An artificial intelligence research company that develops and operates large language models and AI systems, including ChatGPT and GPT-4, which are used by millions of consumers worldwide for text generation, conversation, and various productivity tasks. The company's policies govern how user data is collected and used to train AI models, what content is permitted on their platforms, and the safety measures implemented to prevent harmful AI outputs, making their terms particularly significant given the personal and sensitive information users often share with AI assistants.

15 Documents
186 All provisions 52 High severity 111 Medium severity 23 Low severity
36 Changes · 12 mo
Jun 9, 2026 Last change

High — provisions that significantly limit your legal rights, authorize broad data collection, or create material financial exposure. Medium — provisions worth knowing about but with partial protections or limited scope. Low — standard terms with minimal consumer impact.

Governance Coverage
Privacy Rights
80 provisions · 11 high · 56 med
Acceptable Use
40 provisions · 26 high · 14 med
Liability Limitation
23 provisions · 6 high · 14 med
Content Moderation
22 provisions · 9 high · 9 med
Data Sharing
21 provisions · 10 high · 11 med
Ai Automated
20 provisions · 11 high · 8 med
Data Usage
17 provisions · 12 high · 5 med
Data Collection
16 provisions · 5 high · 9 med
Arbitration
15 provisions · 13 high · 1 med
Platform Discretion
11 provisions · 2 high · 8 med
Quick Facts
Arbitration: Mandatory
AI Training: Disclosed (high impact)
Data Retention: Specified
Class Action: Waived
Key Governance Provisions
High HIPAA Business Associate Agreement for API Deployments

This provision establishes that API-based deployments handling protected health information may be eligible for BAA coverage, which is a prerequisite for using a third-party vendor under HIPAA. The p…

High GDPR Data Processing Agreement and Standard Contractual Clauses

This provision establishes the mechanism by which EU-based enterprise customers can lawfully transfer personal data to OpenAI for processing. Under GDPR, a valid transfer mechanism is required for an…

High HIPAA Business Associate Agreement Carve-Out

This provision places the compliance burden on the operator to identify when HIPAA applies to their use case and to execute a BAA before submitting any protected health information. Using the API wit…

High Age Restriction and Minor User Eligibility

GDPR Article 8 sets the digital consent age at 16 by default, though member states may lower it to a minimum of 13; users below the applicable threshold require verifiable parental or guardian consen…

High Content License for Service Provision and Improvement

The scope of this content license determines whether personal data or proprietary information submitted as inputs can be used for purposes beyond delivering the immediate service response, which enga…

Document Coverage
Acceptableusepolicy Dataprocessingaddendum Enterpriseterms Privacypolicy Responsibleai Systemcard Termsofservice
Last change detected: Jun 9, 2026 Changes (12 months): 36 Documents monitored: 15 Provisions tracked: 186
Compare With Similar Platforms
AI21 Labs Anthropic Anyscale Apple Intelligence Baseten Cerebras Cohere Copy.ai

Documents

OpenAI System Card GPT-4o

Last updated May 12, 2026 · System card
0 provisions 0 versions captured Version history →

OpenAI Enterprise Privacy

Medium

This is OpenAI's enterprise privacy information page covering ChatGPT Enterprise, ChatGPT Teams (Business), and the API Platform. The document states that by default, inputs, outputs, and conversation data from enterprise …

Last updated May 12, 2026 · Enterprise terms
7 provisions 5 versions captured Version history →

OpenAI Safety Standards

Low

This document presents OpenAI's public safety framework, detailing the company's internal processes for AI system development including red-teaming, preparedness assessments, and superalignment research. The document describes OpenAI's iterative deployment methodology …

Last updated May 12, 2026 · Responsible ai
6 provisions 4 versions captured Version history →

OpenAI API Data Usage Policies

Medium

This is OpenAI's Enterprise Privacy disclosure page, covering data handling practices for ChatGPT Enterprise, ChatGPT Teams (Business), and the API Platform. The document states that for these enterprise and API …

Last updated May 12, 2026 · Privacy policy
6 provisions 5 versions captured Version history →

OpenAI Data Processing Addendum

Medium

This document establishes OpenAI's data processing terms for business customers who submit personal data through the OpenAI API. The agreement specifies that OpenAI processes personal data only according to documented …

Last updated May 11, 2026 · Data processing addendum
10 provisions 3 versions captured Version history →

OpenAI EU Terms of Use

Medium

This document establishes the terms of use for OpenAI services accessed by users in the European Union, covering products including ChatGPT and the OpenAI API. The agreement authorizes OpenAI to …

Last updated May 11, 2026 · Terms of service
7 provisions 3 versions captured Version history →

OpenAI Business Terms

Medium

OpenAI's Services Agreement sets the terms for using ChatGPT, the API, and other OpenAI products, covering account creation, acceptable use, content rights, payment, and dispute resolution. The agreement grants OpenAI …

Last updated May 11, 2026 · Terms of service
10 provisions 3 versions captured Version history →

OpenAI Service Terms

High

OpenAI's Service Terms establish the conditions governing user access to ChatGPT, the API, and related products. The agreement authorizes OpenAI to use user inputs and outputs to operate and improve …

Last updated May 11, 2026 · Terms of service
10 provisions 5 versions captured Version history →

OpenAI Usage Policies

Medium

OpenAI Usage Policies establish prohibited and restricted use categories for ChatGPT, the API, and other OpenAI products. The document prohibits specified uses including generation of content sexualizing minors, assistance with …

Last updated May 11, 2026 · Acceptable use policy
9 provisions 2 versions captured Version history →

