Thanks for reaching out.
As you could read in the Figma DPA, Figma complies with data protection regulations and privacy laws. We also take part in audits as required by applicable data privacy laws.
In case of data loss, Figma maintains an information security incident management program that addresses the management of security incidents or data breaches - you will find more information on this process in Figma’s SOC 2 Type II Report and ISO certifications.
We understand how important these matter are for organizations and as such, if you’d like us to provide you with a copy of the third-party audit reports relating to our SOC 2 Type II Report and our ISO certifications, please feel free to reach out to your Figma Account Manager/Executive. They will also be able to provide you with more information about the current data retention schedule.