Provision record
Nintendo · Nintendo Privacy Policy · View original document ↗

Data Retention

Medium severity Common · 274 of 352 platforms
Stay ahead of the changes
Track Nintendo and get the diff the day its terms change.
Share 𝕏 Share in Share 🔒 PDF

This analysis describes what Nintendo's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

The clause defines the operational framework for data lifecycle management, establishing that retention decisions are tied to functional necessity and legal compliance rather than fixed timeframes. This approach allows Nintendo to maintain records across multiple justifications without specifying discrete deletion schedules.

Recent Activity

This document changed recently

Medium Apr 19, 2026

Nintendo now explicitly discloses that it collects persistent identifiers (IP addresses, device IDs) from child users for operational, security, fraud prevention, and service improvement purposes, and states that contractual restrictions limit how service providers can use this data. Parents gain enhanced transparency by being able to view a named list of third-party games and applications authorized to access their child's account, rather than just managing access through settings. The policy also clarifies that location information may be used for check-ins at Nintendo locations and events in addition to location-based games. You can review and manage which third-party apps have access to your child's account through your Nintendo Account profile settings.

View change record →
Medium Apr 8, 2026

Nintendo now discloses that it uses location data not only for location-based games and friend connections, but also to enable check-ins at specific events and Nintendo locations, which is a new explicit use case. The policy now details how child user data including persistent identifiers like IP addresses and device IDs are collected and retained, with commitments to delete or de-identify data based on sensitivity and account activity. Parents can now see which third-party apps have been authorized to access their child's account before deciding whether to allow continued access, giving more visibility into connected applications.

View change record →
Medium Mar 19, 2026

The revised policy simplifies how Nintendo describes data retention, now stating information is retained only as long as reasonably necessary in accordance with applicable law, without prior detail about sensitivity-based retention practices. For child users, the policy no longer explicitly lists persistent identifiers (IP addresses, device identifiers) that Nintendo and service providers collect, removing specific disclosure language that previously detailed collection purposes for child accounts. The policy now indicates it collects error information from both users and devices, broadening the prior language focused on device errors only. The privacy certification body changed from CARU to ESRB, meaning independent audits and enforcement are now administered by the Entertainment Software Rating Board rather than the Children's Advertising Review Unit.

View change record →

Clause Stability Stable

0
Changes
5
Months Monitored
Apr 3, 2026
First Seen
Apr 27, 2026
Last Seen
This clause type exists across 1630 other provisions on other platforms.

Consumer impact (what this means for users)

Users' personal information will remain in Nintendo's systems according to the purposes stated in the policy—service delivery, legal compliance, dispute resolution, and agreement enforcement. The terms do not establish specific retention deadlines, meaning data persistence depends on Nintendo's determination of ongoing necessity.

How other platforms handle this

Palantir Medium

We collect and keep personal data only as needed or allowed for the purposes set out in this Statement, based on the reason we collected the personal data in the first instance and what is permitted under the laws that apply to the processing.

Affirm Medium

Affirm will retain your information in accordance with our Privacy Policy and any applicable state or federal law, rule or regulation.

Mistral AI Medium

Mistral AI shall retain the Customer Exportable Data and Assets for a period of thirty (30) days from the earlier between (a) the expiration of the Transitional Period or (b) Customer's notification under Section 2.2.2 (b) of these Additional Terms.

See all platforms with this clause type →
▸ View Original Clause Language DOCUMENT RECORD
"
We retain your personal information for as long as necessary to provide you with our products and services, comply with our legal obligations, resolve disputes, and enforce our agreements. The specific retention period depends on the type of information and the purposes for which it is used.

Excerpt from Nintendo's Privacy Policy

Applicable regulations

CCPA/CPRA
California, USA
GDPR
European Union
Indiana Consumer Data Protection Act
US-IN
UK GDPR
United Kingdom

Provision details

Document information
Document
Nintendo Privacy Policy
Entity
Nintendo
Document last updated
May 5, 2026
Tracking information
First tracked
April 27, 2026
Last verified
July 9, 2026
Record ID
CA-P-001000
Document ID
CA-D-00188
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
08c602b01bc20ce68b00c8f8914733f3a8367c9aa9dd499607c67822e3987487
Analysis generated
April 27, 2026 13:59 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Nintendo
Document: Nintendo Privacy Policy
Record ID: CA-P-001000
Captured: 2026-04-27 13:59:08 UTC
SHA-256: 08c602b01bc20ce6…
URL: https://conductatlas.com/platform/nintendo/nintendo-privacy-policy/provision/CA-P-001000/data-retention/
Accessed: Sept. 8, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
Medium
Categories

Other risks in this policy

Get the research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.

Frequently Asked Questions

What does Nintendo's Data Retention clause do?

The clause defines the operational framework for data lifecycle management, establishing that retention decisions are tied to functional necessity and legal compliance rather than fixed timeframes. This approach allows Nintendo to maintain records across multiple justifications without specifying discrete deletion schedules.

How does this clause affect you?

Users' personal information will remain in Nintendo's systems according to the purposes stated in the policy—service delivery, legal compliance, dispute resolution, and agreement enforcement. The terms do not establish specific retention deadlines, meaning data persistence depends on Nintendo's determination of ongoing necessity.

How many platforms have this type of clause?

ConductAtlas has identified this type of provision across 274 platforms. See the full comparison.

Is ConductAtlas affiliated with Nintendo?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Nintendo.