Provision record
Kick · Kick Privacy Policy · View original document ↗

International Data Transfers Outside EEA, UK, and Switzerland

Medium severity High confidence Explicitdocumentlanguage Unique · 0 of 352 platforms
Get alerted the next time Kick changes these terms. Follow Kick →
Share 𝕏 Share in Share 🔒 PDF
Monitor governance changes for Kick Monitor emails you the same day this changes. The archive stays free.
Follow Kick →

Get the weekly research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean. No account.

Document Record

What it is

The policy states that personal data is transferred to and stored in countries outside users' jurisdictions, including the United States, and that transfers from the EEA, UK, and Switzerland are conducted under adequacy decisions or standard contractual clauses adopted by the European Commission.

This analysis describes what Kick's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

This provision establishes that personal data of EEA, UK, and Swiss users is processed in the United States and other third countries, relying on adequacy decisions or standard contractual clauses as the stated transfer mechanism. The UK's post-Brexit transfer framework and Switzerland's own adequacy assessment framework operate separately from EU GDPR and should be evaluated independently.

Consumer impact (what this means for users)

Under this clause, personal information of EEA, UK, and Swiss users may be transferred to and stored in countries outside those regions, including the United States. The agreement states that transfers will be conducted under adequacy recognition or standard contractual clauses, and users may inquire about specific safeguards by contacting Kick.

What you can do

⚠️ These actions may provide transparency or partial mitigation but may not fully address the underlying issue. Effectiveness varies by jurisdiction and individual circumstances.
  • Export Your Data
    Contact privacy@kick.com or the DPO at dpo@kick.com to inquire about the specific safeguards used for international transfers of your personal data. Include your registered email address and jurisdiction. Kick states it will respond within 30 days.

Cross-platform context

See how other platforms handle International Data Transfers Outside EEA, UK, and Switzerland and similar clauses.

Compare across platforms →

Monitoring

Kick has changed this document before.

Receive same-day alerts, structured change summaries, and monitoring for up to 20 platforms.

Follow Kick → Or create a free account →
▸ View Original Clause Language DOCUMENT RECORD
"
The personal information we collect may be transferred to and stored in countries outside of the jurisdiction you are in where we and our third-party service providers have operations, including in the United States. If you are accessing our Services from the European Economic Area ('EEA'), UK or Switzerland, your personal information will be processed outside of the EEA, the UK and Switzerland. In the event of such a transfer, we will ensure that: (i) the personal information is transferred to countries recognised as offering an equivalent level of protection to that of the EEA; or (ii) the transfer is made pursuant to appropriate safeguards, such as standard contractual clauses adopted by the European Commission.

Excerpt from Kick's Privacy Policy

ConductAtlas Analysis

Institutional analysis (regulatory & governance intelligence)

1) REGULATORY LANDSCAPE: International data transfers from the EEA engage GDPR Chapter V, which requires an adequacy decision, standard contractual clauses, or another permissible transfer mechanism. UK data transfers are governed by the UK GDPR and the UK's International Data Transfer Agreement framework. Swiss transfers are governed by the Swiss Federal Act on Data Protection. The US adequacy framework (EU-US Data Privacy Framework) should be confirmed as applicable to Kick's specific processing activities and subprocessors. 2) GOVERNANCE EXPOSURE: Medium. The policy's reliance on adequacy recognition and standard contractual clauses is consistent with standard industry practice for GDPR compliance. However, the adequacy framework for US transfers remains subject to legal challenge history, and ongoing compliance requires monitoring of regulatory developments. The UK operates a separate transfer mechanism framework that requires independent documentation. 3) JURISDICTION FLAGS: EEA, UK, and Swiss users have heightened exposure. The specific adequacy status of all countries where Kick and its subprocessors store data should be confirmed, as adequacy decisions do not cover all countries. The UK's International Data Transfer Agreement is a distinct instrument from the EU's standard contractual clauses and requires separate implementation. 4) CONTRACT AND VENDOR IMPLICATIONS: All subprocessors and third-party service providers receiving EEA, UK, or Swiss personal data should have documented transfer mechanisms in place. Kick's DPO contact at dpo@kick.com should be able to provide details of the specific safeguards used for each transfer context. 5) COMPLIANCE CONSIDERATIONS: Legal teams should confirm which specific transfer mechanism is in place for each major data recipient country and subprocessor, and maintain a transfer impact assessment where required. The DPO at dpo@kick.com should be engaged to provide transfer mechanism documentation upon request. Compliance with the UK IADTA and Swiss nFADP transfer requirements should be documented separately from EU GDPR compliance.

Full institutional analysis

Regulatory citations, enforcement risk, and due diligence action items.

Applicable agencies

  • State AG
    State attorneys general and, for EEA users, national data protection authorities have jurisdiction over international data transfer compliance under applicable privacy frameworks
    File a complaint →

Provision details

Document information
Document
Kick Privacy Policy
Entity
Kick
Document last updated
May 5, 2026
Tracking information
First tracked
July 9, 2026
Last verified
July 9, 2026
Record ID
CA-P-016227
Document ID
CA-D-00728
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
915ea7eca1a6a6df1310948aea817c5af3c8c67439c498d0f470fd4f66abac36
Analysis generated
July 9, 2026 09:53 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Kick
Document: Kick Privacy Policy
Record ID: CA-P-016227
Captured: 2026-07-09 09:53:56 UTC
SHA-256: 915ea7eca1a6a6df…
URL: https://conductatlas.com/platform/kick/kick-privacy-policy/provision/CA-P-016227/international-data-transfers-outside-eea-uk-and-switzerland/
Accessed: July 24, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
Medium
Categories

Other risks in this policy

Governance intelligence across arbitration, AI governance, data rights, indemnification, and retention

Provision-level monitoring, governance timelines, and regulatory mapping built from archived source documents and historical version tracking.

Frequently Asked Questions

What does Kick's International Data Transfers Outside EEA, UK, and Switzerland clause do?

This provision establishes that personal data of EEA, UK, and Swiss users is processed in the United States and other third countries, relying on adequacy decisions or standard contractual clauses as the stated transfer mechanism. The UK's post-Brexit transfer framework and Switzerland's own adequacy assessment framework operate separately from EU GDPR and should be evaluated independently.

How does this clause affect you?

Under this clause, personal information of EEA, UK, and Swiss users may be transferred to and stored in countries outside those regions, including the United States. The agreement states that transfers will be conducted under adequacy recognition or standard contractual clauses, and users may inquire about specific safeguards by contacting Kick.

Is ConductAtlas affiliated with Kick?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Kick.