Provision Registry

12505 classified provisions across 299 platforms — browse, filter, and compare.

Every clause classified by type, severity, and platform. Updated as policies change.

Start Compliance free trial Track specific clauses across platforms with provision-level alerts.
medium Privacy rights
Uniswap · Uniswap Privacy Policy
The clause establishes Uniswap's acknowledgment of GDPR-mandated rights as applicable to EU users. These rights create procedural mechanisms through which data subjects can exercise control over their personal data held by the entity.
CA-P-001537 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
medium Privacy rights
Copy.ai · Copy.ai Privacy Policy
EU users have enforceable rights under GDPR with regulatory backing from national data protection authorities, giving them stronger practical recourse than users in many other jurisdictions.
CA-P-008633 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Square · Square Privacy Notice
This clause operationalizes Square's compliance with mandatory data protection obligations under EU and UK law by documenting the statutory rights available to a defined user population and the mechanisms through which those rights may be exercised.
CA-P-001739 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
medium Privacy rights
Perplexity AI · Perplexity Privacy Policy
The clause operationally implements statutory data protection obligations applicable to those jurisdictions by confirming users' ability to invoke individual rights and establishing a contact mechanism for rights requests. This provision establishes the procedural framework through which Perplexity acknowledges and facilitates compliance with GDPR and equivalent regional requirements.
CA-P-006927 First tracked May 8, 2026 Last seen May 8, 2026 Compare across platforms →
medium Privacy rights
Medium · Medium Privacy Policy
These rights are legally enforceable under GDPR and give EU users meaningful control over their personal data held by Medium, including the ability to request full deletion of their account data.
CA-P-009552 First tracked May 10, 2026 Last seen May 20, 2026 Compare across platforms →
medium Privacy rights
Yelp · Yelp Privacy Policy
This provision operationalizes Yelp's compliance obligations under GDPR by establishing specific data subject rights that European residents may invoke. The clause establishes procedural pathways through which residents can exercise statutory rights regarding their personal data.
CA-P-001276 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
medium Privacy rights
Lime · Lime Privacy Policy
The clause operationalizes Lime's obligation to recognize and honor data subject rights mandated by EU/UK/Swiss data protection regulations. This establishes the procedural framework through which users in these jurisdictions can exercise statutory data protection rights against Lime's data processing activities.
CA-P-005623 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
LinkedIn · LinkedIn Ads Agreement
This provision establishes the contractual framework for GDPR-compliant personal data transfers and processing through the LinkedIn Ad Services, incorporating the DPA and Standard Contractual Clauses by reference. The provision also states that LinkedIn will update the Standard Clauses as required by EU law, which is relevant for ongoing compliance with post-Schrems II transfer requirements.
CA-P-012402 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →
MetaMask · MetaMask Privacy Policy
The clause operationalizes mandatory statutory rights under GDPR and UK GDPR by explicitly recognizing their availability to affected users and establishing MetaMask's obligation to facilitate their exercise without requiring users to initiate separate legal processes.
CA-P-004564 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
medium Privacy rights
Hugging Face · Hugging Face Privacy Policy
This provision operationalizes compliance with GDPR Article 6 transparency obligations, requiring the entity to establish and communicate the lawful basis for each processing activity. This establishes a procedural framework for the data controller to document and disclose processing justifications to data subjects.
CA-P-009621 First tracked May 10, 2026 Last seen May 11, 2026 Compare across platforms →
Google Gemini · Gemini Apps Privacy Notice
The clause establishes user-initiated controls over conversation storage and retention, while specifying that deletion operates on a delayed schedule and permits interim retention for designated safety purposes. This defines the operational scope of data removal requests within the service architecture.
CA-P-001919 First tracked Apr 4, 2026 Last seen Apr 9, 2026 Compare across platforms →
Google Gemini · Gemini Apps Privacy Notice
The activity control does not provide complete data elimination; a 36-hour retention window remains regardless of user preference, and the distinction between what the control does and does not govern is operationally significant for users seeking to minimize data retention.
CA-P-011638 First tracked May 12, 2026 Last seen May 20, 2026 Compare across platforms →
Google Gemini · Gemini Apps Privacy Notice
This provision establishes a user control for limiting AI training use of Gemini conversation data, but the notice explicitly limits the scope of this control to Gemini apps, meaning data that crosses into other Google services remains subject to those services' separate data use terms.
CA-P-012685 First tracked May 21, 2026 Last seen May 22, 2026 Compare across platforms →
Google Gemini · Gemini Apps Privacy Notice
The clause establishes a user-controllable data retention mechanism while clarifying the operational scope of that control. It delineates between long-term storage and model training (which the opt-out controls) versus short-term retention for service delivery and safety operations (which continues regardless of the user's election).
CA-P-003715 First tracked Apr 28, 2026 Last seen Apr 28, 2026 Compare across platforms →
Google Gemini · Gemini Apps Privacy Notice
The clause allocates responsibility for data handling between Google and extension providers by limiting Google's accountability for third-party privacy practices while establishing that users' data flows to external entities under separate contractual frameworks.
