VeraxConsole
← All vendors

Snowflake Cortex

low risk

AI Infrastructure / Managed LLM Servicessnowflake.comverified 2024-05-22

Data-handling profile

Trains on input
No — does not train on customer inputs
Retention
Customer data is processed ephemerally; Snowflake does not retain customer prompts or completions for service improvement or model training.
Data region
Customer-defined (Multi-region support in AWS, Azure, GCP)
Certifications
SOC 1 Type IISOC 2 Type IIISO/IEC 27001ISO/IEC 27017ISO/IEC 27018FedRAMP Authorized (High)HIPAAPCI DSS
DPA available
Yes
Breach history
Snowflake experienced a high-profile incident in May 2024 involving unauthorized access to individual customer environments due to compromised credentials; however, this was an identity-based access issue rather than a compromise of the Snowflake Cortex AI model infrastructure itself.
EU AI Act
Snowflake aligns with GDPR and provides transparency documentation for AI features; classification under EU AI Act is managed via internal AI governance frameworks for enterprise providers.

Sources

Every fact above is drawn from the vendor's public documentation, reviewed by a human, and version-stamped. Monitored daily for changes.

Watch this vendor

Get an email the day Snowflake Cortex changes what it does with your data. Your address is never shown publicly or shared.

Change history

No material changes recorded since monitoring began.