim.

plan language
Data retention

Specifies binding retention periods for distinct categories of data: account and profile data retained for the customer relationship plus up to 2 years; transactional and billing records for at least 7 years; support correspondence for up to 3 years; and analytical/usage Non-Personal Data indefinitely, establishing concrete retention obligations and timelines.

" We retain Personal Data only for as long as necessary to fulfil the purposes described in this Privacy Policy. We retain the categories of data described below as follows: Account and profile data: retained for the duration of our custome..."
📍 § 4 (Data Retention)Jump to exact text →
plan language
Subprocessors & data sharing

Grants the company permission to share user information with service providers acting on its behalf, professional advisers under confidentiality obligations, parties the user requests, and courts/law enforcement/regulators where legally required or necessary for legal claims or rights protection — defining the permissible categories of third-party disclosure.

" We may share your information with: Service providers (e.g. hosting, analytics, payment processors) acting on our behalf; Professional advisers (e.g. legal, accounting firms) under confidentiality obligations; Persons or entities with w..."
📍 § 5 (Third-Party Sharing & Subprocessors)Jump to exact text →
plan language
Audit rights / DPA / residency

Defines the geographic and role-based scope of this section — applying to users in the EU or UK — and establishes the company's role as 'controller' determining purposes and means of processing, with examples of covered functions; also clarifies that providing Personal Data is not obligatory but may affect service availability.

" This section of our Privacy Policy applies if you use our Services in the European Union (EU) or United Kingdom (UK) and we act as a “controller” (as explained below). With respect to certain operational functions which are part of our Se..."
📍 § 6 (EU/UK Data Protection)Jump to exact text →
Conflicting provisions (1)
  • Clause A implies that log file data, which typically includes IP addresses, is Non-Personal Data, while Clause B explicitly classifies online identifiers such as IP addresses as Personal Data.

    " We follow standard industry procedures in using log files. These files record visitors’ interactions with our website, capturing details such as your browser type, ISP, date and time of access, referring/exit pages, and click counts. This information is Non-Personal Data. We use this data to analyze trends, administer the website, track user movements, and gather general demographic data."
    " As part of providing and improving our Services and for other purposes as noted in this Privacy Policy, we collect both data that identifies you, directly or indirectly (“Personal Data”) and data that does not identify you and which cannot reasonably be used to identify you (“Non-Personal Data”). Specifically, we collect Personal Data and Non-Personal Data as follows: Personal Data: The Personal Data we collect may include, without limitation, your name, email address, phone number, company name, online identifiers (such as IP address) and any other information you provide directly when contacting us or engaging with our Services. Non-Personal Data: We automatically collect certain Non-Personal Data when you interact with our website, such as browser type, referring/exit pages, and the date and time of your visit. This information is gathered through cookies and similar tracking technologies. If you contact us directly, we may collect additional information, including any attachments or details you provide."
    Within one document

Evidence appendix

Showing priority citations first. The full appendix is available for audit trails; not every citation is a severe risk.

High - 0
Medium - 2
Tier-specific - 0
Total citations - 19
Severity
Surface
Document
Tier
Data retention
High
" We retain Personal Data only for as long as necessary to fulfil the purposes described in this Privacy Policy. We retain the categories of data described below as follows: Account and profile data: retained for the duration of our customer relationship plus up to 2 years thereafter; Transactional and billing records: retained for at least 7 years to satisfy tax or audit requirements; Support correspondence and logs: retained for up to 3 years to ensure quality and traceability; Analytical/usage data: Non-Personal Data regarding usage of our Services may be retained indefinitely. Upon expiration of the relevant retention period for Personal Data or upon your valid request for erasure of your Personal Data, we will securely delete or anonymise your Personal Data unless we are obligated under applicable law to retain it."
§ 4 (Data Retention)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Specifies binding retention periods for distinct categories of data: account and profile data retained for the customer relationship plus up to 2 years; transactional and billing records for at least 7 years; support correspondence for up to 3 years; and analytical/usage Non-Personal Data indefinitely, establishing concrete retention obligations and timelines.

AI-generated interpretation, not legal advice.

