algolia.com
Source linkedFRAlgolia SAS
Algolia SAS is indexed from first-party company disclosures and official sources.
Disclosed vendors
44
Evidence sources
19
Official reports
0
Last checked
Jul 22, 2026
Vendors Algolia SAS discloses
First-party relationships, normalized to vendor organizations.
Access and Site Controlsdisclosed
Site Controls Data Center Security Operations . All data centers in use by Algolia maintain 24/7 on-site security operations responsible for all the aspects of physical data center security. · Location not stated
Access Controldisclosed
Access Control and Privilege Management . Subscriber's administrators must authenticate themselves via a central authentication system or via a single sign-on system in order to administer the Services. · Location not stated
Additional CCPA Termsdisclosed
Without limiting the foregoing, to the extent Subscriber Personal Data contains personal information protected under the CCPA: Algolia may not (i) sell Subscriber Personal Data or otherwise make Subscriber Personal Data available to any third party for monetary or other valuable consideration; (ii) share Subscriber Personal Data with any third party for cross-context behavioral advertising; (iii) except as otherwise permitted by the CCPA, retain, use, or disclose Subscriber Personal Data for any · Location not stated
Business Continuitydisclosed
. Algolia replicates data across multiple systems to help protect against accidental destruction or loss. Algolia has designed and regularly plans and tests its business continuity planning and disaster recovery programs. · Location not stated
Continuous.disclosed
Purpose not stated · Location not stated
Covered Affiliatesdisclosed
The parties acknowledge and agree that, by executing the Agreement, the Subscriber enters into the DPA on behalf of itself and, as applicable, in the name and on behalf of its Covered Affiliates, thereby establishing a separate DPA between Algolia and each such Covered Affiliate subject to the provisions of the Agreement, this Section 8 (Covered Affiliates) and Section 10 (Limitation of Liability). Each Covered Affiliate agrees to be bound by the obligations under this DPA and, to the extent app · Location not stated
Datadisclosed
Data Storage, Isolation and Logging . Algolia stores data in a combination of dedicated and multi-tenant environments on Algolia-controlled servers. The data is replicated on multiple redundant systems. Algolia also logically isolates the Subscriber's data. Subscriber may enable data sharing, should the Services functionality allow it. Subscriber may choose to make use of certain logging capability that Algolia may make available via the Services. · Location not stated
Data Center Access Proceduresdisclosed
. Access to the datacenter follows Algolia's Physical Security policy allowing only pre-approved authorized personnel to access the Algolia equipment. · Location not stated
Data Center and Network Securitydisclosed
Data Centers Infrastructure . Algolia maintains geographically distributed data centers and stores all production data in physically secure data centers. · Location not stated
Data Center Securitydisclosed
. All data centers comply with or exceed the security requirements of SOC2. All data centers are equipped with CCTV, on-site security personnel and key card access system. · Location not stated
Data Incidentsdisclosed
If Algolia becomes aware of a Data Incident, Algolia will: (a) notify Subscriber of the Data Incident without undue delay after becoming aware of the Data Incident; and (b) promptly take reasonable steps to minimize harm and secure Subscriber Data. · Location not stated
Data Protection Impact Assessmentdisclosed
Upon Subscriber's written request, Algolia will provide Subscriber with reasonable cooperation and assistance needed to fulfill Subscriber's obligation under the Data Protection Laws to carry out a data protection impact assessment related to Subscriber's use of the Services, to the extent Subscriber does not otherwise have access to the relevant information, and to the extent such information is available to Algolia. Algolia will provide reasonable assistance to Subscriber in the cooperation or · Location not stated
Data Securitydisclosed
Security Measures Algolia will implement and maintain appropriate technical and organizational measures designed to protect or secure (i) Subscriber Data, including Subscriber Personal Data, against unauthorized or unlawful processing and against accidental or unlawful loss, destruction or alteration or damage, unauthorized disclosure of, or access to, Subscriber Data, and (ii) the confidentiality and integrity of Subscriber Data, as set forth in the Security Measures. Algolia may update or modi · Location not stated
Data Subject Rights; Data Exportdisclosed
For the duration of the period Algolia provides the Services: Algolia will, in a manner consistent with the functionality of the Services, enable Subscriber to access, rectify and restrict processing of Subscriber Data, including via the deletion functionality provided by Algolia as described in Section 4 (Return or Deletion of Subscriber Data), and to export Subscriber Data; · Location not stated