CA-P-001920 First tracked Apr 4, 2026 Last seen Apr 9, 2026 Compare across platforms →
Google Gemini · Gemini Apps Privacy Notice
The terms authorize sharing of conversation content with third-party extension providers, whose data practices are governed by their own policies rather than Google's, meaning users interacting with extensions should review each third party's privacy terms.
CA-P-003713 First tracked Apr 28, 2026 Last seen May 20, 2026 Compare across platforms →
Afterpay · Afterpay Terms of Service
Placing legal compliance responsibility for AI-generated content on the user, rather than the platform, is a significant liability allocation that consumers should understand before using AI features in a payment service context.
CA-P-009080 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Platform discretion
Epic Games · Epic Games Terms of Service
This clause is operationally significant for developers, content creators, and researchers who might otherwise use game footage, assets, or extracted code as inputs for machine learning or AI generation tools, creating legal risk for such uses even where they might otherwise seem permissible.
CA-P-008595 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
Substack · Substack Privacy Policy
This provision authorizes sharing of Personal Information with generative AI service providers as part of Substack's service provider relationships. The absence of specific provider names and data category limitations for AI services creates uncertainty about the scope of Personal Information that may be processed by third-party AI systems on Substack's behalf.
CA-P-006884 First tracked May 8, 2026 Last seen May 22, 2026 Compare across platforms →
medium Disclosure requirements
Cash App · Cash App Terms of Service
The inclusion of a dedicated Generative AI Terms of Use section indicates that Cash App has integrated AI-generated content or AI-assisted features into the platform, and that users are subject to specific conditions when using those features. This provision may have implications for data inputs, AI-generated output accuracy, and liability for reliance on AI-generated information in a financial context.
CA-P-000622 First tracked Apr 3, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Adobe · Adobe Terms of Use
This provision directly addresses a major concern among creative professionals by explicitly prohibiting Adobe from using user content for generative AI training, with a narrow and clearly defined exception for Stock contributors.
CA-P-010082 First tracked May 11, 2026 Last seen May 22, 2026 Compare across platforms →
Adobe · Adobe Terms of Use
The clause establishes a boundary on permissible AI training applications while creating a distinct authorization pathway for Adobe's own AI development activities using licensed Stock content. This delineates operational restrictions on user-submitted materials versus Adobe's internal AI capabilities.
CA-P-001063 First tracked Apr 3, 2026 Last seen Apr 10, 2026 Compare across platforms →
medium Data sharing
23andMe · 23andMe Terms of Service
This provision sets the operational boundaries for how the platform may be utilized. It establishes the primary use cases under which the service is offered and frames the intended application of genetic data and analysis tools.
CA-P-000891 First tracked Apr 3, 2026 Last seen May 11, 2026 Compare across platforms →
23andMe · 23andMe Privacy Statement
The operational significance is that account deletion does not automatically purge all genetic data from 23andMe's infrastructure; retention policies apply independently of account status. This affects data lifecycle management and the scope of deletion requests users may submit.
CA-P-000906 First tracked Apr 3, 2026 Last seen Apr 10, 2026 Compare across platforms →
Ticketmaster · Ticketmaster Privacy Policy
The clause establishes a data collection and sharing framework with third-party suppliers for purposes of service personalization. It clarifies that geodemographic profiling occurs through partner relationships rather than direct collection alone, and that user choice mechanisms apply to this practice.
CA-P-001492 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
Ticketmaster · Ticketmaster Privacy Policy
Your Ticketmaster profile may be enriched with demographic and interest data sourced from third-party advertising partners rather than information you provided directly, which broadens the scope of personal data held about you beyond what you knowingly shared.
CA-P-009650 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Acceptable use
Paramount+ · Paramount+ Terms of Use
Geographic content restrictions are standard in streaming services due to licensing agreements that vary by territory. This provision operationalizes Paramount+'s content licensing obligations and defines the scope of service delivery across different markets.
CA-P-001779 First tracked Apr 3, 2026 Last seen Apr 10, 2026 Compare across platforms →
medium Privacy rights
DraftKings · DraftKings Terms of Use
If you live in or travel to an excluded state or region, you cannot enter real-money contests, and participating from an excluded region could be treated as a violation of the terms, with potential consequences including account suspension or prize forfeiture.
CA-P-007623 First tracked May 9, 2026 Last seen May 22, 2026 Compare across platforms →
medium Legal jurisdiction
MetaMask · MetaMask Terms of Use
Users who access restricted features in prohibited jurisdictions may be violating applicable law, and the agreement places full compliance responsibility on the user rather than on MetaMask.
CA-P-007754 First tracked May 9, 2026 Last seen May 22, 2026 Compare across platforms →
Stash · Stash Privacy Policy
The provision establishes the operational basis for location data collection tied to specific service features, with the collection mechanism conditioned on user consent and limited to the purpose of delivering location-dependent functionality.
CA-P-000534 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →

Compliance Governance Intelligence

Monitor specific governance provisions across platforms.

Compliance includes provision-level monitoring, regulatory mapping, and audit-ready analysis.

Start free Start Compliance free trial