Provision record
Minecraft · Minecraft Privacy Statement · View original document ↗

Regional Privacy Rights (EU, UK, California)

Medium severity Low confidence Inferredfromcontext Common · 295 of 352 platforms
Get alerted the next time Minecraft changes these terms. Follow Minecraft →
Share 𝕏 Share in Share 🔒 PDF
Recent governance activity Minecraft recorded 4 documented changes in the last 30 days.
Follow Minecraft →
Monitor governance changes for Minecraft Monitor emails you the same day this changes. The archive stays free.
Follow Minecraft →

Get the weekly research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean. No account.

Document Record

What it is

The policy establishes rights for EU residents under GDPR, UK residents under UK GDPR, and California residents under CCPA/CPRA to access, correct, delete, or restrict processing of their personal data, and to lodge complaints with relevant supervisory authorities. These rights are exercised through Microsoft's privacy request mechanisms.

This analysis describes what Minecraft's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

This provision establishes the procedural mechanisms through which users in regulated jurisdictions can exercise their statutory privacy rights in relation to Minecraft data. The rights are administered through Microsoft's centralized privacy infrastructure, meaning request processing is governed by Microsoft's enterprise data subject request procedures.

Interpretive note: The actual policy text specifying rights mechanisms was not rendered in the provided HTML; the rights described are inferred from the document's subject matter, applicable regulatory requirements, and Microsoft's known privacy infrastructure.

Clause Stability Stable

0
Changes
3
Months Monitored
May 20, 2026
First Seen
May 22, 2026
Last Seen
This clause type exists across 5261 other provisions on other platforms.

Change history

removed Jul 10, 2026

Removal of region-specific privacy rights provisions eliminates accessible descriptions of user rights under GDPR, UK GDPR, and CCPA frameworks.

View full change record →
added Jun 8, 2026

This addition reflects enhanced transparency regarding jurisdiction-specific privacy rights, addressing GDPR, UK GDPR, and CCPA/CPRA compliance obligations that were previously handled only through the Microsoft Privacy Statement.

View full change record →

Consumer impact (what this means for users)

Under this provision, EU, UK, and California residents have documented pathways to request access, correction, deletion, or portability of their Minecraft-related personal data through Microsoft's privacy dashboard. The agreement also discloses the right to lodge complaints with the applicable supervisory authority, including EU national data protection authorities, the UK ICO, and the California Privacy Protection Agency.

What you can do

⚠️ These actions may provide transparency or partial mitigation but may not fully address the underlying issue. Effectiveness varies by jurisdiction and individual circumstances.
  • Delete Your Data
    Navigate to account.microsoft.com/privacy, sign in with your Microsoft account, and select the relevant option to access, download, or request deletion of your personal data associated with Minecraft services.

How other platforms handle this

Skillshare Medium

You may make a verifiable consumer request related to your personal information twice per 12-month period.

Discord Medium

When you exercise any of your applicable legal rights to access, amend, or delete your personal information, we may request additional information from you for the purpose of confirming your identity.

Anthropic Medium

where the EU GDPR or UK GDPR applies, we will respond within one calendar month of receiving a verifiable request, and where your request is complex...we may extend that period by up to a further two months.

See all platforms with this clause type →

Monitoring

Minecraft has changed this document before.

Receive same-day alerts, structured change summaries, and monitoring for up to 20 platforms.

