A multinational technology corporation that develops and licenses software, hardware, and cloud computing services, including the Windows operating system, Office productivity suite, Xbox gaming platform, and Azure cloud services. The company operates major digital platforms and services used by billions of consumers and businesses worldwide, making its policies on data privacy, content moderation, and AI governance significant for user rights and digital market competition. As a designated gatekeeper under various regulatory frameworks, its policy decisions regarding platform access, data handling, and algorithmic transparency have broad implications for the technology industry.
High, provisions that significantly limit your legal rights, authorize broad data collection, or create material financial exposure. Medium, provisions worth knowing about but with partial protections or limited scope. Low, standard terms with minimal consumer impact.
Higher = more protective of you, the user/customer — a deliberately user-protective lens, not a universal “good vs bad” score. Computed algorithmically from Microsoft’s cited governance stances; no dimension we haven’t confidently read is ever counted against the score. Free, reproducible, and never purchasable.
This clause extends the enumerated principles across the full AI system lifecycle—design, build, and operation—not merely at a single stage.
By enumerating five specific ethical considerations as requirements for generative AI use, Microsoft establishes a defined checklist of obligations rather than a general aspiration.
This clause ties legal and regulatory compliance and bias avoidance directly to the goal of responsible and fair AI use, establishing both as affirmative requirements rather than optional practices.
Requiring human oversight means that AI decisions or outputs are not fully autonomous; human review is a stated obligation within Microsoft's responsible AI framework.
This clause simultaneously asserts a data retention function (remembering details) and a data protection commitment, making both the capability and the security posture explicit.
This document sets out Microsoft's rules for how its AI systems—including Copilot—must be built and used responsibly, requiring equal treatment of all users, human oversight of AI, and protection of …
This document establishes Microsoft's governance framework and internal standards for the design, development, and deployment of artificial intelligence systems across its product portfolio, including Azure AI, Copilot, and Bing. The …
This document sets out Microsoft's rules and values for how it builds and deploys AI, centering on fairness, privacy, safety, and accountability. When you use Copilot at work, it operates …
This agreement sets the rules for using Microsoft's Services, including what rights Microsoft has over content you upload and what you can and cannot do with its AI tools. If …
This document explains what data Microsoft collects about you—including your location, browsing history, and the content of your emails, chats, and files—and how Microsoft uses that data, including to show …
Microsoft substantially reorganized and rewrote its privacy statement on June 26, 2026. The company removed detailed explanations of specific third-party data sources it previously disclosed (data brokers, public social media …
View change record →Microsoft modified its data retention policy language on April 19, 2026. Previously, the policy described specific retention criteria including whether customers expected data to be retained until they removed it, …
View change record →Microsoft revised its data retention policy language on April 1, 2026. Previously, the policy outlined specific retention criteria including whether customers expected data retention until deletion, whether automated deletion controls …
View change record →Microsoft updated its Privacy Statement in March 2026 with two substantive changes: removal of language describing additional rights for European Economic Area users, and addition of language authorizing contact via …
View change record →Microsoft removed a sentence from its privacy statement that described consent-based marketing contact via auto-dialer and prerecorded voice technology potentially generated using AI. The updated document no longer explicitly discloses …
View change record →Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
ConductAtlas tracks 5 Microsoft documents including terms of service, privacy policy, and other governance documents. Every document is captured daily with cryptographic verification.
Microsoft has made 16 policy changes in the past 12 months across the documents ConductAtlas tracks.
ConductAtlas has classified 110 provisions across Microsoft's tracked documents. 17 are rated high severity, 67 medium, and 26 low.
Yes. Monitor subscribers ($4.99/month) can add Microsoft to their watchlist and receive same-day email alerts whenever any tracked document changes.