PayPal · PayPal Privacy Statement

Non-Account Holder Data Collection and Retroactive Linking

High severity
Share 𝕏 Share in Share 🔒 PDF
Watch PayPal Get alerts when this provision or policy changes.
Watch — $9.99/mo

Why it matters (compliance & risk perspective)

Millions of consumers transact through PayPal's infrastructure (Braintree, Fastlane, Hyperwallet) without knowing PayPal is collecting their data, and the retroactive linking of guest transactions to new accounts means PayPal can build a longer financial history on you than you might expect.

Consumer impact (what this means for users)

PayPal collects an exceptionally broad range of personal data — including biometrics, precise geolocation, inferred creditworthiness, and full financial histories — and shares it with partners, merchants, credit reporting agencies, data brokers, and members of the PayPal corporate group. Automated decision-making, including AI-driven risk and fraud assessments, can directly affect your account status, credit access, and transaction approvals without transparent human review. You can review and limit certain data uses by visiting your PayPal account privacy settings at paypal.com/us/myaccount/privacy.

How other platforms handle this

Spotify Medium

Your device sensor data: Motion-generated or orientation-generated device sensor data if needed to provide features of the Spotify Service that require this data. This is data which your device collects about the way you move or hold your device. Your technical data includes: URL information, online...

GitHub Medium

GitHub uses cookies to provide, secure and improve our Service or to develop new features and functionality of our Service. For example, we use them to (i) keep you logged in, (ii) remember your preferences, (iii) identify your device for security and fraud purposes, including as needed to maintain ...

Twilio Medium

Twilio As Data Processor: We process personal data as directed by our customers - whether through specific instructions, our Data Protection Addendum, or their chosen Service configurations. In these cases, we must use and protect personal data in line with those directions. This Privacy Notice ("No...

See all platforms with this clause type →

This clause could change without notice.

Get alerted when PayPal updates this policy — with plain-language summaries and severity ratings.

Watch PayPal Need compliance memos? Professional →
View original clause language
Our Services may be accessed by individuals without a PayPal account or profile. We will collect Personal Information from you even if you are a non-account holder when you use our Services, such as when you use our Pay without a PayPal Account, use Unbranded Payment Services (e.g., Braintree), use a Fastlane profile, or when you receive a payment through the Visa+ service from a PayPal account holder or a payment from a payor using the Hyperwallet services. If you Pay without a PayPal account, we may link your transaction information with your PayPal account if you create a PayPal account later.

Applicable regulations

EU AI Act
European Union
BIPA
Illinois, USA
CCPA/CPRA
California, USA
COPPA
United States Federal
CAN-SPAM
United States Federal
DMA
European Union
FCRA
United States Federal
GDPR
European Union
GLBA
United States Federal
HIPAA
United States Federal
TCPA
United States Federal
UK GDPR
United Kingdom

Provision details

Document information
Document
PayPal Privacy Statement
Entity
PayPal
Document last updated
April 29, 2026
Tracking information
First tracked
March 6, 2026
Last verified
April 10, 2026
Record ID
CA-P-002336
Document ID
CA-D-00045
Evidence Provenance
Source URL
Wayback Machine
SHA-256
a5efa287f0b43a6a87f7dfc939ccb3c8edfb0ea67f476b2afeddf66fffa27690
Verified
✓ Snapshot stored   ✓ Change verified
How to Cite
ConductAtlas Policy Archive
Entity: PayPal | Document: PayPal Privacy Statement | Record: CA-P-002336
Captured: 2026-03-06 20:34:43 UTC | SHA-256: a5efa287f0b43a6a…
URL: https://conductatlas.com/platform/paypal/paypal-privacy-statement/non-account-holder-data-collection-and-retroactive-linking/
Accessed: May 4, 2026
Classification
Severity
High
Categories

Other risks in this policy

Related Analysis

Don't miss changes to this clause.

PayPal has updated this policy before. Get alerted on the next change.

Watch PayPal

Frequently Asked Questions

What does PayPal's Non-Account Holder Data Collection and Retroactive Linking clause do?

Millions of consumers transact through PayPal's infrastructure (Braintree, Fastlane, Hyperwallet) without knowing PayPal is collecting their data, and the retroactive linking of guest transactions to new accounts means PayPal can build a longer financial history on you than you might expect.

Is ConductAtlas affiliated with PayPal?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by PayPal.