Moda
Graded against 811 verified platforms, from its own policy text. Automated assessment against a published rubric — not legal advice.
No lens is bandable yet — banding requires fully verified documents with on-criteria findings. The gap is shown honestly, never estimated.
Partially verified: Privacy Policy assessed. Everything below comes only from what was read in full.
No verified risks yet
AIRIN has not published verified findings for this record yet. The page shows the gap instead of guessing.
How to read this page: Overall risk rates what Moda's own policy terms mean for your prompts, outputs, and data. The benchmark bands below grade those same verified terms relative to peers — a platform in a risky-by-default category can rate HIGH risk and still grade STRONG against its peer set. Both trace to the cited findings.
Partially verified — Privacy Policy — Verified (read in full, 0 findings). Findings below are from fully-read, verified documents only; remaining core documents are pending capture.
Terms not yet captured
AIRIN has not yet captured a gate-verified Terms of Service document for this platform.
- Privacy PolicyVerified - read in full - 0 citationsstaticLast captured 2026-09-21
Clause A states Moda acts as a processor for Customer Data, implying its use is dictated by the customer, while Clause B lists Moda's own purposes for using 'personal information' (which includes Customer Data), such as improving services and sending marketing communications.
" Moda provides an AI agent observability platform that helps teams understand and improve their production AI agents. This Privacy Policy describes how Moda (“Moda,” “we,” “us,” or “our”) handles personal information when you visit our websites, create an account, or use our products and services (collectively, the “Services”). It also explains how we handle the conversation telemetry and related data that our customers send to Moda about their own end users (“Customer Data”). For Customer Data, our customer is the controller and Moda acts as a processor; that relationship is governed by the agreement and Data Processing Addendum (“DPA”) between us and the customer. See Customer data we process for you ."
" We use personal information to: Provide, operate, secure, and maintain the Services. Authenticate users, manage accounts, and process transactions. Communicate with you about the Services, including service, security, and support messages. Improve, troubleshoot, and develop new features and products. Send marketing communications where permitted, which you can opt out of at any time. Detect, prevent, and respond to fraud, abuse, and security incidents. Comply with legal obligations and enforce our terms."
Within one documentClause A states Moda acts as a processor for Customer Data, implying its use is dictated by the customer, while Clause B lists Moda's own purposes for using 'personal information' (which includes Customer Data), such as improving services and sending marketing communications.
" Moda provides an AI agent observability platform that helps teams understand and improve their production AI agents. This Privacy Policy describes how Moda (“Moda,” “we,” “us,” or “our”) handles personal information when you visit our websites, create an account, or use our products and services (collectively, the “Services”). It also explains how we handle the conversation telemetry and related data that our customers send to Moda about their own end users (“Customer Data”). For Customer Data, our customer is the controller and Moda acts as a processor; that relationship is governed by the agreement and Data Processing Addendum (“DPA”) between us and the customer. See Customer data we process for you ."
" We use personal information to: Provide, operate, secure, and maintain the Services. Authenticate users, manage accounts, and process transactions. Communicate with you about the Services, including service, security, and support messages. Improve, troubleshoot, and develop new features and products. Send marketing communications where permitted, which you can opt out of at any time. Detect, prevent, and respond to fraud, abuse, and security incidents. Comply with legal obligations and enforce our terms."
Within one documentClause A states Moda acts as a processor for Customer Data, implying its use is dictated by the customer, while Clause B lists Moda's own purposes for using 'personal information' (which includes Customer Data), such as improving services and sending marketing communications.
" Moda provides an AI agent observability platform that helps teams understand and improve their production AI agents. This Privacy Policy describes how Moda (“Moda,” “we,” “us,” or “our”) handles personal information when you visit our websites, create an account, or use our products and services (collectively, the “Services”). It also explains how we handle the conversation telemetry and related data that our customers send to Moda about their own end users (“Customer Data”). For Customer Data, our customer is the controller and Moda acts as a processor; that relationship is governed by the agreement and Data Processing Addendum (“DPA”) between us and the customer. See Customer data we process for you ."
