Jasper Brand Voice procurement policy evidence
Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.
| Topic | Plan or tier | Risk | Their words | Source |
|---|---|---|---|---|
| DPA, audit rights & data residency | All applicable tiers | low | “ Customers may receive copies of Jasper’s SOC2 report, as well as all other available documentation from our Compliance Portal at security.jasper.ai ” | Captured 2026-06-08Open source →Finding permalink → |
| DPA, audit rights & data residency | All applicable tiers | low | “ Jasper’s Security team, led by our Director of Security, is responsible for implementing and managing our security program. The focus of Jasper’s security program is to prevent unauthorized access, use, and disclosure of customer data. Our security program is aligned with AICPA Trust Services Principles and is constantly evolving in accordance with industry best practices.” | Captured 2026-06-08Open source →Finding permalink → |
| DPA, audit rights & data residency | All applicable tiers | low | “ Jasper engages an independent third party to conduct annual network and application penetration tests. Identified findings are tracked to resolution, and results reports are shared with executive management.” | Captured 2026-06-08Open source →Finding permalink → |
| DPA, audit rights & data residency | All applicable tiers | low | “ When provisioning access, IT adheres to the principles of least privilege and role-based access control, meaning that employees are only authorized the access and permissions required to fulfill their job responsibilities. User access reviews, including production access, are performed semi-annually. Access to the production infrastructure and supporting systems requires MFA. Employee access is revoked within two business days of an employee’s termination. In the event of involuntary termination, access is revoked immediately.” | Captured 2026-06-08Open source →Finding permalink → |
| Data retention | All applicable tiers | medium | “ Jasper retains customer data for the duration of the agreement. Following termination, data is retained in accordance with Jasper’s Data Retention Policy, unless Jasper receives a written data deletion request. Jasper’s hosting provider, GCP, is responsible for ensuring the proper sanitization of disks and physical media. Jasper sanitizes employee laptops prior to reuse or disposal.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ f. Payment Information; Taxes. We accept various payment methods through Stripe, including, without limitation, Mastercard, Visa, and American Express. By using the Services, you agree to be bound by Stripe’s Services Agreement available at https://stripe.com/us/legal . All information that you provide in connection with a purchase or transaction or other monetary transaction interaction with the Services must be accurate, complete, and current. You agree to pay all charges incurred by users of your credit card, debit card, or other payment method used in connection with a purchase or transaction or other monetary transaction interaction with the Services at the prices in effect when such charges are incurred. You will pay any applicable taxes, if any, relating to any such purchases, transactions or other monetary transaction interactions. ” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “ Jasper partners with third parties to provide key services. Third parties that handle customer personal data, also known as sub-processors, are continuously monitored in order to ensure that their security programs continue to meet Jasper’s standards. Jasper reassesses its subprocessors annually, which includes a review of their independent audit reports and penetration test reports. For the full list of Jasper’s subprocessors, please see jasper.ai/legal/sub-processors. ” | Captured 2026-06-08Open source →Finding permalink → |
| Tier differences | All applicable tiers | low | “ ² This Agreement applies to customers on our Business plan that do not have an MSA.” | Captured 2026-06-08Open source →Finding permalink → |
| Tier differences | All applicable tiers | low | “ ¹ These Terms apply to customers on our Creator and Pro plans.” | Captured 2026-06-08Open source →Finding permalink → |
| Tier differences | All applicable tiers | low | “ ³ This Agreement applies to customers on an evaluation trial of our Business plan.” | Captured 2026-06-08Open source →Finding permalink → |
Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.