← Back to all vendors
design

Figma

figma.com

3 flagged clauses across 3 risk dimensions

?
πŸ€–

AI training

1 flag
  • Severity 4
    "By using our Services, you grant us a worldwide, non-exclusive, royalty-free license to use your content to improve our products, including for the training of machine learning models."

    Figma can use anything you put in their product to train their AI models, with no end date and no payment to you.

    If you handle confidential customer data, this clause exposes that data to model training pipelines you do not control.

πŸ”„

Auto-renewal

1 flag
  • Severity 3
    "Subscriptions automatically renew at the end of each billing period at the then-current rate unless cancelled."

    Figma renews you at whatever the price is at the time, with no requirement to warn you about increases.

    You can be locked into significantly higher pricing at renewal without explicit consent.

    Matches FTC v. Vonage β€” settled for $100M (2022)
πŸ’Έ

Price hikes

clear

No flags in this category.

🌍

Data residency

clear

No flags in this category.

πŸšͺ

Termination friction

clear

No flags in this category.

βš–οΈ

Liability caps

clear

No flags in this category.

πŸ›‘

Indemnification

clear

No flags in this category.

πŸ‘»

Silent term changes

1 flag
  • Severity 4
    "We reserve the right to modify these Terms at any time. Continued use of the Services constitutes acceptance."

    Figma can change the rules whenever they want, and just continuing to use the product is treated as agreement.

    You have no real veto over future changes. Any clause they add later applies to you retroactively.

Recent changes detected

Jun 18, 2024

Figma removed its explicit no-AI-training pledge and added a clause allowing design files, prototypes, and comments to be used for AI model training. The opt-out is only available to Enterprise tier customers, not Pro or Org plans.

Professional designers and studios on Pro/Org plans storing unreleased product designs, client branding, and UI systems β€” only Enterprise customers get an opt-out, and only by contacting a human.