MachineTranslation.com Trust Center
Last Update: April 30, 2026
Secure. Transparent. Responsible. Trusted.
Welcome to MachineTranslation.com's Trust Center — your single source of truth for our security, privacy, compliance, and responsible AI practices. We’re committed to safeguarding your information while delivering high-speed, AI-enhanced translations at scale.
"Translation, done fast. Privacy, done right"
At a Glance







| Control | Implementation |
|---|---|
| Encryption in Transit | TLS 1.3 with HSTS; all user traffic is HTTPS |
| Encryption at Rest | AES-256 encryption for stored content and logs |
| Secure Development Practices | OWASP Top 10-aligned secure SDLC; SAST and code reviews |
| User Authentication | Secure session management |
| Penetration Testing | Biannual third-party testing + monthly internal scans |
| Access Controls | RBAC, email-based MFA with re-authentication every 30 days; privilege reviews quarterly |
| Logging & Auditing | Full user and admin activity logging; audit trail maintained for 6mos |
| Aspect | Detail |
|---|---|
| Uptime SLA | 99.9% for enterprise users |
| Disaster Recovery (DR) | Daily encrypted backups, multi-region deployment |
| Monitoring | 24/7 alerting on health, latency, engine failures |
| Segmentation Analysis | Score transparency for each translated segment |
| Translation Output Scoring | Consensus-based scoring across 22 AI models; the translation with the highest model agreement is selected per sentence. |
| Policy Area | Status / Description |
|---|---|
| Data Minimization | Only necessary data is collected and processed |
| Retention Policy | Default auto-deletion after 6 months for unregistered users; immediate deletion on request available |
| Temporary Access Links | Unique translation URLs generated by unregistered users are accessible for only 20 minutes, after which they are permanently invalidated |
| User Consent | Explicit opt-in is required for data sharing with third-party MT engines |
| De-identification | No persistent identifiers are stored with translation data |
| AI Model Training | Translation content submitted by users is not used to train AI models by MachineTranslation.com or its third-party engine providers |
Ethical AI & MachineTranslation Usage
| Framework / Report | Status | Notes |
|---|---|---|
| DPIA & PIA | ✅ Complete | Last updated: March 2026 |
| ISO/IEC 27001 | ⬜ In Planning | Rollout begins 2026 |
| Vulnerability Disclosure Policy | ✅ Active | Public submission form available |
Available on request (under NDA):
| Provider | GDPR Compliant | ISO 27001 Certified | SOC 2 Compliant | Notes / Citations |
|---|---|---|---|---|
| Amazon Translate | ✅ | ✅ | ✅ | AWS publishes GDPR support with SCCs & ISO certificates; SOC reports available for AWS services including Translate via Artifact. (aws.amazon.com) |
| DeepL Translate | ✅ | ✅ | ✅ | DeepL states GDPR compliance, has ISO 27001 and SOC 2 Type II audit reports for its Pro service. (deepl.com) |
| Google Cloud Translation API | ✅ | ✅ | ✅ | Google Cloud commits to GDPR & ISO certifications; SOC 2 covered within broader cloud attestations. (cloud.google.com) |
| Microsoft Translator (Azure) | ✅ | ✅ | ✅ | Azure has hundreds of compliance offerings including GDPR, ISO 27001, SOC 2 for its cloud services. (go-cloud.io) |
| OpenAI (API/ChatGPT) | ✅ | ✅ | ✅ | OpenAI maintains ISO 27001 & SOC 2 Type 2 and supports GDPR via contractual commitments. (openai.com) |
| Libre Translate | ✅ | NA | NA | LibreTranslate is open source and GDPR compliance depends on deployment; no central ISO/SOC reports published. |
| Lingvanex | ✅ | NA | NA | Lingvanex policy asserts GDPR compliance; formal ISO/SOC certification not clearly published. |
| ModernMT | ✅ | ✅ | NA | Some marketplace sources state GDPR and ISO 27001; formal up‑to‑date certification docs harder to find publicly. |
| Niutrans | NA | NA | NA | No widely available public compliance documentation. |
| RoyalFlush | NA | NA | NA | No public compliance information available. |
| Mistral AI | ✅ | NA | NA | Many cloud/LLM providers comply with GDPR; formal ISO/SOC certifications not always published. |
| Claude (Anthropic) | ✅ | ✅ | ✅ | Anthropic publishes compliance credentials including SOC 2 and GDPR support for enterprise offerings. |
| Gemini (Google) | ✅ | ✅ | ✅ | Gemini runs on Google Cloud infrastructure with cloud‑level compliance. (cloud.google.com) |