Decommissioned Disks and Disk Erase Policydisclosed
. Disks used in servers might experience hardware failures, performance issues or errors that lead to their decommission. All decommissioned disks are securely erased if intended for reuse, or securely destroyed due to malfunction. · Location not stated
Definitionsdisclosed
Capitalized terms used but not defined in this DPA shall have the meaning given to them in the Agreement or applicable Data Protection Laws. " Affiliates " of a party is any entity (a) that the party Controls; (b) that the party is Controlled by; or (c) with which the party is under common Control, where "Control" means direct or indirect control of fifty percent (50%) or more of an entity's voting interests (including by ownership). " Algolia " means either (i) Algolia, Inc., a company incorpor · EU
Deletion of Subscriber Datadisclosed
Algolia will enable Subscriber to delete during the Term Subscriber Data in a manner consistent with the functionality of the Services. If Subscriber uses the Services to delete any Subscriber Data during the Term, this use will constitute an instruction to Algolia to delete the relevant Subscriber Data from Algolia's systems in accordance with applicable law. Algolia will comply with this instruction as soon as reasonably practicable within a maximum of 90 days, unless UK, European Union or mem · Location not stated
Effect of this DPAdisclosed
Notwithstanding anything to the contrary in the Agreement, to the extent of any conflict or inconsistency between this DPA and the remaining terms of the Agreement, this DPA will govern. · Location not stated
Encryption Technologiesdisclosed
. Algolia's servers support HTTPS encryption, ephemeral elliptic curve Diffie-Hellman cryptographic key exchange signed with RSA and ECDSA and for supported clients also perfect forward secrecy (PFS) methods to help protect traffic against compromised key or cryptographic breakthrough. Algolia uses only industry standard encryption technologies. · Location not stated
End User Data Identifier (IP address and userToken)disclosed
Purpose not stated · Location not stated
End User queriesdisclosed
Purpose not stated · Location not stated
Incident Responsedisclosed
. Algolia's security and operations personnel will promptly react to discovered security incidents and inform the involved parties. · Location not stated
Internal Data Access Processes and Policies – Access Policydisclosed
. Algolia's internal data access processes and policies are designed to prevent unauthorized persons or systems from getting access to systems used to process personal data. These processes are audited by an independent auditor. Algolia employs a centralized access management system to control access to production systems and servers, and only provides access to a limited number of authorized personnel. SSO, LDAP and SSH certificates are used to provide secure access mechanisms. Algolia requires · Location not stated
Intrusion Detectiondisclosed
. Algolia employs an intrusion detection system to provide insights into ongoing attack activities and to help remediate the attack faster. · Location not stated
IP addressdisclosed
Purpose not stated · Location not stated
Limitation of Liabilitydisclosed
Each party's and all of its Affiliates' liability, taken together in the aggregate, arising out of or related to this DPA (including the Standard Contractual Clauses, if the Standard Contractual Clauses have been entered into in accordance with the Agreement or a DPA), and all other DPAs between Covered Affiliates and Algolia, as applicable, whether in contract, tort or under any other theory of liability, is subject to the "Limitation of Liability" section of the Agreement, and any reference in · Location not stated
Location of request (as indicated in IP address)disclosed
Purpose not stated · Location not stated
Network and Transmissiondisclosed
Data Transmission . Algolia uses industry standard encryption schemes and protocols to encrypt data transmissions between the data centers. This is intended to prevent reading, copying or modification of the data. · Location not stated
Network connection datadisclosed
Purpose not stated · Location not stated
Personal and Business Contact Information (company, email, physical address, phone number)disclosed
Purpose not stated · Location not stated
Personnel Securitydisclosed
Algolia personnel are required to conduct themselves in a manner consistent with the company's guidelines regarding confidentiality, business ethics, appropriate usage, and professional standards. Algolia conducts appropriate background checks to the extent allowed by applicable law and regulations. Personnel are required to execute a confidentiality agreement and must acknowledge receipt of, and compliance with, Algolia's confidentiality, privacy and acceptable use policies. All personnel are p · Location not stated
Powerdisclosed
. All data centers are equipped with redundant power system with various mechanism to provide backup power, such as uninterruptible power supplies (UPS) batteries for short term blackouts, over voltage, under voltage or any power instabilities and diesel generators, for outages extending units of minutes, which allow the data centers to operate for days. · Location not stated
