Lingo.dev procurement policy evidence
Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.
| Topic | Plan or tier | Risk | Their words | Source |
|---|---|---|---|---|
| DPA, audit rights & data residency | All applicable tiers | unknown | “ We ensure appropriate safeguards for international data transfers through:” | Captured 2026-07-20Open source →Finding permalink → |
| Data retention | All applicable tiers | unknown | “ Translation data: 30 days by default, or as specified in your service agreement” | Captured 2026-07-20Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | unknown | “ Our primary database is hosted in the European Union (Frankfurt) via Supabase. Application logic runs on Cloudflare's global edge network. Translation content is processed by third-party AI model providers, which may process data outside the EU (see Section 5.1).” | Captured 2026-07-20Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | unknown | “ A current list of sub-processors is maintained in our Data Processing Agreement and at https://lingo.dev/security. Key sub-processors include providers for cloud infrastructure, database hosting, AI model processing, analytics, email delivery, and billing.” | Captured 2026-07-20Open source →Finding permalink → |
Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.