Legal Archive
Last updated: 9 August 2026
This page documents all versions of our contractual and legal documents with date and key changes. The current version of each document is linked; older versions are available on request from [email protected] as PDF.
| Version | Date | Changes |
|---|
| 2.3 (current) | 9 August 2026 | Service Description and Service Level Agreement incorporated; liability restated with a quantified cap; late payment, cost limits, Beta and Free plan rules, AI Act roles, quarterly data export, five-year confidentiality, set-off and sanctions clauses added. |
| 2.2 | 3 August 2026 | Complete revision with AI-specific clauses (limits of AI-supported services, model provider changes, permitted use, oversight of autonomous execution). |
| Version | Date | Changes |
|---|
| 2.7 (current) | 2 September 2026 | Place of processing of the DeepSeek models on Microsoft Foundry specified: storage in the EU, processing in the EU and the USA (Standard Contractual Clauses, EU-US Data Privacy Framework). |
| 2.5 | 2 September 2026 | DeepSeek removed as a direct model provider; DeepSeek models now run via Microsoft Foundry in the EU (training excluded, data processing agreement); section on connected Google services with Limited Use statement added. |
| 2.4 | 9 August 2026 | External development contractors: plural independent individuals, places of processing extended by Pakistan and India (sub-processor annex). |
| 2.3 | 3 August 2026 | Complete revision; sub-processor list unified with the Data Processing Agreement (single shared source). |
| Version | Date | Changes |
|---|
| 2.6 (current) | 2 September 2026 | Annex 1: place of processing of the DeepSeek models on Microsoft Foundry specified: storage in the EU, processing in the EU and the USA (Standard Contractual Clauses, EU-US Data Privacy Framework). |
| 2.5 | 2 September 2026 | Annex 1: DeepSeek removed as a direct provider, Microsoft Foundry (EU) added for DeepSeek models; currently no provider without a data processing agreement. |
| 2.4 | 9 August 2026 | Annex 2 restructured along the Art. 32 GDPR categories and extended (incl. two-factor authentication, encrypted backups, recovery targets); form of instructions, telemetry carve-out, retention of AI inputs/outputs and deletion effect in the knowledge store specified; contractors’ places of processing extended by Pakistan and India. |
| 2.3 | 3 August 2026 | Complete revision: 24-hour breach notification, third-country opt-in for model providers without a DPA, concrete deletion periods. |
| Version | Date | Changes |
|---|
| 1.0 (current) | 9 August 2026 | First version: product and components, functional scope, plans (Free, Starter, Growth, Scale, Enterprise), definitions, beta features, support. |
| Version | Date | Changes |
|---|
| 1.0 (current) | 9 August 2026 | First version: 99.5% availability per calendar month for paid plans, credit tiers, exclusions, response times. |
We notify existing customers of material changes by email at least 30 days before they take effect (GTC section 14; for sub-processors: DPA section 6.2).