Subprocessors & data sharing
High
" We may share your information with: Service providers (e.g. hosting, analytics, payment processors) acting on our behalf; Professional advisers (e.g. legal, accounting firms) under confidentiality obligations; Persons or entities with whom you request that we share your information. Courts, law enforcement, regulators, government agencies or other parties where it is reasonably necessary for the establishment, exercise or defense of a claim, protecting our rights or the rights of our users, or is required by laws or regulations to which we are subject. In some instances, we process Personal Data on behalf of our customers and delegate certain functions to service providers that process Personal Data on our behalf (“subprocessors”). A current list of our subprocessors and their roles is available on our website. We conduct due diligence and impose contractual data protection requirements on all of our subprocessors."
§ 5 (Third-Party Sharing & Subprocessors)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Grants the company permission to share user information with service providers acting on its behalf, professional advisers under confidentiality obligations, parties the user requests, and courts/law enforcement/regulators where legally required or necessary for legal claims or rights protection — defining the permissible categories of third-party disclosure.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" We do not knowingly collect Personal Data from children under the age of 13. If you believe that a child under 13 has provided us with Personal Data, please contact us immediately, and we will promptly take steps to remove such Personal Data from our records."
§ 12 (Children’s Information)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Restricts the company from knowingly collecting Personal Data from children under 13 and obligates prompt removal of any such data if discovered, establishing a protective prohibition on collecting minors' data.

AI-generated interpretation, not legal advice.

Audit rights / DPA / residency
High
"In such cases, we ensure the transfer of your Personal Data occurs pursuant to a lawful transfer mechanism under applicable law, which may include without limitation: Standard Contractual Clauses;"
§ 6 (EU/UK Data Protection)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Obligates the company to ensure that any transfer of Personal Data occurs pursuant to a lawful transfer mechanism, listing Standard Contractual Clauses as one permissible mechanism, thereby restricting cross-border data transfers to lawful channels.

AI-generated interpretation, not legal advice.

