Assess · Together AI

Can you own it?

Ownership levelPartialnone·limited·partial·substantial·fullAnalytical input B ยท 75.2/100

This page is a projection of the one entry record, the Use & modify and Transparency factors that Assess covers. The full verdict is set by all four factors together, floor-weighted so the weakest caps the whole.

Which domain expands which factor
  • AssessUse & modify + Transparency
  • ImplementData control + Doesn't fail you
  • UseDoesn't fail you
  • SupportTransparency

Data governance - retention, ZDR & training

Together AI's headline governance posture is zero data retention by default, and this session it was read in the binding documents, not a marketing page. The Privacy Policy states that inputs and outputs are not stored by default, and that under ZDR content is not stored, retained, or used for model training or product improvement except as needed to provide the Services - aside from temporary caching for performance. The Terms of Service add that Together does not use your data to train its models without your explicit opt-in and consent, so training is opt-in and off by default, gated behind an org-admin Privacy & Security setting.

The caveat is provenance of assurance, not policy: this is Together's own self-attestation in its binding terms - strong, but not independently audited - and no public sub-processor list was found. For a regulated deployment, contractualise the no-retention behaviour in the DPA rather than relying on the default terms.

Data & IP ownership

The Terms of Service settle ownership directly: as between you and Company, you exclusively own all right, title and interest in Your Content and Output, granting Together only a limited license to access, host and operate that content solely to provide the Services. Together separately owns its own Company IP and Usage Data. Combined with ZDR-by-default from the Privacy Policy - nothing retained to improve the service unless an org admin opts in - the practical posture is that your data and the outputs derived from it stay yours. The one gap is disclosure: the sub-processor list is not published, so for a regulated deployment pin sub-processor terms in the DPA.

Compliance & attestations

Together announced SOC 2 Type II through an independent, multi-month audit (per its own blog - the announcement was read, the SOC 2 report itself was not obtained), and its Data Processing Addendum - read this session - binds it to the EU Standard Contractual Clauses for EU personal-data transfers, satisfying the GDPR DPA requirement. HIPAA/BAA support is indicated in the security docs via encryption, audit logging and business associate agreements rather than shown as a standalone attestation, and ISO 27001 / 27701 are unconfirmed - the DPA aligns risk management to ISO 27005 / NIST 800-37, which is not a 27001 certification. For healthcare or ISO-dependent procurement, request the current attestation letters and the SOC 2 report directly.

Data residency & jurisdiction

Together's support knowledge base (read this session) confirms US and EU data centres (including Sweden GPU capacity) with dedicated, region-pinned endpoints; the DPA confirms EU transfers run under SCCs with default routing through North America. The constraint is commercial rather than technical: EU residency and dedicated/region-pinned endpoints are gated to the Scale and Enterprise tiers, not available on the self-serve serverless plan. As a US-headquartered company, Together also carries standing US CLOUD Act exposure even for EU-hosted workloads - a jurisdictional fact no region setting removes.

Security controls

The security docs and the SOC 2 announcement (both read this session) describe encryption in transit and at rest, audit logging, MFA/RBAC, continuous monitoring and regular penetration testing, and the DPA requires encryption of controller data in transit and storage. No independently reviewed penetration-test report or the SOC 2 report itself was obtained, so this is assessed as solid-but-partial: the day-to-day controls are documented, but the deepest independent assurance is not visible.

Pricing & cost model

Pricing is mixed: per-token serverless rates for the shared catalogue plus dedicated GPU endpoints on Scale/Enterprise. Together's pricing page lists the models, and indicative serverless rates corroborated by independent third-party price analysis - gpt-oss-120B ~$0.15/$0.60 per M in/out, Qwen3-235B ~$0.20/$0.60, DeepSeek-V3 ~$1.25/M - are approximate and move frequently (the live pricing page was not read from source this session), so treat them as an order-of-magnitude guide and confirm live rates before committing.

Reliability posture

No incidents surfaced in research, but no public uptime SLA, status page or failover documentation was found or independently verified this session. Reliability is therefore assessed conservatively: adequate on available evidence, but without an observable status/SLA record to lean on for availability-critical workloads.

