7 Total
3 High severity
4 Medium severity
0 Low severity
Summary

This is CoreWeave's privacy policy, which explains how the cloud computing company collects and uses personal information such as your account details, usage data, and technical identifiers when you use their GPU cloud and infrastructure services. The most important thing to know is that CoreWeave may share your personal information with third-party service providers and business partners, and the full scope of that sharing is not clearly visible in the truncated document provided. If you are an EU resident or California consumer, you likely have specific rights to access, delete, or limit the use of your data by contacting CoreWeave directly.

Technical Summary

This document is CoreWeave's Privacy Policy, governing the collection, use, disclosure, and processing of personal information across CoreWeave's cloud computing platforms and services, with legal basis rooted in contractual necessity, legitimate interests, and consent under applicable privacy frameworks. The policy creates obligations for CoreWeave to disclose data practices and grants users certain rights to access, delete, and control their personal information, while imposing on users the obligation to provide accurate data as a condition of service. Notably, the document is published as part of CoreWeave's technical documentation infrastructure (via Mintlify), and the full substantive policy text was not fully rendered in the provided HTML source, creating material gaps in assessing the complete scope of data collection categories, third-party sharing arrangements, and retention schedules. The policy engages GDPR (EU/EEA users), CCPA/CPRA (California residents), and potentially other US state privacy laws given CoreWeave's cloud infrastructure business serving enterprise and developer customers globally. Compliance teams should note that CoreWeave operates as both a data controller (for account and usage data) and potentially a data processor (for customer workload data), requiring careful DPA assessment for enterprise customers.

Evidence Provenance
Captured May 2, 2026 06:42 UTC
Document ID CA-D-000494
Version ID CA-V-001178
Wayback Machine View archived versions →
SHA-256 e39898e39d33d09a6b5be1a1333d553aed052a05abe438f92b6e4f440b3c1dcf
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Cryptographically signed
Institutional Analysis

🔒 Institutional analysis locked

Regulatory exposure by statute, material risk assessment, vendor due diligence action items, and enforcement precedent. Available on Professional.

Upgrade to Professional — $149/mo
Change Timeline
View full version history (0 captures) →
Analyzed Changes

2 changes analyzed since monitoring began.

What changed Weights & Biases updated their Weights & Biases Privacy Policy on May 02, 2026. Change detected: 1 sentence(s) modified. Document contained 170 sentences after update.
What changed Weights & Biases updated their Weights & Biases Privacy Policy on April 30, 2026. Change detected: 1 sentence(s) added, 1 sentence(s) modified. Document contained 170 sentences after update.
Consumer impact This update adds a Documentation Index reference to the privacy policy page, which is a navigational addition with no effect on how personal data is collected, used, or shared. The substantive privacy policy language describing CoreWeave's data handling practices is unchanged. No action is required from consumers as a result of this change.
Why it matters This change is purely navigational and does not affect how Weights & Biases or CoreWeave handles personal data. Users and compliance teams can treat this as a no-action update.

Recent Clause-Level Changes Apr 30, 2026

7 provisions unchanged.

View full change record →
High Severity — 3 provisions
Medium Severity — 4 provisions

Cross-platform context

See how other platforms handle Cross-Border Data Transfers and similar clauses.

Compare across platforms →