algolia.com

Source linkedFR

Algolia SAS

Algolia SAS is indexed from first-party company disclosures and official sources.

Disclosed vendors

44

Evidence sources

19

Official reports

0

Last checked

Jul 22, 2026

Vendors Algolia SAS discloses

First-party relationships, normalized to vendor organizations.

44

Access and Site Controlsdisclosed

Site Controls Data Center Security Operations . All data centers in use by Algolia maintain 24/7 on-site security operations responsible for all the aspects of physical data center security. · Location not stated

Access Controldisclosed

Access Control and Privilege Management . Subscriber's administrators must authenticate themselves via a central authentication system or via a single sign-on system in order to administer the Services. · Location not stated

Additional CCPA Termsdisclosed

Without limiting the foregoing, to the extent Subscriber Personal Data contains personal information protected under the CCPA: Algolia may not (i) sell Subscriber Personal Data or otherwise make Subscriber Personal Data available to any third party for monetary or other valuable consideration; (ii) share Subscriber Personal Data with any third party for cross-context behavioral advertising; (iii) except as otherwise permitted by the CCPA, retain, use, or disclose Subscriber Personal Data for any · Location not stated

Business Continuitydisclosed

. Algolia replicates data across multiple systems to help protect against accidental destruction or loss. Algolia has designed and regularly plans and tests its business continuity planning and disaster recovery programs. · Location not stated

Covered Affiliatesdisclosed

The parties acknowledge and agree that, by executing the Agreement, the Subscriber enters into the DPA on behalf of itself and, as applicable, in the name and on behalf of its Covered Affiliates, thereby establishing a separate DPA between Algolia and each such Covered Affiliate subject to the provisions of the Agreement, this Section 8 (Covered Affiliates) and Section 10 (Limitation of Liability). Each Covered Affiliate agrees to be bound by the obligations under this DPA and, to the extent app · Location not stated

Datadisclosed

Data Storage, Isolation and Logging . Algolia stores data in a combination of dedicated and multi-tenant environments on Algolia-controlled servers. The data is replicated on multiple redundant systems. Algolia also logically isolates the Subscriber's data. Subscriber may enable data sharing, should the Services functionality allow it. Subscriber may choose to make use of certain logging capability that Algolia may make available via the Services. · Location not stated

Data Center Access Proceduresdisclosed

. Access to the datacenter follows Algolia's Physical Security policy allowing only pre-approved authorized personnel to access the Algolia equipment. · Location not stated

Data Center and Network Securitydisclosed

Data Centers Infrastructure . Algolia maintains geographically distributed data centers and stores all production data in physically secure data centers. · Location not stated

Data Center Securitydisclosed

. All data centers comply with or exceed the security requirements of SOC2. All data centers are equipped with CCTV, on-site security personnel and key card access system. · Location not stated

Data Incidentsdisclosed

If Algolia becomes aware of a Data Incident, Algolia will: (a) notify Subscriber of the Data Incident without undue delay after becoming aware of the Data Incident; and (b) promptly take reasonable steps to minimize harm and secure Subscriber Data. · Location not stated

Data Protection Impact Assessmentdisclosed

Upon Subscriber's written request, Algolia will provide Subscriber with reasonable cooperation and assistance needed to fulfill Subscriber's obligation under the Data Protection Laws to carry out a data protection impact assessment related to Subscriber's use of the Services, to the extent Subscriber does not otherwise have access to the relevant information, and to the extent such information is available to Algolia. Algolia will provide reasonable assistance to Subscriber in the cooperation or · Location not stated

Data Securitydisclosed

Security Measures Algolia will implement and maintain appropriate technical and organizational measures designed to protect or secure (i) Subscriber Data, including Subscriber Personal Data, against unauthorized or unlawful processing and against accidental or unlawful loss, destruction or alteration or damage, unauthorized disclosure of, or access to, Subscriber Data, and (ii) the confidentiality and integrity of Subscriber Data, as set forth in the Security Measures. Algolia may update or modi · Location not stated

Data Subject Rights; Data Exportdisclosed

For the duration of the period Algolia provides the Services: Algolia will, in a manner consistent with the functionality of the Services, enable Subscriber to access, rectify and restrict processing of Subscriber Data, including via the deletion functionality provided by Algolia as described in Section 4 (Return or Deletion of Subscriber Data), and to export Subscriber Data; · Location not stated

Decommissioned Disks and Disk Erase Policydisclosed

. Disks used in servers might experience hardware failures, performance issues or errors that lead to their decommission. All decommissioned disks are securely erased if intended for reuse, or securely destroyed due to malfunction. · Location not stated

Definitionsdisclosed

Capitalized terms used but not defined in this DPA shall have the meaning given to them in the Agreement or applicable Data Protection Laws. " Affiliates " of a party is any entity (a) that the party Controls; (b) that the party is Controlled by; or (c) with which the party is under common Control, where "Control" means direct or indirect control of fifty percent (50%) or more of an entity's voting interests (including by ownership). " Algolia " means either (i) Algolia, Inc., a company incorpor · EU

Deletion of Subscriber Datadisclosed

Algolia will enable Subscriber to delete during the Term Subscriber Data in a manner consistent with the functionality of the Services. If Subscriber uses the Services to delete any Subscriber Data during the Term, this use will constitute an instruction to Algolia to delete the relevant Subscriber Data from Algolia's systems in accordance with applicable law. Algolia will comply with this instruction as soon as reasonably practicable within a maximum of 90 days, unless UK, European Union or mem · Location not stated

