Zoom · Zoom Privacy Statement · View original document ↗

Cross-Border Data Transfers (SCCs and Data Privacy Framework)

High severity Unique · 0 of 343 platforms
Share 𝕏 Share in Share 🔒 PDF
Recent governance activity Zoom recorded 4 documented changes in the last 30 days.
Start monitoring updates
Monitor governance changes for Zoom Create a free account to receive the weekly governance digest and monitor one platform for governance changes.
Create free account No credit card required.

This analysis describes what Zoom's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

The provision establishes the legal framework under which Zoom operationalizes cross-border data transfers to jurisdictions outside the EEA's designated adequacy zone. This addresses the regulatory requirement that personal data transfers from these regions proceed only through recognized transfer mechanisms.

Consumer impact (what this means for users)

Users' personal data will be transferred internationally using these specified contractual and framework mechanisms. The provision establishes that such transfers comply with applicable data protection requirements in the EEA, UK, and Switzerland through these designated safeguards rather than jurisdictional adequacy findings.

How other platforms handle this

HubSpot Medium

When we transfer your personal data outside the EEA or UK, we ensure an adequate level of protection is afforded to it by ensuring at least one of the following safeguards is implemented: transfers are to countries that have been deemed to provide an adequate level of protection for personal data; w...

Unreal Engine Medium

Epic Games, Inc. is headquartered in Cary, North Carolina. We and our subsidiaries have offices and operations located around the world that help create and deliver some of your favorite products and services, including games like Fortnite and developer tools like Unreal Engine.

Coinbase Medium

If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, please note that we transfer your personal data to countries outside of these regions, including the United States, which may not provide the same level of data protection as your home country. We rely on app...

See all platforms with this clause type →

Monitoring

Zoom has changed this document before.

Receive same-day alerts, structured change summaries, and monitoring for up to 25 platforms.

Start Monitor free trial Or create a free account →
▸ View Original Clause Language DOCUMENT RECORD
"
When Zoom transfers personal data from the EEA, UK, or Switzerland to the United States or other countries which have not been recognized as providing an adequate level of data protection, Zoom relies on appropriate transfer mechanisms such as the European Commission's Standard Contractual Clauses (SCCs) and the UK's International Data Transfer Agreement (IDTA), as well as the EU-U.S. Data Privacy Framework, the UK Extension to the EU-U.S. Data Privacy Framework, and the Swiss-U.S. Data Privacy Framework.

— Excerpt from Zoom's Zoom Privacy Statement

Applicable regulations

CCPA/CPRA
California, USA
GDPR
European Union
UK GDPR
United Kingdom

Provision details

Document information
Document
Zoom Privacy Statement
Entity
Zoom
Document last updated
May 5, 2026
Tracking information
First tracked
May 8, 2026
Last verified
May 12, 2026
Record ID
CA-P-006535
Document ID
CA-D-00190
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
7e03086e86b2662187a23d84325743e721ed9a2d9db45ecd566d8725a825d725
Analysis generated
May 8, 2026 11:13 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Zoom
Document: Zoom Privacy Statement
Record ID: CA-P-006535
Captured: 2026-05-08 11:13:55 UTC
SHA-256: 7e03086e86b26621…
URL: https://conductatlas.com/platform/zoom/zoom-privacy-statement/cross-border-data-transfers-sccs-and-data-privacy-framework/
Accessed: June 27, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
High
Categories

Other risks in this policy

Compliance Governance Intelligence

Need to monitor specific governance provisions?

Compliance includes provision-level monitoring, governance timelines, regulatory mapping, and audit-ready analysis.

Arbitration clauses AI governance Data rights Indemnification Retention policies
Start Compliance free trial

Or start with Monitor →

Built from archived source documents, structured governance mappings, and historical version tracking.

Frequently Asked Questions

What does Zoom's Cross-Border Data Transfers (SCCs and Data Privacy Framework) clause do?

The provision establishes the legal framework under which Zoom operationalizes cross-border data transfers to jurisdictions outside the EEA's designated adequacy zone. This addresses the regulatory requirement that personal data transfers from these regions proceed only through recognized transfer mechanisms.

How does this clause affect you?

Users' personal data will be transferred internationally using these specified contractual and framework mechanisms. The provision establishes that such transfers comply with applicable data protection requirements in the EEA, UK, and Switzerland through these designated safeguards rather than jurisdictional adequacy findings.

Is ConductAtlas affiliated with Zoom?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Zoom.