Audit rights / DPA / residency
High
" Other lawful transfer mechanisms under applicable data-protection laws. In cases where we transfer or receive your Personal Data in accordance with Standard Contractual Clauses, you may request a copy of such clauses or be informed of where they are accessible. To make such a request, please contact us at gecko@gecko.security . For details on how long we store your Personal Data, please refer to the “Data Retention” section above. If you have a concern regarding the processing of your Personal Data, you may contact us at gecko@gecko.security or you may lodge a complaint with the applicable data protection authority in the country in which you are located. For a listing of EU data protection authorities and their contact details, please visit https://www.edpb.europa.eu/about-edpb/about-edpb/members_en . If you are located in the UK, you may contact the Information Commissioner’s Office (ICO) via the following link: https://ico.org.uk/make-a-complaint/data-protection-complaints/ ."
Privacy Policy › “Adequacy decisions for the recipient country; or”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Describes the procedure for users to request copies of Standard Contractual Clauses or information about their accessibility, provides the contact email for such requests, cross-references the Data Retention section, and outlines the process for lodging a complaint with the applicable supervisory authority if users have concerns about data processing.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" At Gecko Security, Inc. (“we,” “our,” or “us”), safeguarding the privacy of our users and visitors (“you”) is one of our core priorities. This Privacy Policy outlines the types of information we collect, how we use and share it, and how we protect it when you interact with our website and services. If you have questions about this Privacy Policy or our privacy practices, please contact us at gecko@gecko.security ."
Privacy Policy › “Privacy Policy”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Introductory clause defining the parties ('we,' 'our,' 'us,' and 'you'), the scope of the policy, and its subject matter — outlining that it covers collection, use, sharing, and protection of information; establishes the definitional framework for the entire document.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" By using our website, applications, platforms and any of our associated online services (collectively, “Services”), you consent to this Privacy Policy and agree to its terms. If you do not agree with any part of this Privacy Policy, you should discontinue your use of our Services immediately."
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Establishes that continued use of the Services constitutes the user's consent to the Privacy Policy and its terms, and imposes an obligation on the user to discontinue use if they do not agree, making consent a binding condition of access.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" As part of providing and improving our Services and for other purposes as noted in this Privacy Policy, we collect both data that identifies you, directly or indirectly (“Personal Data”) and data that does not identify you and which cannot reasonably be used to identify you (“Non-Personal Data”). Specifically, we collect Personal Data and Non-Personal Data as follows: Personal Data: The Personal Data we collect may include, without limitation, your name, email address, phone number, company name, online identifiers (such as IP address) and any other information you provide directly when contacting us or engaging with our Services. Non-Personal Data: We automatically collect certain Non-Personal Data when you interact with our website, such as browser type, referring/exit pages, and the date and time of your visit. This information is gathered through cookies and similar tracking technologies. If you contact us directly, we may collect additional information, including any attachments or details you provide."
§ 2 (Information We Collect)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Defines the categories of data collected — 'Personal Data' (directly or indirectly identifying) and 'Non-Personal Data' (cannot reasonably identify a person) — and enumerates examples of Personal Data collected such as name, email, phone number, company name, and IP address, establishing the scope of the data-collection regime.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" We use the information we collect in the following ways: To operate and maintain our Services, such as maintaining your account with us and providing you technical assistance with respect to your use of the Services. To improve our Services. To personalize your experience and tailor content to your preferences. To respond to you when you contact us directly with an inquiry or other communication. To understand and analyze website usage and user behavior. To develop new products, services, and features. To send you newsletters and updates about us and our Services where you have chosen to receive such materials. To prevent fraud and maintain the security of our Services. To monitor compliance with this Privacy Policy and our Terms of Service and enforce them. To exercise or defend our legal rights and to comply with subpoenas, court orders or other legal process. To comply with laws and regulations that apply to us."
§ 3 (How We Use Your Information)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Enumerates the permitted purposes for which collected information may be used, including operating and maintaining services, improving services, personalizing experience, responding to inquiries, analyzing usage, developing new features, and sending newsletters where opted in — granting the company permission to process data for each listed purpose.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Like most website operators, we use cookies, web beacons and similar technologies to store information about visitors’ preferences and track the pages they visit on our website. Cookies help us optimise user experience by customising web content based on browser type or other information. You can choose to disable cookies through your browser settings. However, please note that disabling cookies may affect your ability to fully interact with our website and use our Services."
§ 7 (Cookies and Web Beacons)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Permits the company to use cookies, web beacons, and similar technologies to store visitor preferences and track page visits for user-experience optimization; also grants users the right to disable cookies via browser settings while noting this may limit service functionality.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" In addition to other requests described in this Privacy Policy which you may make regarding your Personal Data (as applicable), you may be entitled to exercise control over or make certain choices relating to your Personal Data depending on applicable laws and regulations and the functionalities we offer. For example, you may access, correct or delete your Personal Data via your account dashboard or by contacting us at gecko@gecko.security . You may also opt out of marketing emails we send to you by using the unsubscribe link in such emails. If you contact us to make any requests in relation to your Personal Data, we will respond to you as required by applicable law."
§ 9 (User Controls & Preferences Regarding Personal Data)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Grants users the right to access, correct, or delete their Personal Data via the account dashboard or by direct contact, and provides the ability to opt out of marketing emails via an unsubscribe link, conditioned on applicable laws and offered functionalities.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" We follow standard industry procedures in using log files. These files record visitors’ interactions with our website, capturing details such as your browser type, ISP, date and time of access, referring/exit pages, and click counts. This information is Non-Personal Data. We use this data to analyze trends, administer the website, track user movements, and gather general demographic data."
§ 10 (Log Files)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Permits the company to collect and use log-file data (browser type, ISP, access times, referring/exit pages, click counts) — classified as Non-Personal Data — for purposes of trend analysis, website administration, user-movement tracking, and demographic data gathering.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" We take the protection of your Personal Data seriously and employ industry-standard security measures, including encryption, regular penetration tests, and vulnerability assessments to protect Personal Data. While we strive to safeguard all Personal Data, no system can be 100% secure and we cannot guarantee that unauthorized access to Personal Data will never occur."
§ 13 (Security Practices)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Describes the security measures employed (encryption, penetration tests, vulnerability assessments) but disclaims any guarantee of absolute security, stating that no system is 100% secure and that unauthorized access cannot be guaranteed never to occur — limiting liability for security failures.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" We may update this Privacy Policy from time to time. Any changes will be posted on this page, and significant changes will be communicated to you through email or by a prominent notice on our website. Your continued use of our Services after such updates signifies your acceptance of the updated Privacy Policy."
§ 14 (Updates to This Privacy Policy)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Establishes the procedure for policy updates — changes posted on the page with significant changes communicated via email or prominent notice — and deems continued use of the Services after updates as acceptance of the revised policy.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" For questions about this Privacy Policy or to exercise your rights, please contact us at: Email: gecko@gecko.security Mailing Address: Gecko Security, Inc."
Privacy Policy › “Contact Information”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Provides the company's contact information (email address and mailing address) as the designated channel for privacy-related questions and the exercise of data-subject rights, constituting a procedural mechanism for rights requests.

AI-generated interpretation, not legal advice.

