For Zoom Events, Stripe is authorized to process payment and transaction information including name, email, bank account details, payment card details, transaction date, time, and amount, and merchant name, in the United States under Standard Contractual Clauses.
This analysis describes what Zoom's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This provision identifies Stripe as the payment subprocessor for Zoom Events and discloses that bank account and payment card details are among the data categories processed, which may trigger additional compliance obligations for EU data controllers regarding sensitive financial data and PCI DSS requirements for payment card processing.
Under this provision, participants in Zoom Events who complete payment transactions have their name, email, bank account details, payment card details, and transaction metadata processed by Stripe in the United States under SCCs. This applies only to Zoom Events payment flows, not to general Zoom service subscriptions.
Cross-platform context
See how other platforms handle Stripe Payment Processing for Zoom Events and similar clauses.
Compare across platforms →"Stripe Payment Processing Payment and transaction information such as name, email, bank account details, payment card details, date/time/amount of transaction, and merchant name. United States SCCs Stripe Privacy CenterExcerpt from Zoom's Sub-Processors
1) REGULATORY LANDSCAPE: This provision engages GDPR for EU data subjects making payments through Zoom Events, specifically regarding the transfer of financial and identity data to Stripe in the United States.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
This provision identifies Stripe as the payment subprocessor for Zoom Events and discloses that bank account and payment card details are among the data categories processed, which may trigger additional compliance obligations for EU data controllers regarding sensitive financial data and PCI DSS requirements for payment card processing.
Under this provision, participants in Zoom Events who complete payment transactions have their name, email, bank account details, payment card details, and transaction metadata processed by Stripe in the United States under SCCs. This applies only to Zoom Events payment flows, not to general Zoom service subscriptions.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Zoom.