" We use personal information to: Provide, operate, secure, and maintain the Services. Authenticate users, manage accounts, and process transactions. Communicate with you about the Services, including service, security, and support messages. Improve, troubleshoot, and develop new features and products. Send marketing communications where permitted, which you can opt out of at any time. Detect, prevent, and respond to fraud, abuse, and security incidents. Comply with legal obligations and enforce our terms."
Within one documentClause A states Moda acts as a processor for Customer Data, implying its use is dictated by the customer, while Clause B lists Moda's own purposes for using 'personal information' (which includes Customer Data), such as improving services and sending marketing communications.
" Moda provides an AI agent observability platform that helps teams understand and improve their production AI agents. This Privacy Policy describes how Moda (“Moda,” “we,” “us,” or “our”) handles personal information when you visit our websites, create an account, or use our products and services (collectively, the “Services”). It also explains how we handle the conversation telemetry and related data that our customers send to Moda about their own end users (“Customer Data”). For Customer Data, our customer is the controller and Moda acts as a processor; that relationship is governed by the agreement and Data Processing Addendum (“DPA”) between us and the customer. See Customer data we process for you ."
" We use personal information to: Provide, operate, secure, and maintain the Services. Authenticate users, manage accounts, and process transactions. Communicate with you about the Services, including service, security, and support messages. Improve, troubleshoot, and develop new features and products. Send marketing communications where permitted, which you can opt out of at any time. Detect, prevent, and respond to fraud, abuse, and security incidents. Comply with legal obligations and enforce our terms."
Within one documentClause A states Moda acts as a processor for 'Customer Data,' meaning its use is dictated by the customer (controller), but Clause B lists general uses of 'personal information' (including marketing and product improvement) that are typical of a controller and would contradict the processor role if applied to Customer Data without explicit customer instruction.
" Moda provides an AI agent observability platform that helps teams understand and improve their production AI agents. This Privacy Policy describes how Moda (“Moda,” “we,” “us,” or “our”) handles personal information when you visit our websites, create an account, or use our products and services (collectively, the “Services”). It also explains how we handle the conversation telemetry and related data that our customers send to Moda about their own end users (“Customer Data”). For Customer Data, our customer is the controller and Moda acts as a processor; that relationship is governed by the agreement and Data Processing Addendum (“DPA”) between us and the customer. See Customer data we process for you ."
" We use personal information to: Provide, operate, secure, and maintain the Services. Authenticate users, manage accounts, and process transactions. Communicate with you about the Services, including service, security, and support messages. Improve, troubleshoot, and develop new features and products. Send marketing communications where permitted, which you can opt out of at any time. Detect, prevent, and respond to fraud, abuse, and security incidents. Comply with legal obligations and enforce our terms."
Within one documentClause A states Moda acts as a processor for 'Customer Data,' meaning its use is dictated by the customer (controller), but Clause B lists general uses of 'personal information' (including marketing and product improvement) that are typical of a controller and would contradict the processor role if applied to Customer Data without explicit customer instruction.
" Moda provides an AI agent observability platform that helps teams understand and improve their production AI agents. This Privacy Policy describes how Moda (“Moda,” “we,” “us,” or “our”) handles personal information when you visit our websites, create an account, or use our products and services (collectively, the “Services”). It also explains how we handle the conversation telemetry and related data that our customers send to Moda about their own end users (“Customer Data”). For Customer Data, our customer is the controller and Moda acts as a processor; that relationship is governed by the agreement and Data Processing Addendum (“DPA”) between us and the customer. See Customer data we process for you ."
" We use personal information to: Provide, operate, secure, and maintain the Services. Authenticate users, manage accounts, and process transactions. Communicate with you about the Services, including service, security, and support messages. Improve, troubleshoot, and develop new features and products. Send marketing communications where permitted, which you can opt out of at any time. Detect, prevent, and respond to fraud, abuse, and security incidents. Comply with legal obligations and enforce our terms."
Within one document
Clause intelligence
Canonical clauses and stance patterns extracted from the same gate-verified citations shown on this page.
The clause allows indefinite, perpetual, or necessity-based retention.
“We retain personal information and Customer Data only for as long as necessary to fulfill the purposes for which it was collected, to provide the Services, and to comply with our legal, accounting, and reporting obligations. When determining retention periods we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we proces...”Open source citation
The clause allows indefinite, perpetual, or necessity-based retention.
