The policy discloses that user data is processed and stored in the United States and potentially other countries, and that Discord uses standard contractual clauses and the EU-U.S. and Swiss-U.S. Data Privacy Frameworks as legal transfer mechanisms for EEA and UK data. Named U.S. subsidiaries are identified as subject to DPF compliance.
This analysis describes what Discord's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This provision establishes the legal mechanisms Discord relies upon for cross-border data transfers involving EEA, Swiss, and UK personal data, and names specific U.S. subsidiaries as DPF-certified entities, which is operationally significant for compliance teams assessing adequacy of data transfer safeguards.
Under this clause, personal data from EEA, Swiss, and UK users is transferred to the United States under standard contractual clauses and the EU-U.S. Data Privacy Framework. EEA and UK users retain the rights described in the policy regardless of where their data is processed, and may submit unresolved complaints to the relevant data protection authority or seek binding arbitration under DPF conditions.
Cross-platform context
See how other platforms handle International Data Transfers and Data Privacy Framework and similar clauses.
Compare across platforms →"By accessing or using our services or otherwise providing information to us, you understand that your information will be processed, transferred, and stored in the U.S. and other countries, where different data protection standards may apply and/or you may not have the same rights as you do under local law. When transferring data outside the EEA, we use standard contract clauses (Module 1 and Module 2), and we rely on the European Commission's adequacy decisions about certain countries, as applicable, or other legally compliant mechanisms or conditions for such data transfer. Discord and its U.S. entities/subsidiaries (Backgammon Merger Sub II, LLC, Brazos Games, LLC, Discord International, Inc, Flames Sub LLC, and Sentropy Technologies Inc.) also comply with the EU-U.S. and Swiss-U.S. Data Privacy Frameworks, as well as the UK Extension to the EU-U.S. Data Privacy Framework.Excerpt from Discord's Privacy Policy
1) REGULATORY LANDSCAPE: This provision directly engages GDPR Chapter V on international transfers, the EU-U.S.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
This provision establishes the legal mechanisms Discord relies upon for cross-border data transfers involving EEA, Swiss, and UK personal data, and names specific U.S. subsidiaries as DPF-certified entities, which is operationally significant for compliance teams assessing adequacy of data transfer safeguards.
Under this clause, personal data from EEA, Swiss, and UK users is transferred to the United States under standard contractual clauses and the EU-U.S. Data Privacy Framework. EEA and UK users retain the rights described in the policy regardless of where their data is processed, and may submit unresolved complaints to the relevant data protection authority or seek binding arbitration …
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Discord.