Indexable issue pageLast reviewed 2026-05-21High priority

Intercom DPA review for SaaS customer commitments

Intercom DPA answers should start with the official source set for the exact product, plan, and agreement in use. Do not reuse a broad vendor statement when the workflow involves different accounts, integrations, AI features, logs, exports, or customer data categories. Keep the answer narrow, dated, linked to source evidence, and clear about what your team still controls.

Vendor

Intercom

Issue

dpa

Sources reviewed

3 official sources

Product and plan applicability

Scope
Intercom production workflow
Applies to
Customer-facing product, support, billing, workplace, or infrastructure workflows where Intercom receives customer data or customer-adjacent records.
Watch for
Product scope, plan terms, account owner, agreement path, data categories, and whether Intercom customer messaging and support workflows, including AI features only where the official Intercom source covers them.
Scope
Internal company use
Applies to
Employee use of Intercom for operations, sales, support, engineering, security, or collaboration.
Watch for
Managed workspace controls, unmanaged accounts, exported files, copied records, and connected apps that may add new vendor paths.
Scope
Customer evidence
Applies to
Trust Center text, DPA exhibits, security questionnaire answers, SOC 2 monitoring evidence packets, and renewal packets.
Watch for
Source links, last reviewed date, reviewer note, implementation settings, and any unknowns that should stay qualified.

What official sources say

Start with official Intercom sources

The source set for this review is Intercom Data Processing Agreement, Intercom Terms and Policies, Intercom Privacy Policy. Use those links before changing customer-facing language about DPA, and keep any answer tied to the product path actually used.

Separate vendor promises from your configuration

Official Intercom sources do not describe every log, export, integration, support copy, or retention setting controlled by your team. Review those implementation details before making the customer answer final.

Why a SaaS team should review it

  • Intercom is often described in short customer answers, but the safe answer depends on product scope, plan, and data path.
  • Security questionnaires, DPAs, and Trust Center records can stay online long after the vendor source or implementation changes.
  • A cited-source review gives the team evidence for sales, audit, privacy, and security conversations without turning the page into legal advice.

Potential customer commitment drift

  • A customer answer names Intercom but omits the product, plan, or workspace that the official source covers.
  • A new integration, export, automation, log, or AI feature starts receiving customer data after the last vendor review.
  • The vendor source changes, but the customer-facing commitment still cites an older screenshot, ticket, or internal summary.

Review checklist

  • Confirm the exact Intercom product, account, plan, region, and agreement path.
  • List customer data categories, including content, files, metadata, logs, and support records.
  • Attach the official Intercom source links used for this issue and record the review date.
  • Check your own retention, access, export, integration, and logging settings before publishing the answer.
  • Keep unknown or ambiguous facts qualified and route contract wording changes to legal or privacy review.

Source links

Sources were reviewed on 2026-05-21. This page supports a review packet or monitoring evidence packet; it is not legal advice.

Related pages

Scan Intercom against your own commitments.

Use this page as a starting point, then compare the vendor source to the exact promise in your Trust Center, DPA, security questionnaire, or sales answer. The $199 packet turns that review into cited evidence your team can route internally.