Sourcery procurement policy evidence
Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.
| Topic | Plan or tier | Risk | Their words | Source |
|---|---|---|---|---|
| Data retention | All applicable tiers | low | “ All the information we collect on the product usage is stored in Mixpanel and you can request that we delete it at any point by emailing us at info@sourcery.ai ” | Captured 2026-06-08Open source →Finding permalink → |
| Data retention | All applicable tiers | medium | “ Sourcery uses third-party vendors and hosting partners to provide the necessary hardware, software, networking, storage, and related technology required to run the Service. You understand that although you retain full rights to your data, it may be stored on third-party storage and transmitted through third-party networks. We take careful technical measures to ensure that your information is secure and inaccessible to unauthorized parties. We also continuously work on new features to improve security. We retain personal data for as long as necessary for the purpose for which the personal data was collected, or for such longer period required by law or otherwise necessary to defend or exercise our legal rights. At the end of this period (or expiry of our backup archive retention period if later), we will either delete or anonymise the personal data.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “ Sourcery uses services from auth0, GitHub, and Google to allow users to create and log into accounts. No additional information is shared with these service providers outside of the information required to create and log into an account.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ The Sourcery Coding Assistant is our AI powered pair programmer which looks to assist you with tasks such as code reviews, troubleshooting code problems, generating docstrings or test, explaining code, etc. The Sourcery Coding Assistant uses third party Large Language Models to provide its functionality and requires us to be able to send messages and code context to those models to function. We collect message data (but not your code) to allow us to improve the quality of our responses.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ For the Sourcery Coding Assistant code sections and messages are sent to third-party Large Language Model (LLM) providers (such as OpenAI, Anthropic,” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “ Sourcery uses analytics services from Google Analytics. All information sent to Google Analytics is anonymized.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “ We do not share the information with any external third parties, except as detailed in this document.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “third-party LLM providers (such as OpenAI, Anthropic, etc.). You have the option to request to use models that have a zero retention policy in place.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “ For GitHub Cloud, GitLab Cloud, & GitLab self hosted Code Review our analyis is conducted on our servers and using third-party Large Language Model (LLM) providers (such as OpenAI, Anthropic, etc) using their APIs. This data passes through our servers but we do not store any of your code. All LLM providers we work with do not use any of your code or messages to train their models and do not store any of your data for more than 30 days. Zero retention options are available as needed (provided via Anthropic). These require a Sourcery Pro license and can be requested by contacting teams@sourcery.ai .” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “etc) using their APIs. This data passes through our servers but we do not” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ We will only collect information surrounding usage and errors and messages you send to the Coding Assistant but will not collect content of your code. We collect the messages you send to the Coding Assistant to help us improve the quality of responses we can provide you with. You can opt out of us collecting this information by disabling telemetry in your IDE, however, in order to use the Coding Assistant you must opt into this information being sent to third party Large Language Model providers. Full details are available in our Privacy Policy.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ You acknowledge and agree that we have the right to disclose information your provide, if required to do so by law at the request of a third party, or if we, in our sole discretion, believe that such disclosure is: 1) reasonable to comply with the law, request or orders from law enforcement, or any legal process (whether or not such disclosure is required by applicable law); 2) protect or defend our, or a third party’s, rights or property; or 3) protect someone’s health or safety” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | medium | “ Sourcery Code Review is our GitHub and GitLab integration to provide automatic code review on every pull request or merge request you make. Sourcery Code Review uses third party Large Language Models to provide its functionality and requires us to be able to send messages and code context to those models to function.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “ Anonymised error reports provided by the third-party Sentry.io error reporting service, which is fully GDPR and EU-US Privacy Shield compliant.” | Captured 2026-06-08Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | low | “ Sourcery uses payment services from Stripe to process payments for Sourcery Pro and Team services. No additional information is shared with Stripe outside of the information required to create and manage invoices, payments, and subscriptions.” | Captured 2026-06-08Open source →Finding permalink → |
Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.