Read AI procurement policy evidence
Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.
| Topic | Plan or tier | Risk | Their words | Source |
|---|---|---|---|---|
| DPA, audit rights & data residency | All applicable tiers | medium | “ You may provide certain information to Read in connection with your access or use of our Services, or we may otherwise collect certain information about you when you access or use our Services. You agree to receive emails, SMS or text messages, and other types of communication from Read via the Services using the email address or other contact information you provide in connection with the Services. You represent and warrant that any information that you provide to Read in connection with the Services is accurate. If you have any questions about these Terms or our Services, please contact us at privacy@read.ai . For information about how we collect, use, disclose, and otherwise process information about you, please see our Privacy Policy . To the extent you are an entity or enterprise using our Services, the terms of our Data Processing Addendum will apply. In order for us to provide our Services, you agree that we may process, transfer, and store information about you in the United States and other countries, where you may not have the same rights and protections as you do under local law. ” | Captured 2026-06-08Open source →Finding permalink → |
| DPA, audit rights & data residency | All applicable tiers | low | “ Read AI is based in the United States, and we and our service providers process and store personal information on servers located in the United States and other countries. Whenever we make restricted international transfers of personal information, we take steps to ensure that your personal information receives an adequate level of protection (by putting in place appropriate safeguards, such as contractual clauses) or ensure that we can rely on an appropriate derogation under data protection laws. Where relevant, you may request access to any safeguard which we use to transfer your personal information outside of the European Economic Area, the United Kingdom, or Switzerland (although we may need to redact data transfer agreements for confidentiality reasons). For personal information about EEA, Swiss, and UK individuals, Read AI complies with the EU-U.S. and Swiss-U.S. Data Privacy Frameworks and the UK Extension to the EU-U.S. Data Privacy Framework (collectively, the “ Frameworks ”), each as set forth by the U.S. Department of Commerce. As described in our Frameworks certification, Read AI has certified that it adheres to the Frameworks Principles with regard to the processing of personal information received from the EEA, Switzerland, and the UK in reliance on the Frameworks. In accordance with the Frameworks, we remain responsible under the Onward Transfer Principle for personal information that we disclose to third parties for processing on our behalf. ” | Captured 2026-06-08Open source →Finding permalink → |
| DPA, audit rights & data residency | All applicable tiers | medium | “ Your personal information may be stored, accessed, used and otherwise processed inside and outside of Quebec and/or Canada. When personal information is located outside Quebec and/or Canada, it may be subject to laws that have different standards of protection and may allow for foreign law enforcement and governmental access.” | Captured 2026-06-08Open source →Finding permalink → |
| DPA, audit rights & data residency | All applicable tiers | low | “To learn more about the Frameworks or to view our certification, please visit the Frameworks website . The Federal Trade Commission has jurisdiction over Read AI’s compliance with the Frameworks. Read AI commits to resolve Frameworks Principles-related inquiries and complaints about our processing of personal data under the Frameworks, and EEA, Swiss, and UK individuals with such inquiries or complaints can contact us at: privacy@read.ai . In compliance with the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF, Read AI commits to cooperate and comply respectively with the advice of the panel established by the EU data protection authorities (DPAs), the UK Information Commissioner’s Office (ICO), and the Swiss Federal Data Protection and Information Commissioner (FDPIC) with regard to unresolved complaints concerning our handling of personal data received in reliance on the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF. If your DPF complaint cannot be resolved through the above channels, under certain conditions, you may invoke binding arbitration for some residual claims not resolved by other redress mechanisms with respect to personal data received or transferred pursuant to the Data Privacy Framework. ” | Captured 2026-06-08Open source →Finding permalink → |
| Data retention | All applicable tiers | medium | “ We store information we collect for as long as necessary to carry out the purposes for which we originally collected it and for other legitimate business purposes, including to meet our legal, regulatory, or other compliance obligations. We store your audio and video information, including information derived therefrom, in accordance with our internal policies, but in no case for longer than 2 years. For paid accounts, we will store your data until you (i) stop paying, or (ii) request that we delete some or all of your data.” | Captured 2026-06-08Open source →Finding permalink → |
| Data retention | All applicable tiers | medium | “ You may update and correct certain account information at any time by logging into your account or emailing us at privacy@read.ai. If you wish to delete your account, review the “ How to Delete My Account” instruction or email us at privacy@read.ai with your account information, but note that we may retain certain information as required by law or for our legitimate business purposes.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ In certain circumstances, we disclose (or permit others to directly collect) information about you. We disclose personal information as otherwise described in this Privacy Policy and in the following ways: Read Users. We disclose information with other users, including sharing real-time reporting and analytics with other meeting participants, as well as additional reporting after the meeting. Vendors and Service Providers. We make personal information available to our vendors, service providers, and consultants who perform services on our behalf, such as companies that assist us with web hosting, data storage, data analytics, payment processing, fraud prevention, customer service, AI tools, and marketing and advertising. We may also allow users within an organization to access user data. For Marketing Purposes. If you provide a review, testimonial, or feedback about our Services, or post content in another public area of our Services, the public/other users of our Services may be able to see this information, or we may share this information publicly. Law Enforcement Authorities and Individuals Involved in Legal Proceedings. We may disclose information in response to a request for information if we believe that disclosure is in accordance with, or required by, any applicable law, regulation, or legal process, including lawful requests by public authorities to meet national security or law enforcement requirements. ” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ To Protect the Rights of Read and Others. We may disclose information if we believe that your actions are inconsistent with our user agreements or policies, if we believe that you have violated the law, or if we believe it is necessary to protect the rights, property, and safety of Read, our users, the public, or others. Professional Advisors. We disclose personal information to our legal, financial, insurance, and other professional advisors where necessary to obtain advice or otherwise protect and manage our business interests. Corporate Transactions. We may disclose personal information in connection with, or during negotiations of certain corporate transactions, including, any merger, sale of company assets, financing, or acquisition of all or a portion of our business by another company. Consent. We make your personal information available to third parties when we have your consent or you intentionally direct us to do so. Aggregated Data. We may disclose aggregated or de-identified information that cannot reasonably be used to identify you. We will not attempt to re-identify such information, except as permitted by law. ” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ For more information about interest-based ads, or to opt out of having your web browsing information used for behavioral advertising purposes by companies that participate in the Digital Advertising Alliance, by visiting www.aboutads.info/choices . For individuals that reside in the European Union, visit http://www.youronlinechoices.eu/ . You may also change your settings using the consent management tool (“Cookie Settings”) on our Services. Your device may also include a feature that allows you to opt out of having certain information collected through mobile apps used for behavioral advertising purposes. In addition to cookie-based ad targeting, we may disclose your identifiers, such as your email address(es) and phone number(s), to some of our advertising partners. These advertising partners translate that information into a unique identifier that can then be used to show ads that are more relevant to you across the web and in mobile apps. Depending on where you reside, you may opt out of these disclosures by filling out our web form. Please note, we do not share Meeting Information for the purposes of targeted advertising unless you provide your consent. ” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ Our Privacy Policy explains how we collect, use, and disclose information about you, as well as our targeted advertising and analytics practices. Below, we use a table to explain this same information in accordance with the State Privacy Laws. The table describes our data practices now and over the past twelve months. Collection, Use, and Disclosure of Personal Information for Business Purposes ” | Captured 2026-06-08Open source →Finding permalink → |
Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.