Thomson Reuters transfers personal data internationally and states it uses legal mechanisms such as Standard Contractual Clauses to make those transfers lawful under EU and UK data protection law.
This analysis describes what Thomson Reuters's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
International data transfers are a key compliance area under GDPR; the sufficiency of transfer mechanisms depends on whether Thomson Reuters has conducted Transfer Impact Assessments, particularly for transfers to the United States.
Interpretive note: The statement does not specify which transfer mechanism applies to which processing activity or destination country, and does not confirm whether Transfer Impact Assessments have been conducted for U.S. transfers.
Your personal data held by Thomson Reuters may be transferred to and processed in countries outside your own, including the United States, under legal mechanisms that are subject to ongoing regulatory scrutiny, particularly in the EU and UK.
How other platforms handle this
to request that your data be transferred to a third party (data portability)
Your organization may allow you to access and export your data in order to back it up or transfer it to a service outside of Google.
Further, you may take legal actions in relation to any potential breach of your rights regarding the processing of your Personal Information, as well as to lodge complaints before the competent data prot...
"When we transfer personal information across international borders, we do so in compliance with applicable data protection laws. Where required, we rely on appropriate transfer mechanisms such as Standard Contractual Clauses approved by the European Commission, adequacy decisions, or other legally recognised transfer tools.Excerpt from Thomson Reuters's Privacy
REGULATORY LANDSCAPE: Cross-border transfers from the EU and EEA engage GDPR Chapter V, including the requirements for Standard Contractual Clauses (updated 2021 SCCs), adequacy decisions, and Binding Corporate Rules.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Search "[your state] attorney general consumer complaint" to find your state's direct complaint form
Ad personalization controls removed. Contact scanning added. Advertiser data partnerships quietly dropped. A timeline of every change.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
International data transfers are a key compliance area under GDPR; the sufficiency of transfer mechanisms depends on whether Thomson Reuters has conducted Transfer Impact Assessments, particularly for transfers to the United States.
Your personal data held by Thomson Reuters may be transferred to and processed in countries outside your own, including the United States, under legal mechanisms that are subject to ongoing regulatory scrutiny, particularly in the EU and UK.
ConductAtlas has identified this type of provision across 290 platforms. See the full comparison.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Thomson Reuters.