Redundancydisclosed
. Algolia's infrastructure has been designed to eliminate single points of failure and minimize the impact of anticipated environmental risks. This design allows Algolia to perform maintenance and improvements of the infrastructure with minimal impact on the production systems. All environmental equipment and facilities have documented preventative maintenance procedures that detail the process for and frequency of performance in accordance with the manufacturer's or internal specifications. · Location not stated
Restricted Transfersdisclosed
The parties agree that when the transfer of Subscriber Personal Data from Subscriber to Algolia is a Restricted Transfer, it shall be subject to the appropriate Standard Contractual Clauses, as follows: In relation to Subscriber Personal Data that is protected by the EU GDPR, the EU SCCs will apply as follows: Module Two will apply to the extent that Subscriber is a controller of the Subscriber Personal Data, and Module Three will apply to the extent that Subscriber is a processor of the Subscri · Location not stated
Returndisclosed
Algolia will enable Subscriber to delete during the Term Subscriber Data in a manner consistent with the functionality of the Services. If Subscriber uses the Services to delete any Subscriber Data during the Term, this use will constitute an instruction to Algolia to delete the relevant Subscriber Data from Algolia's systems in accordance with applicable law. Algolia will comply with this instruction as soon as reasonably practicable within a maximum of 90 days, unless UK, European Union or mem · Location not stated
Search logs (for debugging purposes)disclosed
Purpose not stated · Location not stated
Securitydisclosed
Algolia conducts audits of security and privacy practices of Sub-processors prior to onboarding the Sub- processors in order to ensure adequate level of security and privacy to data and scope of services they are engaged to provide. Once the Sub-processor audit is performed and associated risk is evaluated, the Sub- processor enters into appropriate privacy, confidentiality and security contract terms. · Location not stated
Server Operating Systemdisclosed
. Algolia uses a Linux based operating system for the application environment with a centrally managed configuration. Algolia has established a policy to keep systems up to date with necessary security updates. · Location not stated
Service Administrator's Data First, Middle and Last Name (current and former)disclosed
Purpose not stated · Location not stated
Service Organization Control (SOC) Reportsdisclosed
Currently, Algolia's information security control environment applicable to the Services undergoes an independent evaluation in the form of SOC2 and SOC 3 audits. To demonstrate compliance with the Security Measures, Algolia will make available for review by Subscriber Algolia's most recent (i) SOC 2 Report and (ii) SOC 3 Report as described below. " SOC 2 Report " means a confidential Service Organization Control (SOC) 2 report on Algolia's systems examining logical security controls, physical · Location not stated
SOC 3 Reportdisclosed
" means a Service Organization Control (SOC) 3 report, as produced by Algolia's independent third-party auditor in relation to the Services. · Location not stated
The parties acknowledge and agree thatdisclosed
The parties will comply with all applicable laws with respect to the processing of Subscriber Personal Data. · Location not stated
Title or positiondisclosed
Purpose not stated · Location not stated
TRUSTe certificationdisclosed
Algolia has been awarded the TRUSTe Certified Seal signifying that Algolia's website Privacy Statement and privacy practices related to the Services have been reviewed by TRUSTe for compliance with TRUSTe's Certification Standards. · Location not stated
Source trail
Documents used to establish identity, relationships, and financial context.
official-register
https://recherche-entreprises.api.gouv.fr/search?q=Algolia&per_page=5
legal-page
https://www.algolia.com/policies/old/privacy-2021-01-29
legal-page
https://www.algolia.com/policies/old/privacy-2025-03-03
legal-page
https://www.algolia.com/policies/old/privacy-2025-10-06
legal-page
https://www.algolia.com/policies/old/privacy-2026-01-12
legal-page
https://www.algolia.com/policies/legal
website
https://trust.algolia.com/
legal-page
https://www.algolia.com/policies/terms
legal-page
https://www.algolia.com/policies/privacy
subprocessor-list
https://www.algolia.com/policies/data-processing-addendum
subprocessor-list
https://www.algolia.com/policies/infrastructure-and-sub-processors
website
https://www.algolia.com/
legal-page
https://www.algolia.com/policies/old/privacy-2018-05-25
legal-page
https://www.algolia.com/policies/cookies
legal-page
https://www.algolia.com/policies/support
legal-page
https://www.algolia.com/policies/sla
legal-page
https://www.algolia.com/policies/acceptable-use
legal-page
https://www.algolia.com/about
website
https://privacy.algolia.com/
Research another company
Enter any public domain to follow its vendor and company paper trail.