Snowflake AI Vendor Risk Profile

Cloud data platform with Cortex AI, providing LLM-powered SQL functions, document processing, and AI assistants that operate directly on data warehouse content. Integrates frontier models alongside open-source models for enterprise AI workflows.

Visit Snowflake website

HQ: United States · Integrator

Risk overview

Risk score: 24/100

Risk tier: Moderate

Safety rating: 76/100 (higher is better)

Lower risk scores indicate lower assessed risk.

Last verified: Apr 19, 2026 (107 days ago) Aging · 9 cited sources

Risk dimensions

DimensionRisk score
Data Handling28/100
IP Exposure26/100
Jurisdiction13/100
Security22/100
Regulatory Compliance20/100
Transparency50/100
Business Stability10/100
Dependency Chain26/100
Agent GovernanceNot assessed

Analyst summary

Rating: Recommended

Snowflake Cortex AI runs LLMs (Meta Llama, Mistral, and others) inside Snowflake's secure perimeter, meaning customer data never leaves the customer's account to reach an external LLM provider. This is a strong data-governance story, backed by FedRAMP High (GovCloud), HIPAA BAA, and HITRUST. The 2024 credential-stuffing incident is a reminder that MFA enforcement is critical.

Bottom line: The strongest enterprise AI story for data-warehouse-resident workloads; MFA enforcement is table stakes.

Strengths

Concerns

Best for

Avoid if

Citations

  1. Data Handling — Hipaa Baa Available (primary · high confidence)
    https://www.snowflake.com/trust-center/compliance/hipaa-hitrust/
    Verified 2026-04-19
    Snowflake offers HIPAA Business Associate Agreements and HITRUST CSF certification for healthcare customers.
  2. Data Handling — Third Party Data Sharing (primary · high confidence)
    https://docs.snowflake.com/en/user-guide/snowflake-cortex/llm-functions
    Verified 2026-04-19
    Cortex LLM functions run LLMs (including Meta Llama and Mistral) within Snowflake's secure perimeter; customer data is not sent to external LLM providers.
  3. Data Handling — Trains On User Data (primary · high confidence)
    https://www.snowflake.com/trust-center/cortex-ai/
    Verified 2026-04-19
    Snowflake Cortex AI does not use customer data to train any Snowflake-owned or third-party foundation models. Customer data stays in the customer's Snowflake account.
  4. Governance — Security Incidents (secondary · high confidence)
    https://www.bleepingcomputer.com/news/security/snowflake-customer-data-breach-extortion-campaign/
    Verified 2026-04-19
    In 2024, a credential-stuffing campaign targeted Snowflake customer accounts without MFA, resulting in data theft from AT&T, Ticketmaster, and other major customers.
  5. Ip Profiles — User Owns Outputs (primary · high confidence)
    https://www.snowflake.com/legal/customer-relationship-agreement/
    Verified 2026-04-19
    Customer retains all right, title, and interest in Customer Data, including outputs generated by Cortex AI from Customer Data.
  6. Jurisdiction Profiles — Incorporation Country (official · high confidence)
    https://investors.snowflake.com/financials/sec-filings/
    Verified 2026-04-19
    Snowflake Inc. is a Delaware corporation headquartered in Bozeman, Montana (SEC Form 10-K).
  7. Security Compliance — Fedramp Authorized (primary · high confidence)
    https://www.snowflake.com/trust-center/compliance/fedramp/
    Verified 2026-04-19
    Snowflake holds FedRAMP High authorization on AWS GovCloud and FedRAMP Moderate on commercial regions.
  8. Security Compliance — Iso 27001 (primary · high confidence)
    https://www.snowflake.com/trust-center/compliance/
    Verified 2026-04-19
    Snowflake holds ISO/IEC 27001, 27017, 27018, and 27701 certifications.
  9. Security Compliance — Soc2 Type2 (primary · high confidence)
    https://www.snowflake.com/trust-center/compliance/
    Verified 2026-04-19
    Snowflake maintains SOC 1 Type II and SOC 2 Type II attestations across all commercial regions.