OpenAI Terms of Use

High

This document establishes the terms governing user access to and use of OpenAI services, including ChatGPT, Sora, and related products. The agreement authorizes OpenAI to use content submitted by users …

Last updated May 5, 2026 · Terms of service
10 provisions 2 versions captured Version history →

OpenAI Privacy Policy

Medium

This document establishes OpenAI's privacy practices for users of its products including ChatGPT, the API, and DALL-E. The policy authorizes collection of conversation content, uploaded files, device identifiers, IP addresses, …

Last updated May 5, 2026 · Privacy policy
8 provisions 15 versions captured 7 significant changes Version history →

GPT-4o System Card (PDF)

Medium

This document is OpenAI's system card for GPT-4o, disclosing the model's capabilities across audio, image, and text processing and the identified risks prior to release. The document establishes that GPT-4o …

Last updated March 5, 2026 · System card
7 provisions 1 version captured Version history →

Terms of Use (ROW)

High

This document establishes OpenAI's Terms of Use for individual consumers of ChatGPT, DALL·E, and related services, effective January 1, 2026. The agreement requires that disputes between users and OpenAI be …

Last updated March 5, 2026 · Terms of service
10 provisions 1 version captured Version history →

Privacy Policy (ROW)

Medium

OpenAI's Privacy Policy (ROW) establishes the data collection, processing, and sharing practices applicable to users of ChatGPT, the OpenAI API, DALL-E, and Sora. The policy authorizes OpenAI to collect and …

Last updated March 5, 2026 · Privacy policy
10 provisions 1 version captured Version history →

Usage Policies

Medium

OpenAI's Usage Policies establish prohibited use categories for ChatGPT, Sora, Codex, and other OpenAI services, including generation of child sexual abuse material, weapons of mass destruction, election disinformation, malware, cyberweapons, …

Last updated March 5, 2026 · Acceptable use policy
8 provisions 1 version captured Version history →

Recent Changes

June 9, 2026 · OpenAI Privacy Policy Medium

OpenAI updated its privacy policy on June 9, 2026, removing specific language about ad personalization controls for Free and Go users while adding language directing Korean users to a separate …

View change record →
May 27, 2026 · OpenAI Privacy Policy Medium

OpenAI removed specific language about collecting advertiser data for ad targeting on free and paid tiers, but simultaneously removed user-facing controls for managing ad personalization. The policy now consolidates ad-related …

View change record →
May 14, 2026 · OpenAI Privacy Policy Medium

OpenAI updated its privacy request procedures on May 14, 2026. Previously, the policy stated users could exercise privacy rights by submitting requests through privacy.openai.com or dsar@openai.com. The updated language now …

View change record →
May 11, 2026 · OpenAI Privacy Policy Medium

OpenAI updated its privacy policy on May 11, 2026 to explicitly authorize the collection and use of advertiser data from partners and to create a new ad personalization purpose for …

View change record →
May 5, 2026 · OpenAI Privacy Policy Medium

OpenAI removed language describing advertiser data partnerships and ad personalization controls for free users, while also removing the specific statement that free and go users could control ad personalization through …

View change record →
📈 Policy Drift Analysis View all changes →

Low Severity Provisions (0)

No provisions found.

View all high severity provisions → Compare OpenAI with other platforms →

Applicable Regulations

EU AI Act
European Union
View official text ↗
BIPA
Illinois, USA
View official text ↗
California AB 2013 AI Training Data Transparency
US-CA
View official text ↗
CCPA/CPRA
California, USA
View official text ↗
Colorado AI Act
US-CO
View official text ↗
CFAA
United States Federal
View official text ↗
Connecticut Data Privacy Act Amendments
US-CT
View official text ↗
CAN-SPAM
United States Federal
View official text ↗
DMCA
United States Federal
View official text ↗
DSA
European Union
View official text ↗
ePrivacy Directive
European Union
View official text ↗
EU AI Act - High Risk Provisions
EU
View official text ↗
FAA
United States Federal
View official text ↗
FTC Act Section 5
United States Federal
View official text ↗
GDPR
European Union
View official text ↗
Indiana Consumer Data Protection Act
US-IN
View official text ↗
Kentucky Consumer Data Protection Act
US-KY
View official text ↗
Texas AI Act
Texas, USA
View official text ↗
Trump Executive Order on AI Policy Framework
US
View official text ↗
UK GDPR
United Kingdom
View official text ↗
Universal Opt-Out Mechanism Expansion 2026
US
View official text ↗

Related Analysis

Privacy · May 3, 2026
OpenAI Privacy Policy Update May 2026: New Terms Authorize Advertiser Data Sharing

OpenAI expanded its data sharing terms to include third-party marketing partners. The updated policy authorizes the use of personal data fo…

Compare with Similar Platforms

AI21 Labs
ai
Anthropic
ai
Anyscale
ai
Apple Intelligence
ai
Baseten
ai
Cerebras
ai
Cohere
ai
Copy.ai
ai

Frequently Asked Questions

What OpenAI documents does ConductAtlas track?

ConductAtlas tracks 15 OpenAI documents including terms of service, privacy policy, and other governance documents. Every document is captured daily with cryptographic verification.

How many policy changes has OpenAI made in the past year?

OpenAI has made 36 policy changes in the past 12 months across the documents ConductAtlas tracks.

How many provisions has ConductAtlas classified for OpenAI?

ConductAtlas has classified 186 provisions across OpenAI's tracked documents. 52 are rated high severity, 111 medium, and 23 low.

Can I get alerts when OpenAI changes their policies?

Yes. Monitor subscribers ($19/month) can add OpenAI to their watchlist and receive same-day email alerts whenever any tracked document changes.