Indemnity & liability
High
" Our Services may include links to third party websites. Please note that such links are provided for convenience only and we do not endorse or recommend such third party websites and are not responsible for the privacy practices of third party website operators. When you access a third party’s website, you may be bound by the privacy policies and practices of that third party and we encourage you to read the privacy policies on any third party websites you visit."
§ 11 (Links to Third Party Websites)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Disclaims responsibility for the privacy practices of third-party website operators whose links appear in the Services, clarifying that such links are provided for convenience only and that users may be bound by the third party's own policies — limiting the company's liability for third-party practices.

AI-generated interpretation, not legal advice.

Audit rights / DPA / residency
High
" This section of our Privacy Policy applies if you use our Services in the European Union (EU) or United Kingdom (UK) and we act as a “controller” (as explained below). With respect to certain operational functions which are part of our Services, we act as a controller (i.e., we determine the purposes and means of processing your Personal Data). Such functions include but are not limited to administering and maintaining your account with us and responding to inquiries that you send to us. You are not obligated to provide us with your Personal Data, however, if you choose not to provide your Personal Data to us, you may not be able to use some or all of our Services. Your Personal Data is processed for the purposes described in the section of this Privacy Policy titled “How We Use Your Information” and is shared with recipients listed under the section titled “Third-Party Recipients & Subprocessors.” Where we process your Personal Data or your Personal Data is processed on our behalf, we rely on one or more of the following lawful bases: Contractual necessity: to perform our obligations under any agreement with you; Legal obligation: to comply with applicable laws and regulations; Legitimate interests: for our business operations (e.g. security, fraud prevention, service improvements), provided your rights do not override those interests; Consent: where you have explicitly agreed to certain processing (e.g. processing to communicate with you). "
§ 6 (EU/UK Data Protection)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Defines the geographic and role-based scope of this section — applying to users in the EU or UK — and establishes the company's role as 'controller' determining purposes and means of processing, with examples of covered functions; also clarifies that providing Personal Data is not obligatory but may affect service availability.

AI-generated interpretation, not legal advice.

Audit rights / DPA / residency
High
" Legal claims: where processing is necessary for the establishment, exercise or defense of legal claims. To the extent the processing of your Personal Data is based on your consent, you may withdraw your consent at any time. To withdraw your consent for the processing of your Personal Data, you may email us at gecko@gecko.security . As a data subject, you have the following rights: Right to Access: You can request access to or copies of your Personal Data. Right to Rectification: You can request corrections of inaccurate or incomplete Personal Data we maintain about you. Right to Erasure: You can request that we delete your Personal Data under certain conditions. Right to Restrict Processing: You can request that we limit the processing of your Personal Data. Right to Object: You can object to the processing of your Personal Data under certain conditions. Right to Data Portability: You can request that we transfer your Personal Data to another organisation or directly to you under certain conditions. Please note that the rights set forth above may be subject to certain limitations under applicable laws. We will notify you if we are not able to honor your request, in whole or in part, and we will otherwise respond to your request as required by applicable laws. If you wish to exercise any of the rights listed above, please contact us at gecko@gecko.security . Your Personal Data may be transferred or received by us outside the European Economic Area (EEA) or the UK. "
§ 6 (EU/UK Data Protection)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Enumerates data-subject rights available under this policy — including rights to access, rectification, and erasure — and confirms that consent-based processing may be withdrawn at any time by contacting the company, granting users enforceable rights over their Personal Data.

AI-generated interpretation, not legal advice.

Clause detail — protections, your obligations, and coverage

Every clause below is a verbatim quote from Gecko Security's own published policy, read in full and linked to its exact location. Protections and user obligations are reported separately from risk because they are different kinds of clause — an obligation on you is not a risk to your data. Informational only, not legal advice.

✅ Protections found

0 verified clauses

Clauses in Gecko Security's policies that work in your favour — commitments the platform made to you.

No protective clause has been verified in Gecko Security's published policies yet. That means we did not find one in the documents we read — not that the platform offers nothing.

📋 Rules you must follow

0 verified clauses

What Gecko Security requires of YOU. These are your obligations, not risks to your data or IP, so they are cited here and excluded from this platform's risk rating.

No user-conduct rule has been verified in Gecko Security's published policies yet.

What the policies actually cover

0 topics

None of Gecko Security's verified clauses has been assigned a topic yet. The clause-trust review has not reached this platform's findings.

Clause intelligence

Canonical clauses and stance patterns extracted from the same gate-verified citations shown on this page.

151
clauses
16
patterns
16
stances
ip license · 5legal burden · 4dispute resolution · 2privacy sharing · 2data retention · 1tier conditionality · 1
data retentionMEDIUM§ 4 (Data Retention)

The clause allows indefinite, perpetual, or necessity-based retention.