How this scores

The ownership factors this domain covers, drawn from the one entry record.

1

Use and modify freelyCan you use it freely and leave without lock-in?

Strong

OpenAI-compatible /v1 API (documented and read this session) serving portable open-weight models - the same checkpoints run on other providers or self-hosted, so exit cost is low.

How this scores (AOI sub-dimensions)
Transparency & lock-in4/5how portable it is and how easily you can leaveOpenAI-compatible /v1 API (documented and read this session) serving portable open-weight models (Llama, DeepSeek, Qwen, Mistral, gpt-oss), with third-party analysis corroborating the same checkpoints run across many providers - a strong exit path.
Cost4/5how the pricing model compares and how predictable it isCompetitive per-token serverless rates plus dedicated GPU endpoints; Together's own pricing page lists the model, and independent third-party price analysis corroborates the approximate rates, which move frequently.
2

TransparencyAre the binding terms published, legible and independently checkable?

Moderate

The retention/no-training/ownership terms were actually read this session in the binding Privacy Policy and Terms of Service - a real improvement over a marketing page - but they are Together's own self-attestation, not independently audited, and no sub-processor list is published.

How this scores
Not a scored AOI dimension. For a hosted provider, transparency is whether the binding terms are published, legible and were actually read - the read/unverified evidence below, not a certification. A strong rating here must trace to a retrieved binding document.
What this means for adoptionYou own your workloads here in the ways that matter most: the Terms leave you owning your inputs and outputs, ZDR-by-default with no-training keeps them yours, and the open-weight catalogue on an OpenAI-compatible API is a clean portable exit. But overall ownership is partial, not substantial: the no-retention posture is Together's own self-attestation rather than independently audited, and the US HQ with DPA-confirmed North America default routing carries standing CLOUD Act exposure even for EU-hosted workloads, so data-control is moderate rather than strong. Pin the EU region on a paid tier if residency matters, and teams needing an audited no-retention guarantee should contract it in the DPA rather than rely on the default terms.

Sources

The same evidence records as the entry sheet. Read means the text was verified; unverified means it is known to exist but not yet read.

Privacy Policyread2026-07-25
Privacy Policy: inputs and outputs are not stored by default (zero data retention); under ZDR content is not stored, retained, or used for model training or product improvement except as needed to provide the Services; temporary caching may be used for performance; training on data is opt-in and off by default, controlled by an org-admin Privacy & Security setting.
Documentationread2026-07-25
Privacy and security docs: HIPAA-aligned data encryption in transit and at rest, audit logging and business associate agreements; layered security architecture with MFA/RBAC, continuous monitoring and regular vulnerability assessments; ZDR restated.
Vendor announcementread2026-07-25
SOC 2 Type II announcement: achieved via an independent, multi-month audit validating access management, data encryption, incident response and change management; regular penetration testing.
Documentationread2026-07-25
EU data centres and dedicated model deployment - dedicated endpoints on targeted data centres including EU locations (Sweden GPU capacity) - are available only on Scale and Enterprise tier plans.
Vendor announcementunverified2026-07-25
Serverless per-token pricing page (live rates not read from source this session): gpt-oss-120B ~$0.15/$0.60, Qwen3-235B ~$0.20/$0.60, DeepSeek-V3 ~$1.25/M - approximate and move frequently.
Documentationread2026-07-25
OpenAI-compatibility docs: an OpenAI-compatible /v1 REST API at api.together.ai/v1, used by pointing an existing OpenAI client at Together's base URL and API key (TOGETHER_API_KEY), with chat/completions, streaming, tool use and structured outputs across the open-weight catalogue.
Terms of serviceread2026-07-25
Terms of Service: as between you and Company you exclusively own all right, title and interest in Your Content and Output, granting Company only a limited license to operate them to provide the Services; Together does not use your data to train its models without your explicit opt-in and consent; the Company owns Company IP and Usage Data.
Third-party analysisread2026-07-25
Independent third-party price/performance analysis of Together AI corroborates the approximate serverless rates and shows the same open-weight models served across many providers (portability).
Data Processing Addendumread2026-07-25
Data Processing Addendum: Together (US) Inc.