| Facebook mBART via Hugging Face | ✅ | NA | NA | If using Hugging Face/Meta infrastructure, compliance depends on host setup; not centrally certified as a product. |
| DeepSeek | NA | NA | NA | No reliable published compliance documents. |
| Qwen (by Alibaba/other) | NA | NA | NA | Alibaba Cloud has compliance programs, but specific model certification info isn’t always published. |
| Grok (xAI) | NA | NA | NA | No widely published compliance docs; compliance posture unclear publicly. |
| AI/MT Engine | Logging Behavior | Data Retention | Reference |
|---|---|---|---|
| Amazon Translate | API calls logged via AWS CloudTrail; content may be included in diagnostic logs. | Data stored temporarily as needed for processing; customers manage retention policies. | AWS Documentation |
| DeepL Translate | Access logs retained for billing and security; content not stored or used for training. | Translations stored only if manually saved by users; otherwise, content is not retained. | DeepL Pro License |
| Google Translate | Translation data may be logged unless users opt out; administrators can set data retention policies. | By default, content is deleted after 90 days unless a different policy is set. | Google Cloud Translation Hub |
| Microsoft Translator | Data processed in compliance with Microsoft's data privacy and security standards. | Translation data typically deleted after 7 days, but may be retained up to 14 days in case of service issues. | Microsoft Learn |
| ModernMT | Specific logging practices not detailed; likely customizable based on deployment. | Not explicitly stated; may depend on user configuration. | ModernMT GitHub |
| OpenAI (ChatGPT) | User inputs stored to improve service quality; users can manage data retention settings. | Data retained based on user settings; enterprise users can control retention periods. | OpenAI Privacy Policy |
| Libre Translate | Logging is minimal; users can enable Google Analytics if desired. | No data retained by default; users have full control over data storage. | LibreTranslate Privacy |
| Lingvanex | Does not retain analytics data, except for hardware ID, email, name, and geographic location. | Minimal data retention; users can opt for on-premise solutions for enhanced privacy. | Lingvanex Privacy Policy |
| Niutrans | Specific practices not publicly detailed. | Information not readily available. | Niutrans |
| RoyalFlush | Details not publicly disclosed. | Information not readily available. | RoyalFlush |
| Mistral AI | API call logs stored for 30 days for auditing; data not used for training. | Inputs and outputs retained for 30 days unless zero data retention is activated. | Mistral AI Terms |
| Claude (Anthropic) | Prompts and responses stored for 30 days; users can request earlier deletion. | Enterprise users can set custom retention periods (minimum 30 days). | Anthropic Privacy Center |
| Gemini (Google) | Data collected and retained for up to 3 years; users can control retention settings. | Conversations saved for up to 72 hours even if activity tracking is disabled. | Google Workspace Blog |
| Facebook mBART via Hugging Face | Depends on Hugging Face's policies; users should review their data handling practices. | Subject to Hugging Face's data retention policies. | Hugging Face mBART |
| DeepSeek | User inputs retained for 30 days; system logs may be kept for 90 days. | Data retention varies by data type; specific policies are in place for different data categories. | DeepSeek Privacy Policy |
| Qwen | Specific practices not publicly detailed. | Information not readily available. | Qwen |
| Grok (xAI) | Details not publicly disclosed. | Information not readily available. | xAI |
| Metric | Value |
|---|---|
| System Uptime | 99.96% (last 12 months) |
| Backup Frequency | Daily encrypted snapshots |
| Recovery Point Objective | ≤ 5 minutes |
| Incident SLA (P1) | < 2 hours |
| Inquiry Type | Contact |
|---|---|
| Security Questions | security@machinetranslation.com |
| Report a Vulnerability | Submit via Contact Form |
| Business or Legal Inquiries | contact@machinetranslation.com |
| Date | Status | Update |
|---|---|---|
| 2025-03-12 | Infrastructure failover upgrade | ✅ Completed |
| 2025-03-06 | Privacy Policy revamp (GDPR) | ✅ Published |
| 2024-09-10 | Translation engine bug (Amazon) | ✅ Resolved in 4 hrs |
Subscribe to our Security Status Feed for incident and maintenance alerts
Trusted by AI. Backed by Experts. Built for Global Communication.