Data retention policy
Metaplane retains customer data in accordance with our Data Deletion Policy, our Data Processing Agreement, and any customer agreements in place. By default, a customer’s data is stored for the duration of their contract with Metaplane. Users may request that their data is deleted at any time.
Contact us for our SOC II Report which contains more information on our policies and the opinion issued by our auditors.
Data archiving and removal policy
Metaplane removes customer data in accordance with our Data Deletion Policy, our Data Processing Agreement, and any customer agreements in place. Customer data is deleted one month after the contract ends, at the latest, with the exception of data that is required to establish proof of a right or a contract, which will be stored for the duration provided by enforceable law. Once deleted, a user’s data cannot be restored.
Contact us for our SOC II Report which contains more information on our policies and the opinion issued by our auditors.
Data storage policy
Metaplane stores customer data in accordance with our Data Classification and Data Protection policies which ensure that confidential data is properly secured and restricted to authorized personnel.
In accordance with our Cryptography Policy, we rely on standardized non-proprietary encryption algorithms to encrypt data in transit (TLS v1.2+) and at rest (AES). In accordance with our Backup Policy, Metaplane configures full, daily database backups for all data stored for us by our cloud services provider (AWS).
In accordance with our Vendor Management Policy, vendors that store customer data deemed high risk undergo annual assessments and are required to provide a SOC 2 Type II report and data processing agreements.
Contact us for our SOC II Report which contains more information on our policies and the opinion issued by our auditors.
App/service has sub-processors
yes
Guidelines for sub-processors