We retain Personal Data only for as long as necessary to fulfil the purposes described in this Privacy Policy. We retain the categories of data described below as follows: Account and profile data: retained for the duration of our customer relationship plus up to 2 years thereafter; Transactional and billing records: retained for at least 7 years to satisfy tax or audit requirements; Support correspondence and log...
Open source citation
dispute resolutionMEDIUMTerms of Service › “Last revised on: May 13, 2026”

The clause imposes arbitration, class-action waiver, or jury-trial waiver terms.

PLEASE BE AWARE THAT THIS AGREEMENT CONTAINS PROVISIONS GOVERNING HOW TO RESOLVE DISPUTES BETWEEN PROVIDER AND COMPANY. AMONG OTHER THINGS, SECTION 12.3 INCLUDES AN AGREEMENT TO ARBITRATE WHICH REQUIRES, WITH LIMITED EXCEPTIONS, THAT ALL DISPUTES BETWEEN CUSTOMER AND PROVIDER SHALL BE RESOLVED BY BINDING AND FINAL ARBITRATION.
Open source citation
dispute resolutionMEDIUMTerms of Service › “Arbitration.”

The clause imposes arbitration, class-action waiver, or jury-trial waiver terms.

The parties will arbitrate any dispute about this Agreement in the state or county that encompasses the Chosen Courts, in English, and agree to finally settle all such disputes according to the Rules of the Judicial Arbitration and Mediation Service ("JAMS"). To the extent the JAMS streamlined rules are available, they will apply. The arbitral decision may be enforced in any court. To the extent a claim cannot leg...
Open source citation
ip licenseHIGHTerms of Service › “Service Data.”

The clause includes sublicensable, transferable, or assignable rights.

Customer hereby grants Provider a perpetual, irrevocable, worldwide, royalty-free, sublicensable, transferable license to use, for any commercial purpose, freely and without any restriction or obligation, Service Data.
Open source citation
ip licenseHIGHTerms of Service › “Service Data.”

The clause includes sublicensable, transferable, or assignable rights.

Customer hereby grants Provider a perpetual, irrevocable, worldwide, royalty-free, sublicensable, transferable license to use, for any commercial purpose, freely and without any restriction or obligation, Service Data.
Open source citation

Tier matrix

Plan-level conditions detected from citation-backed clauses. Empty tiers mean AIRIN has not captured decisive tier language yet.

TierSurfaceVerdictRiskCitations
All applicable tierscommercial useworsensHIGH1
All applicable tiersgoverning law disputesconditionalMEDIUM2
All applicable tiersindemnity liabilityconditionalMEDIUM3
All applicable tiersprivacy data useconditionalMEDIUM1
All applicable tierstraining useworsensHIGH1
Freecommercial useworsensHIGH2
Freeindemnity liabilityconditionalMEDIUM1
Freetraining useworsensHIGH2
Governmentsubprocessors data sharingconditionalMEDIUM1
Pro / Paiddata retentionconditionalMEDIUM1
Pro / Paidtier differencesconditionalMEDIUM1

Policy evolution

Open full timeline

Before/after stance changes across captured policy versions. When no material delta exists yet, AIRIN shows the latest citation-backed stance events instead.

Aug 21, 2026content licenseHIGH

Latest stance: sublicensable or transferable on commercial use

Customer hereby grants Provider a perpetual, irrevocable, worldwide, royalty-free, sublicensable, transferable license to use, for any commercial purpose, freely and without any restriction or obligation, Service Data.
Open timeline citation
Aug 21, 2026content licenseMEDIUM

Latest stance: broad license on commercial use

Customer hereby grants Provider a perpetual, irrevocable, worldwide, royalty-free, sublicensable, transferable license to use, for any commercial purpose, freely and without any restriction or obligation, Service Data.
Open timeline citation
Aug 18, 2026content licenseMEDIUM

Latest stance: broad license on training use

Customer hereby grants Provider a perpetual, irrevocable, worldwide, royalty-free, sublicensable, transferable license to use, for any commercial purpose, freely and without any restriction or obligation, Service Data.
Open timeline citation
Aug 18, 2026content licenseHIGH