Effect of this DPAdisclosed

Notwithstanding anything to the contrary in the Agreement, to the extent of any conflict or inconsistency between this DPA and the remaining terms of the Agreement, this DPA will govern. · Location not stated

Encryption Technologiesdisclosed

. Algolia's servers support HTTPS encryption, ephemeral elliptic curve Diffie-Hellman cryptographic key exchange signed with RSA and ECDSA and for supported clients also perfect forward secrecy (PFS) methods to help protect traffic against compromised key or cryptographic breakthrough. Algolia uses only industry standard encryption technologies. · Location not stated

Incident Responsedisclosed

. Algolia's security and operations personnel will promptly react to discovered security incidents and inform the involved parties. · Location not stated

Internal Data Access Processes and Policies – Access Policydisclosed

. Algolia's internal data access processes and policies are designed to prevent unauthorized persons or systems from getting access to systems used to process personal data. These processes are audited by an independent auditor. Algolia employs a centralized access management system to control access to production systems and servers, and only provides access to a limited number of authorized personnel. SSO, LDAP and SSH certificates are used to provide secure access mechanisms. Algolia requires · Location not stated

Intrusion Detectiondisclosed

. Algolia employs an intrusion detection system to provide insights into ongoing attack activities and to help remediate the attack faster. · Location not stated

Limitation of Liabilitydisclosed

Each party's and all of its Affiliates' liability, taken together in the aggregate, arising out of or related to this DPA (including the Standard Contractual Clauses, if the Standard Contractual Clauses have been entered into in accordance with the Agreement or a DPA), and all other DPAs between Covered Affiliates and Algolia, as applicable, whether in contract, tort or under any other theory of liability, is subject to the "Limitation of Liability" section of the Agreement, and any reference in · Location not stated

Network and Transmissiondisclosed

Data Transmission . Algolia uses industry standard encryption schemes and protocols to encrypt data transmissions between the data centers. This is intended to prevent reading, copying or modification of the data. · Location not stated

Personnel Securitydisclosed

Algolia personnel are required to conduct themselves in a manner consistent with the company's guidelines regarding confidentiality, business ethics, appropriate usage, and professional standards. Algolia conducts appropriate background checks to the extent allowed by applicable law and regulations. Personnel are required to execute a confidentiality agreement and must acknowledge receipt of, and compliance with, Algolia's confidentiality, privacy and acceptable use policies. All personnel are p · Location not stated

Powerdisclosed

. All data centers are equipped with redundant power system with various mechanism to provide backup power, such as uninterruptible power supplies (UPS) batteries for short term blackouts, over voltage, under voltage or any power instabilities and diesel generators, for outages extending units of minutes, which allow the data centers to operate for days. · Location not stated

Redundancydisclosed

. Algolia's infrastructure has been designed to eliminate single points of failure and minimize the impact of anticipated environmental risks. This design allows Algolia to perform maintenance and improvements of the infrastructure with minimal impact on the production systems. All environmental equipment and facilities have documented preventative maintenance procedures that detail the process for and frequency of performance in accordance with the manufacturer's or internal specifications. · Location not stated

Restricted Transfersdisclosed

The parties agree that when the transfer of Subscriber Personal Data from Subscriber to Algolia is a Restricted Transfer, it shall be subject to the appropriate Standard Contractual Clauses, as follows: In relation to Subscriber Personal Data that is protected by the EU GDPR, the EU SCCs will apply as follows: Module Two will apply to the extent that Subscriber is a controller of the Subscriber Personal Data, and Module Three will apply to the extent that Subscriber is a processor of the Subscri · Location not stated

Returndisclosed

Algolia will enable Subscriber to delete during the Term Subscriber Data in a manner consistent with the functionality of the Services. If Subscriber uses the Services to delete any Subscriber Data during the Term, this use will constitute an instruction to Algolia to delete the relevant Subscriber Data from Algolia's systems in accordance with applicable law. Algolia will comply with this instruction as soon as reasonably practicable within a maximum of 90 days, unless UK, European Union or mem · Location not stated

Securitydisclosed

Algolia conducts audits of security and privacy practices of Sub-processors prior to onboarding the Sub- processors in order to ensure adequate level of security and privacy to data and scope of services they are engaged to provide. Once the Sub-processor audit is performed and associated risk is evaluated, the Sub- processor enters into appropriate privacy, confidentiality and security contract terms. · Location not stated

Server Operating Systemdisclosed

. Algolia uses a Linux based operating system for the application environment with a centrally managed configuration. Algolia has established a policy to keep systems up to date with necessary security updates. · Location not stated

Service Organization Control (SOC) Reportsdisclosed

Currently, Algolia's information security control environment applicable to the Services undergoes an independent evaluation in the form of SOC2 and SOC 3 audits. To demonstrate compliance with the Security Measures, Algolia will make available for review by Subscriber Algolia's most recent (i) SOC 2 Report and (ii) SOC 3 Report as described below. " SOC 2 Report " means a confidential Service Organization Control (SOC) 2 report on Algolia's systems examining logical security controls, physical · Location not stated

SOC 3 Reportdisclosed

" means a Service Organization Control (SOC) 3 report, as produced by Algolia's independent third-party auditor in relation to the Services. · Location not stated

TRUSTe certificationdisclosed

Algolia has been awarded the TRUSTe Certified Seal signifying that Algolia's website Privacy Statement and privacy practices related to the Services have been reviewed by TRUSTe for compliance with TRUSTe's Certification Standards. · Location not stated

Source trail

Documents used to establish identity, relationships, and financial context.

Research another company

Enter any public domain to follow its vendor and company paper trail.