Monitor Amplitude compliance pages

Digital analytics platform โ€” product analytics, experimentation, session replay, and CDP (Amplitude Data) for growth and product teams.

Amplitude publishes several compliance and legal pages that change over time. Under GDPR Article 28, data controllers using Amplitude as a processor must continuously verify that "sufficient guarantees" remain in place โ€” which means tracking changes to these pages as they happen. Below are the 4 most relevant pages, what typically changes on each, and ready-to-paste monitoring prompts.

Monitor all 4 pages automatically

Choose the pages that matter most and get an alert when something meaningful changes. The free plan covers 3 monitors.

Start with 3 free monitors โ†’

Pages to monitor

Sub-processor list

https://amplitude.com/subprocessor-list โ†—

Typical change frequency: quarterly

What to monitor

  • AWS infrastructure sub-processor changes
  • Session replay provider (often FullStory-acquired Heap-adjacent)
  • CDP data routing sub-processors
  • New AI feature sub-processors (Ask Amplitude)

Suggested monitoring prompt

Alert me when Amplitude updates sub-processors, especially session replay and AI feature additions. Report name and purpose.

Data Processing Agreement

https://amplitude.com/dpa โ†—

Typical change frequency: yearly

What to monitor

  • Changes to EU data residency commitments
  • Updates to retention policy options
  • Modifications to session replay data provisions
  • Transfer mechanism changes

Suggested monitoring prompt

Monitor the Amplitude DPA for changes to EU residency, retention, session replay, or transfer mechanisms.

Privacy policy

https://amplitude.com/privacy โ†—

Typical change frequency: yearly

What to monitor

  • Changes to cross-customer benchmarking data usage
  • Updates to Ask Amplitude AI data practices
  • New data sharing arrangements
  • Changes to end-user tracking defaults

Suggested monitoring prompt

Alert me when Amplitude changes benchmarking usage, AI data practices, or end-user tracking. Ignore editorial changes.

Status page

https://status.amplitude.com/ โ†—

Typical change frequency: weekly

What to monitor

  • Event ingestion delays
  • Charts and dashboards availability
  • API outages
  • Experiment delivery issues

Suggested monitoring prompt

Alert me on Amplitude incidents affecting ingestion, dashboards, API, or experiments. Ignore minor UI issues.

Compliance certifications

SOC 2 Type IIISO 27001HIPAA (eligible)GDPRCCPA

Data location

Hosting locations: United States, European Union

EU-US Data Privacy Framework: Certified

Related

Ready to start monitoring Amplitude?

Set up monitoring free โ†’