Latest stance: sublicensable or transferable on commercial use

Except as expressly permitted by this Agreement, Customer will not (and will not allow anyone else to): (i) reverse engineer, decompile, or attempt to discover any source code or underlying ideas or algorithms of the Product (except to the extent Applicable Laws prohibit this restriction); (ii) provide, sell, transfer, sublicense, lend, distribute, rent, or otherwise allow others to access or use the Product; (iii) remove any proprietary notices or labels; (iv) copy, modify, or create derivative works of the Product; (v) conduct security or vulnerability tests on, interfere with the operation of, cause performance degradation of, or circumvent access restrictions of the Product; (vi) access accounts, information, data, or portions of the Product to which Customer does not have explicit authorization; (vii) use the Product to develop a competing service or product; (viii) use the Product with any High Risk Activities or with any activity prohibited by Applicable Laws; (ix) use the Product to obtain unauthorized access to anyone else's networks or equipment; or (x) upload, submit, or otherwise make available to the Product any Customer Content to which Customer and Users do not have the proper rights.
Open timeline citation
Aug 18, 2026data sharingMEDIUM

Latest stance: third party or vendor sharing on privacy data use

Customer will not (and will not allow anyone else to) submit Prohibited Data to the Product or through the Cloud Services unless authorized expressly in writing by Provider. In any case, prior to providing any Prohibited Data or Personal Data to Provider, Customer hereby covenants to provide privacy notices to and obtain informed consents from all applicable third parties.
Open timeline citation
Aug 18, 2026dispute termsMEDIUM

Latest stance: arbitration or waiver on governing law disputes

PLEASE BE AWARE THAT THIS AGREEMENT CONTAINS PROVISIONS GOVERNING HOW TO RESOLVE DISPUTES BETWEEN PROVIDER AND COMPANY. AMONG OTHER THINGS, SECTION 12.3 INCLUDES AN AGREEMENT TO ARBITRATE WHICH REQUIRES, WITH LIMITED EXCEPTIONS, THAT ALL DISPUTES BETWEEN CUSTOMER AND PROVIDER SHALL BE RESOLVED BY BINDING AND FINAL ARBITRATION.
Open timeline citation
Aug 18, 2026dispute termsMEDIUM

Latest stance: arbitration or waiver on governing law disputes

The parties will arbitrate any dispute about this Agreement in the state or county that encompasses the Chosen Courts, in English, and agree to finally settle all such disputes according to the Rules of the Judicial Arbitration and Mediation Service ("JAMS"). To the extent the JAMS streamlined rules are available, they will apply. The arbitral decision may be enforced in any court. To the extent a claim cannot legally be arbitrated (as determined by an arbitrator), the parties will bring the suit, action, or proceeding that cannot be arbitrated in the Chosen Courts and each party irrevocably submits to the exclusive jurisdiction of the Chosen Courts. "Chosen Courts" means New Castle County, Delaware. Delaware law shall govern any disputes.
Open timeline citation
Aug 18, 2026legal burdenMEDIUM

Latest stance: liability limited on indemnity liability

If Provider breaches the warranty in Section 6.3 (Representations & Warranties from Provider), Customer must give Provider notice (with enough detail for Provider to understand or replicate the issue) within 45 days of discovering the issue. Within 45 days of receiving sufficient details of the warranty issue, Provider will attempt to restore the general functionality of the Service. If Provider cannot resolve the issue, Customer may terminate the affected Subscription and Provider will pay to Customer a prorated refund of prepaid Fees for the remainder of the Subscription Period. Provider's restoration obligation, and Customer's termination right, are Customer's only remedies if Provider does not meet the warranty in Section 6.3 (Representations & Warranties from Provider).
Open timeline citation

Capture recency

  • Terms of Service:Last captured 2026-08-18· verified 2026-08-18verified once — not yet re-verified
  • Privacy Policy:Last captured 2026-07-20· verified 2026-07-20verified once — not yet re-verified

Dates state when our pipeline captured and verified each document — not when the vendor last changed it. Documents are re-scanned on a recurring cadence; a document verified once says so until a re-scan confirms it again.

91 findings first captured First scan: July 2026.

Claim this profile

Compare and stack are saved in your browser. Open compare · View your stack. A correction triggers an automated re-read of Gecko Security's policies — no human edits the data.

Need this for procurement or legal diligence?

Free shows today's risk. A Stack Audit gives you a citable, verbatim-sourced PDF across your whole AI stack — and flags the moment a vendor's terms change.

Every finding above is a verbatim quote from Gecko Security's own published policy, captured to an immutable snapshot and read in full through a two-gate verification pipeline. Confidence labels and any analysis are AI-generated and informational only — not legal advice.

📢 POLICY UPDATES ALERT

AIRIN Brief

Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.