{
  "generated_from": "https://saas-ranking.com/product-feedback/productlift",
  "disclaimer": "Every result describes what we found at the addresses we checked on the date given. It is not a statement about what the vendor does or does not have. The score is a public transparency score, not a product or security rating.",
  "snapshot": "r83.103592",
  "snapshot_run": 83,
  "score_version": "v1",
  "vendor": {
    "name": "ProductLift",
    "domain": "productlift.dev"
  },
  "category": {
    "slug": "product-feedback",
    "name": "Product feedback and updates"
  },
  "score": 61,
  "band": "C",
  "measured": 12,
  "of": 12,
  "criteria": [
    {
      "key": "dpa",
      "name": "Data processing agreement",
      "weight": 3,
      "result": "found",
      "source_url": "https://www.productlift.dev/legal/data-processing-agreement/",
      "addresses_checked": [
        {
          "url": "https://productlift.dev/legal/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/legal/data-processing-agreement",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "subprozessoren",
      "name": "Subprocessor list",
      "weight": 3,
      "result": "found",
      "source_url": "https://www.productlift.dev/legal/subprocessors/",
      "addresses_checked": [
        {
          "url": "https://productlift.dev/legal/subprocessors",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "datenregion",
      "name": "Data location stated",
      "weight": 3,
      "result": "found",
      "source_url": "https://www.productlift.dev/security/",
      "addresses_checked": [
        {
          "url": "https://productlift.dev/security",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "statusseite",
      "name": "Status page with history",
      "weight": 2,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://status.productlift.dev/",
          "result": "reached, no match (HTTP 410)"
        },
        {
          "url": "https://productlift.dev/status",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev.statuspage.io/",
          "result": "Could not be fetched: fetch failed."
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.225Z"
    },
    {
      "key": "preise",
      "name": "Public pricing",
      "weight": 2,
      "result": "found",
      "source_url": "https://www.productlift.dev/pricing/",
      "addresses_checked": [
        {
          "url": "https://productlift.dev/pricing",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.225Z"
    },
    {
      "key": "zertifizierungen",
      "name": "Certifications named",
      "weight": 1,
      "result": "found",
      "source_url": "https://www.productlift.dev/security/",
      "addresses_checked": [
        {
          "url": "https://productlift.dev/security",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.225Z"
    },
    {
      "key": "sla",
      "name": "Uptime SLA with a figure",
      "weight": 1,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://productlift.dev/legal/sla",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/sla",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/legal/service-level-agreement",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/trust/sla",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/uptime",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/legal/uptime-sla",
          "result": "reached, no match (HTTP 404)"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "transport",
      "name": "HTTPS enforced with HSTS",
      "weight": 2,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "http://productlift.dev/",
          "result": "redirects to https://productlift.dev/"
        },
        {
          "url": "https://productlift.dev/",
          "result": "no HSTS header"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "tracker_vor_einwilligung",
      "name": "No third-party tracking before consent",
      "weight": 2,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://productlift.dev/",
          "result": "third-party requests before any interaction: app.boei.help, cdn.jsdelivr.net, plausible.io"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "security_txt",
      "name": "security.txt (RFC 9116)",
      "weight": 1,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://productlift.dev/.well-known/security.txt",
          "result": "reached, no match (HTTP 404)"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "subprozessor_meldung",
      "name": "Notice before subprocessors change",
      "weight": 2,
      "result": "found",
      "source_url": "https://www.productlift.dev/legal/data-processing-agreement/",
      "addresses_checked": [
        {
          "url": "https://productlift.dev/legal/subprocessors",
          "result": "reached, no match (HTTP 200)"
        },
        {
          "url": "https://productlift.dev/subprocessors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/sub-processors",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/legal/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/dpa",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/legal/data-processing-agreement",
          "result": "found"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "datenschutzkontakt",
      "name": "Named privacy contact",
      "weight": 1,
      "result": "not_found",
      "source_url": null,
      "addresses_checked": [
