The policy states that Venmo does not sell or share personal information, including sensitive personal information, for cross-context behavioral advertising as defined under CCPA, and separately states that CCPA provisions do not apply to financial data governed by GLBA.
This analysis describes what Venmo's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This provision asserts CCPA non-sale and non-sharing status for all personal information categories while simultaneously invoking the GLBA carve-out for financial data, which may affect the scope of California residents' CCPA deletion, access, and opt-out rights depending on how data categories are classified between financial and non-financial.
Interpretive note: The scope of the GLBA carve-out relative to non-financial data categories Venmo collects, such as geolocation, biometrics, and social web information, is not specified in the policy and may depend on regulatory interpretation.
Under this clause, California residents' CCPA rights to opt out of sale or sharing of personal information are asserted to be inapplicable because Venmo states it does not engage in such practices; however, CCPA access and deletion rights for financial data governed by GLBA are separately carved out, which may limit the scope of actionable CCPA requests for certain data categories.
Cross-platform context
See how other platforms handle CCPA Non-Sale and Non-Sharing Assertion with GLBA Carve-Out and similar clauses.
Compare across platforms →"We do not sell or share your Personal Information, including any Sensitive Personal Information. This notice should be read together with Venmo's Privacy Statement and applies to all California residents who visit our Sites or use the Services. These provisions do not apply to personal information collected, processed, shared, or disclosed by financial institutions pursuant to federal law such as the Gramm-Leach-Bliley Act.Excerpt from Venmo's Privacy Policy
1) REGULATORY LANDSCAPE: This provision engages the CCPA and California Privacy Rights Act, enforced by the California Privacy Protection Agency and California Attorney General, and GLBA enforced by the FTC.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Search "[your state] attorney general consumer complaint" to find your state's direct complaint form
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
This provision asserts CCPA non-sale and non-sharing status for all personal information categories while simultaneously invoking the GLBA carve-out for financial data, which may affect the scope of California residents' CCPA deletion, access, and opt-out rights depending on how data categories are classified between financial and non-financial.
Under this clause, California residents' CCPA rights to opt out of sale or sharing of personal information are asserted to be inapplicable because Venmo states it does not engage in such practices; however, CCPA access and deletion rights for financial data governed by GLBA are separately carved out, which may limit the scope of actionable CCPA requests for certain data …
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Venmo.