Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
The policy requires that any site linked from a LinkedIn ad that collects sensitive information must use HTTPS. Sensitive information is defined to include financial data, government identification, login credentials, information about minors or students, and the sensitive data categories defined elsewhere in the policy.
This analysis describes what LinkedIn's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This provision establishes a technical security requirement for advertiser landing pages, extending LinkedIn's policy obligations to the external sites linked from ads. Compliance requires advertisers to audit landing page configurations before campaign submission.
This provision establishes that advertisers must ensure their landing pages use HTTPS if those pages collect financial data, government identification, login credentials, or other sensitive information categories. The agreement incorporates this as a condition of ad approval.
How other platforms handle this
If you choose to reveal any personal information about yourself to other users, you do so at your own risk. We strongly encourage you to use caution in disclosing any personal information online.
When you are asked to provide information, you may decline to do so; but if you choose not to provide information that is necessary to provide some of our Services, you may not be able to use those Services.
To stop us collecting your location information, you can update your device settings, stop using the Service, or uninstall our mobile apps.
Monitoring
LinkedIn has changed this document before.
Receive same-day alerts, structured change summaries, and monitoring for up to 20 platforms.
"If you collect sensitive information on the site linked to the ad, you must use HTTPS. Sensitive information includes, but is not limited to, financial info, government-issued identification info, login info such as usernames and passwords, information regarding minors or students, and Sensitive Data as defined below.Excerpt from LinkedIn's Advertising Policies
REGULATORY LANDSCAPE: The HTTPS requirement for sensitive data collection aligns with general data security expectations under GDPR, CCPA, and FTC Act Section 5 enforcement guidance on reasonable data security practices. Specific data security standards for financial information are also governed by the Gramm-Leach-Bliley Act (GLBA) Safeguards Rule for financial services advertisers. Student data is implicated by FERPA if the advertiser is an educational institution or vendor. GOVERNANCE EXPOSURE: Low to Medium. HTTPS adoption is standard practice for any landing page collecting user data, so this requirement is unlikely to create novel compliance obligations for established advertisers. However, smaller advertisers or those using third-party landing page builders should verify HTTPS configuration before ad submission. JURISDICTION FLAGS: The requirement applies globally to all advertiser landing pages linked from LinkedIn ads. EU and UK advertisers face GDPR and UK GDPR technical security obligations that exceed the minimum HTTPS standard. US financial services advertisers face GLBA Safeguards Rule technical security requirements. CONTRACT AND VENDOR IMPLICATIONS: Landing page vendors and web development agencies should confirm HTTPS configuration as a standard deliverable for any page intended for use in LinkedIn advertising campaigns. Contracts should specify HTTPS as a minimum security requirement. COMPLIANCE CONSIDERATIONS: Pre-flight technical review of landing pages should include an HTTPS configuration check for all pages collecting any of the enumerated sensitive information categories. The broad definition of sensitive information in this provision, incorporating the policy's sensitive data targeting categories, means that health, biometric, or genetic data collection on landing pages also triggers the HTTPS requirement.
Regulatory citations, enforcement risk, and due diligence action items.
Ad personalization controls removed. Contact scanning added. Advertiser data partnerships quietly dropped. A timeline of every change.
Provision-level monitoring, governance timelines, and regulatory mapping built from archived source documents and historical version tracking.
This provision establishes a technical security requirement for advertiser landing pages, extending LinkedIn's policy obligations to the external sites linked from ads. Compliance requires advertisers to audit landing page configurations before campaign submission.
This provision establishes that advertisers must ensure their landing pages use HTTPS if those pages collect financial data, government identification, login credentials, or other sensitive information categories. The agreement incorporates this as a condition of ad approval.
ConductAtlas has identified this type of provision across 290 platforms. See the full comparison.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by LinkedIn.