Provision record
Coursera · Coursera Privacy Notice · View original document ↗

Biometric data destroyed after verification or two years

High severity High confidence Explicit document language Common · 274 of 352 platforms

Key Facts

When does Coursera destroy biometric facial data?
Coursera destroys biometric facial data upon successful completion of verification and in no event later than two years after collection.
Stay ahead of the changes
Track Coursera and get the diff the day its terms change.
Share 𝕏 Share in Share 🔒 PDF

This analysis describes what Coursera's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

The clause establishes a hard maximum retention period of two years for biometric facial data, a particularly sensitive category of personal data.

Recent Activity

This document changed recently

Medium May 11, 2026

The updated terms now explicitly disclose that Coursera processes communications through voice-enabled features that transcribe audio into text, and clarify that personal data may be shared with third parties including affiliates and business partners. The policy expands descriptions of AI-driven personalization and chatbot applications that use your learning and interaction data. The terms establish that data may be transferred to entities that become Coursera affiliates or subsidiaries during business transitions. You should review the updated guidance that cautions against including unnecessary or sensitive personal data in the platform's free-text and voice-enabled communication features.

View change record →
Medium Apr 18, 2026

The updated Privacy Notice removes explicit language stating that the policy does not apply to Coursera's Ollie mobile application and no longer directs users to a separate Ollie Privacy Notice for that app. Previously, users of Ollie had clear notice to consult a dedicated privacy policy; that direction is now absent from the main Privacy Notice. The updated notice also narrows the scope of covered entities by removing 'affiliates' from the definition of Coursera, stating the policy now applies to Coursera, Inc., its subsidiaries, and international branches only. Users of the Ollie App should independently verify what privacy terms currently govern that application, as the main Coursera Privacy Notice no longer explicitly addresses Ollie coverage.

View change record →

Clause Stability Stable

0
Changes
4
Months Monitored
Jul 10, 2026
First Seen
Jul 10, 2026
Last Seen
This clause type exists across 1629 other provisions on other platforms.

Consumer impact (what this means for users)

Your biometric facial data will not be retained by Coursera beyond the earlier of successful verification completion or two years.

How other platforms handle this

Affirm Medium

Affirm will retain your information in accordance with our Privacy Policy and any applicable state or federal law, rule or regulation.

Mistral AI Medium

Mistral AI shall retain the Customer Exportable Data and Assets for a period of thirty (30) days from the earlier between (a) the expiration of the Transitional Period or (b) Customer's notification under Section 2.2.2 (b) of these Additional Terms.

Walmart Medium

Any biometric data we collect from you will be deleted within 48 hours and will be used for the purpose of enabling you to see yourself wearing virtual eyeglass frames.

See all platforms with this clause type →
▸ View Original Clause Language DOCUMENT RECORD
"
biometric facial data...is destroyed upon successful completion of verification and in no event after 2 years.

Excerpt from Coursera's Privacy Notice

Applicable regulations

CCPA/CPRA
California, USA
GDPR
European Union
Indiana Consumer Data Protection Act
US-IN
UK GDPR
United Kingdom

Provision details

Document information
Document
Coursera Privacy Notice
Entity
Coursera
Document last updated
May 5, 2026
Tracking information
First tracked
May 21, 2026
Last verified
July 9, 2026
Record ID
CA-P-028934
Document ID
CA-D-00158
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
3c5d29b9e68e11ce59e899d357a4125c9cdd43a884fc699ab73522c51379edab
Analysis generated
May 21, 2026 05:07 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Coursera
Document: Coursera Privacy Notice
Record ID: CA-P-028934
Captured: 2026-05-21 05:07:28 UTC
SHA-256: 3c5d29b9e68e11ce…
URL: https://conductatlas.com/platform/coursera/coursera-privacy-notice/provision/CA-P-028934/biometric-data-destroyed-after-verification-or-two-years/
Accessed: Aug. 18, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
High
Categories

Other risks in this policy

Get the research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.

Frequently Asked Questions

What does Coursera's Biometric data destroyed after verification or two years clause do?

The clause establishes a hard maximum retention period of two years for biometric facial data, a particularly sensitive category of personal data.

How does this clause affect you?

Your biometric facial data will not be retained by Coursera beyond the earlier of successful verification completion or two years.

How many platforms have this type of clause?

ConductAtlas has identified this type of provision across 274 platforms. See the full comparison.

Is ConductAtlas affiliated with Coursera?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Coursera.