Supplementary terms for stored messages feature

Version 10.23.25

  1. MESSAGE STORAGE SERVICE
    • 1.1 Customer Responsibilities for Data Retention and Compliance: Customer acknowledges and agrees that upon transfer and storage of messages within Customer’s designated private cloud storage infrastructure, Customer shall be solely responsible for:
      1. implementing and maintaining appropriate data retention policies and timeframes in accordance with applicable laws and regulations;
      2. ensuring compliance with all applicable privacy laws, data protection regulations, and industry standards relating to the stored messages; and
      3. implementing appropriate access controls, security measures, and audit procedures for all stored message data.
    • 1.2 Message Storage Service Limitations: Iterable’s obligations and responsibilities under any applicable privacy laws or regulations with respect to messages shall cease upon successful transmission of such messages to Customer’s designated private cloud storage destination. Following such transmission, Customer assumes full responsibility for all privacy law compliance obligations relating to the stored messages.
    • 1.3 GDPR Endpoint Exclusion: Customer acknowledges and agrees that Iterable’s GDPR endpoint and related data subject rights processing capabilities do not apply to messages stored within Customer’s designated private cloud storage infrastructure. Customer shall be solely responsible for complying with all requests under relevant privacy laws, including but not limited to data subject access requests, deletion requests, and rectification requests, relating to messages stored within Customer’s private cloud storage environment.
  2. CUSTOMER CREDENTIAL AND STORAGE BUCKET RESPONSIBILITY
    • 2.1 Customer Credential Responsibility: Customer shall provide Iterable with accurate and current private cloud storage bucket credentials and destination information. Customer acknowledges and agrees that Customer bears sole responsibility for:
      1. ensuring the accuracy and appropriateness of all provided credentials and destination information;
      2. any consequences arising from incorrect, outdated, or inappropriate credential information provided to Iterable; and
      3. any unauthorised access to personally identifiable information or other sensitive data resulting from Customer’s provision of incorrect destination information.
    • 2.1 Bucket Provision Requirement: Customer must provide Iterable with access to a private cloud storage bucket designated for message storage purposes. Customer acknowledges that Iterable will transfer copies of all messages to the designated private cloud storage bucket.
    • 2.3 Public Accessibility Risk: Customer acknowledges that whilst Iterable shall confirm Customer’s ownership of the designated storage bucket, it remains possible for Customer to provide credentials to a bucket that is publicly accessible or otherwise inadequately secured. Customer assumes full responsibility for any data breaches, data exposure, data loss, unauthorised disclosure, security incident or unauthorised access resulting from the provision of credentials to publicly accessible or inadequately secured storage destinations.
    • 2.4 Iterable Validation Efforts: Whilst Iterable shall make good faith efforts to validate Customer’s ownership of designated storage destinations, Customer acknowledges that such validation efforts are limited in scope and Customer remains ultimately responsible for the accuracy and appropriateness of all provided credential and destination information.
  3. MESSAGE STORAGE RETRY LIMITATIONS AND OUTAGE RISKS
    • 3.1 Retry Period: Iterable shall attempt to retry failed message storage attempts for a maximum period of twenty-four (24) hours from the initial failed attempt. Customer acknowledges that:
      1. Iterable’s retry obligations are limited to this twenty-four (24) hour period;
      2. messages that cannot be stored due to storage connectivity issues, credential failures, or other technical impediments may be permanently lost after this retry period expires; and
      3. Customer may be unable to produce messages sent during any storage outage period for audit, compliance, or regulatory purposes.
    • 3.2 Prolonged Outage Risk: Customer acknowledges that instances of prolonged system outages, extended connectivity failures, or other technical disruptions may result in messages failing to be saved and being lost permanently. In such circumstances, Customer may be unable to produce such messages if subsequently required for audit, compliance, regulatory, or legal purposes.
    • 3.3 Customer Risk Assumption: Customer expressly assumes all risks associated with potential non-compliance, audit failures, or regulatory violations that may result from Iterable’s inability to store messages within the designated retry period or during prolonged outages as described in this clause 3.
  4. STORAGE COST
    • 4.1 Customer Cost Responsibility: Customer acknowledges and agrees that all cloud storage costs, including but not limited to write operations, storage fees, and data transfer charges, shall be borne solely by Customer as storage occurs within their private cloud storage instance.