Trope procurement policy evidence
Only topics backed by verified findings appear below. Each row preserves the platform's exact policy words and capture provenance.
| Topic | Plan or tier | Risk | Their words | Source |
|---|---|---|---|---|
| DPA, audit rights & data residency | All applicable tiers | unknown | “ We may disclose personal information to the following individuals or entities and as otherwise described in this Privacy Policy or at the time of collection: Service providers. Companies and individuals that provide services on our behalf or help us operate the Services or our business, such as hosting, infrastructure, information technology, customer support, email delivery, analytics, identity, and security services. Where we engage service providers to process personal information on our behalf, we expect them to do so only for authorized purposes and subject to contractual and security obligations. Professional advisors. Professional advisors, such as lawyers, auditors, bankers, and insurers, where necessary in the course of the professional services that they render to us. Authorities and others. Law enforcement, government authorities, and private parties, as we believe in good faith to be necessary or appropriate for the compliance and protection purposes described above. Business transferees. Acquirers and other relevant participants in business transactions (or negotiations for such transactions) involving a corporate divestiture, merger, consolidation, acquisition, reorganization, sale or other disposition of all or any portion of the business or assets of, or equity interests in, our business (including, in connection with a bankruptcy or similar proceedings).” | Captured 2026-09-25Open source →Finding permalink → |
| Data retention | All applicable tiers | unknown | “ We use administrative, technical, and organizational safeguards designed to protect personal information against unauthorized access, misuse, loss, disclosure, alteration, and destruction. Our safeguards may include authentication, role-based or scoped access controls, encryption in transit and at rest where appropriate, logging, monitoring, and operational processes designed to support incident response, recovery, and legal compliance. If we become aware of a security incident involving personal information, we will assess and respond in accordance with applicable law and our contractual obligations. No security measure is perfect, and we cannot guarantee that unauthorized access, disclosure, or misuse will never occur. We regularly evaluate and update our safeguards based on the sensitivity of the information involved, the nature of the Services, and applicable legal and contractual requirements.” | Captured 2026-09-25Open source →Finding permalink → |
| Subprocessors & data sharing | All applicable tiers | unknown | “ The Services may interoperate with third-party products, websites, hosting providers, identity providers, and other dependencies. Trope does not control third-party services and is not responsible for their acts, omissions, availability, or security practices. Your use of third-party services is governed by the terms and policies of those services.” | Captured 2026-09-25Open source →Finding permalink → |
| Tier differences | All applicable tiers | medium | “ Some features may require payment. If you purchase a paid plan, you agree to the pricing, billing terms, and plan limits presented at the time of purchase or in an applicable order form. Unless otherwise stated, fees are non-refundable except where required by law or expressly agreed by Trope in writing.” | Captured 2026-09-25Open source →Finding permalink → |
Informational only, not legal advice. Terms can change; verify every cited source and capture date during procurement review.
AIRIN Brief
Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.