Zendesk · Zendesk Terms of Service · View original document ↗

Customer Consent Obligations for Agent and End User Data

Medium severity High confidence Explicitdocumentlanguage Unique · 0 of 352 platforms
Get alerted the next time Zendesk changes these terms. Get same-day alerts →
Share 𝕏 Share in Share 🔒 PDF
Monitor governance changes for Zendesk Monitor emails you the same day this changes. The archive stays free.
Get same-day alerts →

Get the weekly research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean. No account.

Document Record

What it is

The agreement requires the Customer to provide required notices to and obtain required consents from Agents and End Users necessary for Zendesk to lawfully process Service Data, and to inform Agents about their rights under Zendesk's Privacy Notice.

This analysis describes what Zendesk's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

This provision places the legal responsibility for obtaining all consents and providing all notices necessary for lawful processing of Service Data on the Customer rather than Zendesk. This allocation of responsibility is significant under GDPR and CCPA, where inadequate consent or notice mechanisms create direct regulatory exposure for the Customer as data controller.

Consumer impact (what this means for users)

Under this clause, the Customer is responsible for ensuring that agents and end users have received required notices and provided any required consents before their data is processed by Zendesk. The Customer must also inform agents about their rights as described in Zendesk's Privacy Notice.

Cross-platform context

See how other platforms handle Customer Consent Obligations for Agent and End User Data and similar clauses.

Compare across platforms →

Monitoring

Zendesk has changed this document before.

Receive same-day alerts, structured change summaries, and monitoring for up to 25 platforms.

Get Monitor Or create a free account →
▸ View Original Clause Language DOCUMENT RECORD
"
Customer will: ... (iii) provide any notices to, and obtain any required consents from, Agents and End Users necessary for Zendesk to lawfully process Service Data; (iv) if Customer provides Agent information to Zendesk to create account logins, inform those Agents about applicable rights outlined in the Privacy Notice

Excerpt from Zendesk's Terms of Service

ConductAtlas Analysis

Institutional analysis (regulatory & governance intelligence)

(1) REGULATORY LANDSCAPE: This provision directly engages GDPR requirements for lawful basis, transparency, and data subject rights, as well as CCPA requirements for notice at collection. Under GDPR, the Customer operating as a data controller is responsible for establishing and documenting lawful basis for processing, and for providing data subjects with required privacy information. CCPA requires businesses to provide notice at or before collection of personal information. (2) GOVERNANCE EXPOSURE: High. This clause allocates consent and notice compliance obligations entirely to the Customer, meaning that if Customer's consent mechanisms or privacy notices are inadequate, the Customer bears the regulatory exposure. The agreement does not specify minimum standards for what constitutes adequate notice or consent, leaving that determination to the Customer and applicable law. (3) JURISDICTION FLAGS: EU/EEA customers face heightened exposure under GDPR Articles on lawful basis and transparency, which require specific disclosures about data processors and processing purposes. California customers must ensure notice at collection requirements under CCPA are met for end user data. Customers operating in multiple jurisdictions must reconcile potentially divergent consent and notice requirements across their agent and end user populations. (4) CONTRACT AND VENDOR IMPLICATIONS: Procurement and compliance teams should audit existing privacy notices and consent mechanisms to confirm they disclose Zendesk as a data processor and describe the purposes for which Service Data will be processed, including Zendesk's product improvement use authorized under Section 3.1. The obligation to inform agents about rights in Zendesk's Privacy Notice requires that customers are familiar with the content of that document and that their internal HR or onboarding processes include the required disclosure. (5) COMPLIANCE CONSIDERATIONS: Data protection officers and privacy compliance teams should review customer-facing and employee-facing privacy notices to ensure they accurately describe Zendesk's processing of Service Data, including sharing with third-party product providers. Consent mechanisms for end users should be evaluated against applicable law in each jurisdiction where end users are located. Records of consent and notice delivery should be maintained to demonstrate compliance.

Full institutional analysis

Regulatory citations, enforcement risk, and due diligence action items.

Get same-day alerts when this changes → Get Analyst

Monitor: same-day alerts on the platforms you choose. Analyst: full institutional analysis.

Applicable agencies

  • FTC
    The FTC has jurisdiction over unfair or deceptive data practices affecting consumers, including failures to provide adequate notice or obtain required consents for data processing.
    File a complaint →

Provision details

Document information
Document
Zendesk Terms of Service
Entity
Zendesk
Document last updated
May 5, 2026
Tracking information
First tracked
July 12, 2026
Last verified
July 12, 2026
Record ID
CA-P-074294
Document ID
CA-D-00638
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
ad77187ab3fa29ea6328dd21e4556f4c93c2d37a21097e73f14eb557afc4482f
Analysis generated
July 12, 2026 15:18 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Zendesk
Document: Zendesk Terms of Service
Record ID: CA-P-074294
Captured: 2026-07-12 15:18:58 UTC
SHA-256: ad77187ab3fa29ea…
URL: https://conductatlas.com/platform/zendesk/zendesk-terms-of-service/provision/CA-P-074294/customer-consent-obligations-for-agent-and-end-user-data/
Accessed: July 23, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
Medium
Categories

Other risks in this policy

Compliance Governance Intelligence

Need to monitor specific governance provisions?

Compliance includes provision-level monitoring, governance timelines, regulatory mapping, and audit-ready analysis.

Arbitration clauses AI governance Data rights Indemnification Retention policies
Get Compliance

Or start with Monitor →

Built from archived source documents, structured governance mappings, and historical version tracking.

Frequently Asked Questions

What does Zendesk's Customer Consent Obligations for Agent and End User Data clause do?

This provision places the legal responsibility for obtaining all consents and providing all notices necessary for lawful processing of Service Data on the Customer rather than Zendesk. This allocation of responsibility is significant under GDPR and CCPA, where inadequate consent or notice mechanisms create direct regulatory exposure for the Customer as data controller.

How does this clause affect you?

Under this clause, the Customer is responsible for ensuring that agents and end users have received required notices and provided any required consents before their data is processed by Zendesk. The Customer must also inform agents about their rights as described in Zendesk's Privacy Notice.

Is ConductAtlas affiliated with Zendesk?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Zendesk.