“We retain personal information and Customer Data only for as long as necessary to fulfill the purposes for which it was collected, to provide the Services, and to comply with our legal, accounting, and reporting obligations. When determining retention periods we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we proces...”Open source citation
The clause allows indefinite, perpetual, or necessity-based retention.
“We retain personal information and Customer Data only for as long as necessary to fulfill the purposes for which it was collected, to provide the Services, and to comply with our legal, accounting, and reporting obligations. When determining retention periods we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we proces...”Open source citation
The clause provides a deletion or time-bounded retention path.
“We retain personal information and Customer Data only for as long as necessary to fulfill the purposes for which it was collected, to provide the Services, and to comply with our legal, accounting, and reporting obligations. When determining retention periods we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we proces...”Open source citation
The clause provides a deletion or time-bounded retention path.
“You can request deletion of your personal information, and customers can request deletion of their tenant’s Customer Data, at any time: Email privacy@modaflows.com with the subject line “Data Deletion Request.” Tell us whether you are requesting deletion of (a) your personal/account information, or (b) a customer tenant’s ingested Customer Data, and include the account or organization name so we can locate the dat...”Open source citation
Tier matrix
Plan-level conditions detected from citation-backed clauses. Empty tiers mean AIRIN has not captured decisive tier language yet.
| Tier | Surface | Verdict | Risk | Citations |
|---|---|---|---|---|
| All applicable tiers | data retention | conditional | MEDIUM | 9 |
| All applicable tiers | privacy data use | conditional | MEDIUM | 3 |
| All applicable tiers | training use | worsens | HIGH | 6 |
| Government | privacy data use | worsens | HIGH | 6 |
Policy evolution
Open full timelineBefore/after stance changes across captured policy versions. When no material delta exists yet, AIRIN shows the latest citation-backed stance events instead.
Latest stance: third party or vendor sharing on privacy data use
“We collect personal information that you provide to us directly, information collected automatically when you use the Services, and information we receive from third parties. Information you provide may include your name, work email address, company, role, account credentials, billing and payment details, and the contents of messages you send us (for example, support requests, demo requests, or survey responses). Information collected automatically may include device and browser information, IP address, pages viewed, referring URLs, and similar usage data gathered through cookies and comparable technologies, including via product analytics. Information from third parties may include data from our analytics, infrastructure, identity, and payment providers, and from publicly available sources.”Open timeline citation
Latest stance: sale or sell on training use
“When a customer integrates Moda, their applications send us conversation telemetry from their AI agents. This Customer Data may include message content and metadata that the customer chooses to transmit. Moda processes Customer Data solely to provide the Services to that customer — for example, to ingest, store, analyze, segment, cluster, and surface insights from the conversations. Customer Data is logically isolated per tenant and is processed under the instructions of the customer. Customers decide what data they send to Moda and are responsible for ensuring they have the necessary rights and notices to do so. We do not sell Customer Data, and we do not use Customer Data to build or train models for other customers except as permitted by the customer agreement. If you are an end user of a Moda customer and want to exercise privacy rights over your data, please contact that customer directly, as they control how their data is collected and used. We will support our customers in responding to such requests as required by our DPA.”Open timeline citation
Latest stance: sale or sell on privacy data use
“We may share personal information with: Service providers who process data on our behalf — such as cloud hosting, infrastructure, analytics, payment, and communications vendors — under contractual confidentiality and security obligations. Professional advisors such as auditors, lawyers, and accountants. Authorities and others where required to comply with law, legal process, or a lawful government request, or to protect the rights, safety, and security of Moda, our users, or the public. In a business transaction such as a merger, financing, acquisition, or sale of assets, subject to this policy. We do not sell personal information and do not share it for cross-context behavioral advertising.”Open timeline citation
Latest stance: third party or vendor sharing on privacy data use
“We may share personal information with: Service providers who process data on our behalf — such as cloud hosting, infrastructure, analytics, payment, and communications vendors — under contractual confidentiality and security obligations. Professional advisors such as auditors, lawyers, and accountants. Authorities and others where required to comply with law, legal process, or a lawful government request, or to protect the rights, safety, and security of Moda, our users, or the public. In a business transaction such as a merger, financing, acquisition, or sale of assets, subject to this policy. We do not sell personal information and do not share it for cross-context behavioral advertising.”Open timeline citation