        {
          "url": "https://productlift.dev/legal/privacy",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/privacy",
          "result": "reached, no match (HTTP 200)"
        },
        {
          "url": "https://productlift.dev/privacy-policy",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/legal/privacy-policy",
          "result": "reached, no match (HTTP 200)"
        },
        {
          "url": "https://productlift.dev/legal/privacy-notice",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/trust/privacy",
          "result": "reached, no match (HTTP 404)"
        },
        {
          "url": "https://productlift.dev/datenschutz",
          "result": "reached, no match (HTTP 404)"
        }
      ],
      "note": null,
      "measured_on": "2026-09-13T10:00:14.226Z"
    }
  ],
  "details": [
    {
      "key": "datenregion",
      "name": "Hosting location named",
      "value": "european-economic-area",
      "subject": null,
      "quote": "All Controller personal data processed by the ProductLift service is stored inside the EU/EEA.",
      "source_url": "https://www.productlift.dev/security/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "datenregion",
      "name": "Hosting location named",
      "value": "european-union",
      "subject": null,
      "quote": "All Controller personal data processed by the ProductLift service is stored inside the EU/EEA.",
      "source_url": "https://www.productlift.dev/security/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "datenregion",
      "name": "Hosting location named",
      "value": "germany",
      "subject": null,
      "quote": "Backups are encrypted and written to Hetzner Object Storage in Falkenstein, Germany, in a bucket configured with Object Lock in compliance mode: once written, a backup cannot be alter",
      "source_url": "https://www.productlift.dev/security/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "datenregion",
      "name": "Hosting location named",
      "value": "ireland",
      "subject": null,
      "quote": "File uploads and attachments are stored in the EU-West (Ireland) region of Amazon Web Services S3 via Amazon Web Services EMEA SARL, and delivered through a conten",
      "source_url": "https://www.productlift.dev/security/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "drittanbieter",
      "name": "Third-party host on first load",
      "value": "boei.help",
      "subject": null,
      "quote": "app.boei.help",
      "source_url": "https://productlift.dev/",
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "drittanbieter",
      "name": "Third-party host on first load",
      "value": "jsdelivr.net",
      "subject": null,
      "quote": "cdn.jsdelivr.net",
      "source_url": "https://productlift.dev/",
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "drittanbieter",
      "name": "Third-party host on first load",
      "value": "plausible.io",
      "subject": null,
      "quote": "plausible.io",
      "source_url": "https://productlift.dev/",
      "measured_on": "2026-09-13T10:00:14.226Z"
    },
    {
      "key": "subprozessor",
      "name": "Subprocessor named",
      "value": "amazon-web-services",
      "subject": null,
      "quote": "Amazon Web Services",
      "source_url": "https://www.productlift.dev/legal/subprocessors/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "subprozessor",
      "name": "Subprocessor named",
      "value": "hubspot",
      "subject": null,
      "quote": "HubSpot",
      "source_url": "https://www.productlift.dev/legal/subprocessors/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "subprozessor",
      "name": "Subprocessor named",
      "value": "mailgun",
      "subject": null,
      "quote": "Mailgun",
      "source_url": "https://www.productlift.dev/legal/subprocessors/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "subprozessor",
      "name": "Subprocessor named",
      "value": "microsoft-azure",
      "subject": null,
      "quote": "Azure",
      "source_url": "https://www.productlift.dev/legal/subprocessors/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "subprozessor",
      "name": "Subprocessor named",
      "value": "slack",
      "subject": null,
      "quote": "Slack",
      "source_url": "https://www.productlift.dev/legal/subprocessors/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "subprozessor",
      "name": "Subprocessor named",
      "value": "stripe",
      "subject": null,
      "quote": "Stripe",
      "source_url": "https://www.productlift.dev/legal/subprocessors/",
      "measured_on": "2026-09-13T10:00:14.224Z"
    },
    {
      "key": "zertifikat",
      "name": "Certification named",
      "value": "iso-27001",
      "subject": "dienstleister",
      "quote": "Hetzner's data centres are ISO/IEC 27001 certified and operate with industry-standard physical access controls: 24/7 on-site staff, video su",
      "source_url": "https://www.productlift.dev/security/",
      "measured_on": "2026-09-13T10:00:14.225Z"
    },
    {
      "key": "zertifikat",
      "name": "Certification named",
      "value": "soc-2",
      "subject": "erwaehnt",
      "quote": "Certifications ProductLift does not currently hold SOC 2 or ISO 27001 certification.",
      "source_url": "https://www.productlift.dev/security/",
      "measured_on": "2026-09-13T10:00:14.225Z"
    }
  ]
}