Follow Minecraft → Or create a free account →
ConductAtlas Analysis

Institutional analysis (regulatory & governance intelligence)

(1) REGULATORY LANDSCAPE: This provision implicates GDPR Articles 15-22 (data subject rights), UK GDPR equivalent articles, and CCPA/CPRA Sections 1798.100-1798.125. Enforcement authorities include EU national data protection authorities, the UK ICO, and the CPPA. The policy's routing of rights requests through Microsoft's centralized infrastructure should be evaluated to confirm that response timelines and scope align with statutory requirements (30 days under GDPR, 45 days under CCPA). (2) GOVERNANCE EXPOSURE: Medium. Centralized rights request processing through Microsoft's infrastructure is operationally efficient but creates compliance dependencies on Microsoft's enterprise systems. If Minecraft-specific data is not fully surfaced within Microsoft's privacy dashboard, requests may be incompletely fulfilled. (3) JURISDICTION FLAGS: EU member states may have additional national requirements beyond GDPR baseline (for example, specific requirements around children's rights or legitimate interest assessments). California's CPRA introduced additional rights including the right to correct inaccurate personal information and the right to limit use of sensitive personal information, which should be addressed in the policy. (4) CONTRACT AND VENDOR IMPLICATIONS: B2B customers or institutional licensees (such as educational institutions using Minecraft Education Edition) may have contractual obligations to facilitate data subject rights requests from their users; they should confirm that Microsoft's DPA covers these obligations. (5) COMPLIANCE CONSIDERATIONS: Compliance teams should test the end-to-end data subject request workflow for Minecraft users to verify that requests submitted through Microsoft's privacy dashboard result in complete and timely responses covering Minecraft-specific data, including gameplay history, communications, and account data.

Full institutional analysis

Regulatory citations, enforcement risk, and due diligence action items.

Applicable agencies

  • State AG
    California's Attorney General and the California Privacy Protection Agency have enforcement authority over CCPA/CPRA compliance, including the right to request deletion and opt-out of data sharing.
    File a complaint →

Applicable regulations

CCPA/CPRA
California, USA
COPPA
United States Federal
Connecticut Data Privacy Act Amendments
US-CT
CAN-SPAM
United States Federal
FTC Act Section 5
United States Federal
GDPR
European Union
Indiana Consumer Data Protection Act
US-IN
Kentucky Consumer Data Protection Act
US-KY
Universal Opt-Out Mechanism Expansion 2026
US
VPPA
United States Federal

Provision details

Document information
Document
Minecraft Privacy Statement
Entity
Minecraft
Document last updated
May 5, 2026
Tracking information
First tracked
May 20, 2026
Last verified
May 20, 2026
Record ID
CA-P-012442
Document ID
CA-D-00117
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
bb49cb7c861eed80f0e8a559277b9813aaddc620a7e369e4dc8f1f7d1c1fe720
Analysis generated
May 20, 2026 21:24 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Minecraft
Document: Minecraft Privacy Statement
Record ID: CA-P-012442
Captured: 2026-05-20 21:24:41 UTC
SHA-256: bb49cb7c861eed80…
URL: https://conductatlas.com/platform/minecraft/minecraft-privacy-statement/provision/CA-P-012442/regional-privacy-rights-eu-uk-california/
Accessed: July 25, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
Medium
Categories

Other risks in this policy

Related Analysis

Governance intelligence across arbitration, AI governance, data rights, indemnification, and retention

Provision-level monitoring, governance timelines, and regulatory mapping built from archived source documents and historical version tracking.

Frequently Asked Questions

What does Minecraft's Regional Privacy Rights (EU, UK, California) clause do?

This provision establishes the procedural mechanisms through which users in regulated jurisdictions can exercise their statutory privacy rights in relation to Minecraft data. The rights are administered through Microsoft's centralized privacy infrastructure, meaning request processing is governed by Microsoft's enterprise data subject request procedures.

How does this clause affect you?

Under this provision, EU, UK, and California residents have documented pathways to request access, correction, deletion, or portability of their Minecraft-related personal data through Microsoft's privacy dashboard. The agreement also discloses the right to lodge complaints with the applicable supervisory authority, including EU national data protection authorities, the UK ICO, and the California Privacy Protection Agency.

How many platforms have this type of clause?

ConductAtlas has identified this type of provision across 295 platforms. See the full comparison.

Is ConductAtlas affiliated with Minecraft?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Minecraft.