Latest stance: no training claim on training use
“When a customer integrates Moda, their applications send us conversation telemetry from their AI agents. This Customer Data may include message content and metadata that the customer chooses to transmit. Moda processes Customer Data solely to provide the Services to that customer — for example, to ingest, store, analyze, segment, cluster, and surface insights from the conversations. Customer Data is logically isolated per tenant and is processed under the instructions of the customer. Customers decide what data they send to Moda and are responsible for ensuring they have the necessary rights and notices to do so. We do not sell Customer Data, and we do not use Customer Data to build or train models for other customers except as permitted by the customer agreement. If you are an end user of a Moda customer and want to exercise privacy rights over your data, please contact that customer directly, as they control how their data is collected and used. We will support our customers in responding to such requests as required by our DPA.”Open timeline citation
Latest stance: indefinite or necessity based on data retention
“We retain personal information and Customer Data only for as long as necessary to fulfill the purposes for which it was collected, to provide the Services, and to comply with our legal, accounting, and reporting obligations. When determining retention periods we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we process it, and applicable legal requirements. When data is no longer needed, or when you or a customer make a valid deletion request, we delete or de-identify it. For Customer Data , when a customer submits a valid deletion request, or upon termination of their agreement, we delete the customer’s ingested conversation telemetry and the analytics derived from it (such as embeddings, segments, summaries, and clusters) from our production systems within 30 days , unless we are required to retain it to comply with a legal obligation. Residual copies in encrypted, rolling backups are purged on their normal expiration cycle. See How to request data deletion for the procedure.”Open timeline citation
Latest stance: deletion or time bound on data retention
“We retain personal information and Customer Data only for as long as necessary to fulfill the purposes for which it was collected, to provide the Services, and to comply with our legal, accounting, and reporting obligations. When determining retention periods we consider the amount, nature, and sensitivity of the data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we process it, and applicable legal requirements. When data is no longer needed, or when you or a customer make a valid deletion request, we delete or de-identify it. For Customer Data , when a customer submits a valid deletion request, or upon termination of their agreement, we delete the customer’s ingested conversation telemetry and the analytics derived from it (such as embeddings, segments, summaries, and clusters) from our production systems within 30 days , unless we are required to retain it to comply with a legal obligation. Residual copies in encrypted, rolling backups are purged on their normal expiration cycle. See How to request data deletion for the procedure.”Open timeline citation
Latest stance: deletion or time bound on data retention
“You can request deletion of your personal information, and customers can request deletion of their tenant’s Customer Data, at any time: Email privacy@modaflows.com with the subject line “Data Deletion Request.” Tell us whether you are requesting deletion of (a) your personal/account information, or (b) a customer tenant’s ingested Customer Data, and include the account or organization name so we can locate the data. We will acknowledge your request, verify your identity and authority to make it, and confirm in writing once the data has been deleted. We complete verified Customer Data deletion requests within 30 days , in line with the SLA in the applicable customer agreement and DPA. If we cannot fully delete certain data because we are legally required to retain it, we will explain why and for how long.”Open timeline citation
Capture recency
- Privacy Policy:Last captured 2026-09-21· verified 2026-09-21
Dates state when our pipeline captured and verified each document — not when the vendor last changed it. Documents are re-scanned on a recurring cadence; a document verified once says so until a re-scan confirms it again.
39 findings first captured First scan: July 2026.
Compare and stack are saved in your browser. Open compare · View your stack. A correction triggers an automated re-read of Moda's policies — no human edits the data.
Need this for procurement or legal diligence?
Free shows today's risk. A Stack Audit gives you a citable, verbatim-sourced PDF across your whole AI stack — and flags the moment a vendor's terms change.
Know where the missing document lives?
We haven't yet verified Moda's Terms of Service. Point us at the official page and our pipeline will attempt to capture and read it in full. Submissions are candidates only — nothing is published until it passes the same verification gates as every other document on this site.
Every finding above is a verbatim quote from Moda's own published policy, captured to an immutable snapshot and read in full through a two-gate verification pipeline. Confidence labels and any analysis are AI-generated and informational only — not legal advice.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.