Semgrep AI procurement policy evidence
Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.
| Topic | Plan or tier | Risk | Their words | Source |
|---|---|---|---|---|
| DPA, audit rights & data residency | All applicable tiers | low | “ Security & Data Processing. Company maintains the physical, technical, and administrative safeguards (“ Security Measures ”) described at https://trust.semgrep.dev (the “ Trust Portal ”) in order to protect Customer Data and to assist Customer with securing its own account in its use of the Service. Updates to the Security Measures will be posted to the Trust Portal from time to time, and subscribed Customers will be notified via email. Semgrep will process Customer Data for the purposes set forth in this Agreement and in accordance with the Data Processing Addendum available on the Trust Portal.” | Captured 2026-06-08Open source →Finding permalink → |
Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.