Get the weekly research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean. No account.
Provider may disclose user profile information, email addresses, usage history, posted content, IP addresses, and traffic data to law enforcement, regulators, or other third parties in connection with suspected Terms of Use violations or unlawful activity.
This analysis describes what LexisNexis's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This provision authorizes disclosure of a defined set of user data categories including IP addresses, usage history, and posted materials to law enforcement and unspecified third parties based on Provider's determination of suspected unlawful activity, without specifying procedural requirements such as legal process requirements or user notification.
Interpretive note: The term 'other third parties' is not defined in the document, creating ambiguity about the range of recipients beyond law enforcement and regulators. Application under GDPR or CCPA may impose additional constraints not addressed in this clause.
Under section 19, Provider may disclose user profiles, email addresses, usage history, IP addresses, posted materials, and traffic information to law enforcement, regulators, or other third parties when Provider deems it appropriate in connection with suspected violations or unlawful activity.
Cross-platform context
See how other platforms handle Provider Disclosure of User Data to Law Enforcement and Third Parties and similar clauses.
Compare across platforms →Monitoring
LexisNexis has changed this document before.
Receive same-day alerts, structured change summaries, and monitoring for up to 25 platforms.
"Provider reserves the right to investigate complaints or reported violations of the Terms of Use and to take any action Provider deems appropriate including but not limited to reporting any suspected unlawful activity to law enforcement officials, regulators, or other third parties and disclosing any information necessary or appropriate to such persons or entities relating to user profiles, e-mail addresses, usage history, posted materials, IP addresses and traffic information.Excerpt from LexisNexis's Terms
1) REGULATORY LANDSCAPE: This provision engages the Electronic Communications Privacy Act, the Stored Communications Act, and applicable state privacy laws governing disclosure of user data to third parties. For EU and UK users, this type of broad third-party disclosure authority may require evaluation under GDPR Article 6 legal bases and Chapter V restrictions on international data transfers. The reference to disclosure to unspecified third parties beyond law enforcement may require evaluation under CCPA for California residents. 2) GOVERNANCE EXPOSURE: Medium. The provision does not specify that legal process is required before disclosure, and the phrase other third parties is not defined, creating ambiguity about the range of recipients. The data categories named, including IP addresses and usage history, may constitute personal data under GDPR. 3) JURISDICTION FLAGS: GDPR and UK GDPR impose restrictions on third-party data disclosures and require a lawful basis; blanket contractual authorization of disclosure may not satisfy GDPR requirements. California CCPA requires disclosure of third-party data sharing practices. Illinois users may have rights under the Illinois Personal Information Protection Act. 4) CONTRACT AND VENDOR IMPLICATIONS: Enterprise users whose employees access LexisNexis through organizational accounts should assess whether this disclosure authority is addressed in their data processing agreements or vendor contracts, particularly if they operate in regulated industries. 5) COMPLIANCE CONSIDERATIONS: Privacy and legal teams should assess whether the scope of third-party disclosure authority in this clause is consistent with their organization's data processing agreements and applicable privacy regulations, and whether a Data Processing Addendum is required for EU or UK user populations.
Full institutional analysis
Regulatory citations, enforcement risk, and due diligence action items.
Monitor: same-day alerts on the platforms you choose. Analyst: full institutional analysis.
Compliance Governance Intelligence
Need to monitor specific governance provisions?
Compliance includes provision-level monitoring, governance timelines, regulatory mapping, and audit-ready analysis.
Built from archived source documents, structured governance mappings, and historical version tracking.
This provision authorizes disclosure of a defined set of user data categories including IP addresses, usage history, and posted materials to law enforcement and unspecified third parties based on Provider's determination of suspected unlawful activity, without specifying procedural requirements such as legal process requirements or user notification.
Under section 19, Provider may disclose user profiles, email addresses, usage history, IP addresses, posted materials, and traffic information to law enforcement, regulators, or other third parties when Provider deems it appropriate in connection with suspected violations or unlawful activity.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by LexisNexis.