53 Total
15 High severity
30 Medium severity
8 Low severity

Key Facts

What right does Midjourney grant California users regarding disclosure of information?
Midjourney grants California users the right to request disclosure of information about its collection and use of their Personal Information over the past twelve months.
What right does Midjourney grant California users regarding 'sale' or 'sharing' of Personal Information?
Midjourney grants California users the right to opt out of any 'sale' or 'sharing' of Personal Information as those terms are defined by the CCPA.
What right does Midjourney grant California users regarding deletion of Personal Information?
Midjourney grants California users the right to request deletion of Personal Information collected or retained by Midjourney, subject to certain limited exceptions.
What does Midjourney collect from users?
Midjourney collects prompts provided by users, including text, images, and spoken input summarized into text, as well as other content such as photos, videos, documents, and messages inputted into the Services.
What content does Midjourney collect as prompts provided by users?
Midjourney collects prompts provided by users, including text, images, and spoken input summarized into text, as well as other content such as photos, videos, documents, and messages inputted into the Services.
May Midjourney be required to disclose Personal Data to public authorities?
Midjourney may be required to disclose Personal Data to public authorities in response to valid legal requests or as required by law.
When may Midjourney be required to disclose Personal Data to public authorities?
Midjourney may be required to disclose Personal Data to public authorities in response to valid legal requests or as required by law.
Does Midjourney knowingly collect personally identifiable information from anyone under the age of 13?
Midjourney does not knowingly collect personally identifiable information from anyone under the age of 13.
Will Midjourney notify users of a law enforcement request for their personal data?
Midjourney will promptly notify users and provide them a copy of any law enforcement request for their personal data, unless legally prohibited from doing so.
How does Midjourney collect data?
Midjourney collects data through the process of training its machine learning algorithms.
Stay ahead of the changes
Track Midjourney and get the diff the day its terms change.
Summary

This document explains what data Midjourney collects from you—everything you type, upload, or say to the service—how it uses that data, including for training its AI models and advertising, and what rights you have over it. If you are in California, you can ask Midjourney to disclose, delete, or stop selling or sharing your Personal Information. If you are in the EEA, Midjourney must get your explicit consent before placing non-essential cookies, and you can withdraw that consent whenever you choose.

Analysis

This document establishes Midjourney's data collection, use, sharing, and retention practices, as well as user rights with respect to Personal Information and Personal Data. Midjourney collects broad user-generated inputs—including text prompts, images, spoken input converted to text, photos, videos, documents, and messages—and uses that data for purposes including machine learning training, marketing, and advertising. Retention of Personal Data is limited to what is necessary for the purposes set out in the Privacy Policy. The document grants California users formal rights to disclosure, opt-out of sale or sharing, and deletion of their Personal Information, subject to defined exceptions, and commits Midjourney to promptly notifying users of law enforcement data requests unless legally prohibited. Non-essential cookies require explicit prior consent from EEA users, who may withdraw that consent at any time via the Privacy Settings page.

What this means for you

Midjourney collects all content you submit to the service and uses it for purposes that include AI model training and targeted advertising. Your data may be shared with third-party analytics and advertising partners, and may be disclosed to public authorities in response to valid legal requests—though Midjourney will notify you of such requests unless legally barred from doing so. If you are a California user, you can exercise your right to opt out of the sale or sharing of your Personal Information, request a disclosure of how your data was collected and used over the past twelve months, or request deletion of your Personal Information by contacting Midjourney directly. If you are an EEA user, you can manage or withdraw your consent to non-essential cookies at any time through the Privacy Settings page.

Institutional Analysis
Stay ahead of the changes

Institutional analysis available with Insight

Which mapped governance frameworks each document engages, tied to the specific provisions that engage them.

4 important changes detected

9 versions captured · Last updated: September 2026

What changed Midjourney's privacy policy, updated in an update detected on September 5, 2026, expands the definition of personal data collected and clarifies how that data is used across multiple categories. The updated policy now explicitly lists additional data types including credit card information, organizational data, contact details, and data collected through third-party sources and tracking technologies. The revised language also reorganizes and expands the purposes for which Midjourney uses personal data, adding explicit language about purchase completion, subscription management, and event-related marketing, while maintaining existing purposes for service improvement, communications, and business transfers.
Why this matters The updated policy explicitly discloses a broader range of personal data that Midjourney collects, including credit card information, location data, device identifiers, organizational information, and data from third-party sources. The revised terms also clarify expanded purposes for using this data, including purchase and subscription processing, marketing communications, event-related activities, and business analytics. The policy states that cookies and tracking technologies are used for marketing and advertising purposes where consent is obtained. You can review Midjourney's Cookie Policy for additional details about tracking technology use and manage cookie preferences through your browser settings.
View full change record →
What changed The change detected on August 29, 2026 involves a modification to Midjourney's documentation navigation structure. The word 'Style Reference' was changed to 'Edit Model' in the table of contents for the Midjourney Data Retention & Privacy FAQ. This is a documentation labeling update with no impact on privacy policy substantive content or user obligations.
Why this matters This change is a documentation navigation update only. The label 'Style Reference' was changed to 'Edit Model' in Midjourney's FAQ table of contents. No substantive changes to privacy policy, data handling, user rights, or operational procedures are reflected in this modification. Users face no new obligations or altered terms as a result.
View full change record →

August 18, 2026 low

Midjourney's Data Retention & Privacy FAQ was modified on August 18, 2026 with one sentence-level change. Based on the provided diff context, the navigation menu or documentation structure was updated …

View change record →
May 12, 2026 low

Midjourney removed seven structural sections from its Data Retention & Privacy FAQ on May 12, 2026, including introductory content, articles on data sharing and security, children's privacy provisions, links to …

View change record →
Featured, High severity
Featured, Medium severity

Complete Provision Index

Every distinct legal provision identified in this document. Featured provisions appear above with analysis.

53 provisions
12 featured
15 clause types
15 high severity
Targeting and Audience Restrictions 1 1 high
Stay ahead of the changes

Monitoring

Midjourney has updated this document before. Monitor includes same-day alerts, structured change summaries, and monitoring for up to 20 platforms.

Stay ahead of the changes

Governance Intelligence

Need provision-level monitoring and regulatory mapping? Insight includes governance timelines, drift analysis, and full provision tracking.

Cross-platform context

See how other platforms handle California CCPA access and data portability rights granted and similar clauses.

Compare across platforms →

Mapped Governance Frameworks

BIPA
Illinois, USA
View official text ↗
CCPA/CPRA
California, USA
View official text ↗
Connecticut Data Privacy Act Amendments
US-CT
View official text ↗
CAN-SPAM
United States Federal
View official text ↗
FTC Act Section 5
United States Federal
View official text ↗
GDPR
European Union
View official text ↗
Indiana Consumer Data Protection Act
US-IN
View official text ↗
Kentucky Consumer Data Protection Act
US-KY
View official text ↗
UK GDPR
United Kingdom
View official text ↗
Universal Opt-Out Mechanism Expansion 2026
US
View official text ↗
Archival ProvenanceSource & Archival Record
Last Captured September 11, 2026 00:18 UTC
Capture Method Automated scheduled archival capture
Document ID CA-D-000828
Version ID CA-V-006626
SHA-256 23a8a8033f15979bd7e6f5241f225d23e2f7d0ce03552820b401e6db2874588b
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Hash verified

Governance Monitoring

Monitor governance changes across the platforms you rely on.

Structured alerts for policy changes, governance events, and provision updates across 352+ platforms.

Start monitoring → Compare plans