Figma AI
Figma · Productivity · US · www.figma.com
services/figma-ai.yamlVendor data-handling terms
Figma's help centre states that content training defaults on for Starter and Professional plans and off for Organization and Enterprise plans; that default is not in the policy text and is not verified here.
“This includes: if “Content Training” is toggled on within your administrative user settings, Customer Content and where we act as a controller (e.g. / We take steps to de-identify and aggregate data to protect your privacy for data we use to train AI models.”
“We store the personal information we receive as described in this Privacy Policy for as long as you use our Services or as necessary to fulfill the purpose(s) for which it was collected, provide our Services, resolve disputes, establish legal defenses, conduct audits, pursue legitimate business purposes, enforce our agreements, and/or comply with applicable laws.”
“Specifically, all personal information we process is transferred to, processed and stored in the United States, where our headquarters and our main servers are located.”
Domains and endpoints
observed means seen in Unseen deployments; vendor-documented means listed by the vendor. Vendors do not publish complete lists.
| Host | Role | Source |
|---|---|---|
| figma.com | app | observed |
Assessment
Reasoning: Figma's AI features, including Figma Make, sit inside the design tool where product designs and prototypes live. Content training is a plan level toggle; where it is on, design files feed Figma's models. US-only processing. Admins on lower plans should check the setting.
Flags: Content training governed by an admin toggle · US processing only · Assessed 2026-09-16. The assessment is Unseen's; the terms above are the vendor's.
Changelog
- 2026-09-16Documented. Training, retention and storage terms verified against the Figma privacy policy.
- 2026-09-15Listed from the Unseen catalogue with observed domains.
Corrections
Pull request on GitHub, or the form below. Changes are reviewed and recorded in the changelog.