Snowflake maintains and publishes a list of sub-processors and affiliates, indicating that customer data may be processed by third-party sub-processors in addition to Snowflake itself.
This analysis describes what Snowflake's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
The Sub-Processors and Affiliates list is a material GDPR Article 28 compliance element, as it discloses the third-party entities to whom Snowflake may transfer or provide access to customer personal data in the course of service delivery. Under standard DPA terms, customers may have rights to object to new sub-processor additions.
The updated Privacy Notice no longer includes explicit language stating that users 'may unsubscribe through unsubscribe links at any time.' This removal means the document no longer contains that specific commitment to unsubscribe availability. The updated terms still reference a Privacy Notice governing data processing and retain cookie-related disclosures, but the removal of the unsubscribe guarantee eliminates a documented mechanism users may have relied on. You can review the full Privacy Notice to understand current communication and preference management options.
View change record →Customer data processed through Snowflake may be handled by sub-processors identified on the published list. Organizations subject to GDPR or other data protection frameworks that require sub-processor assessment should obtain and review this list as part of their vendor management and data mapping obligations.
Cross-platform context
See how other platforms handle Sub-Processors and Affiliates Disclosure and similar clauses.
Compare across platforms →"Snowflake Sub-Processors and AffiliatesExcerpt from Snowflake's Privacy Notice
1.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
The Sub-Processors and Affiliates list is a material GDPR Article 28 compliance element, as it discloses the third-party entities to whom Snowflake may transfer or provide access to customer personal data in the course of service delivery. Under standard DPA terms, customers may have rights to object to new sub-processor additions.
Customer data processed through Snowflake may be handled by sub-processors identified on the published list. Organizations subject to GDPR or other data protection frameworks that require sub-processor assessment should obtain and review this list as part of their vendor management and data mapping obligations.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Snowflake.