Provision Registry

1160 classified provisions across 277 platforms — browse, filter, and compare.

Every clause classified by type, severity, and platform. Updated as policies change.

Start Professional free trial Track specific clauses across platforms with provision-level alerts.
Filtering: Data collection × Clear all
medium Data collection
Netflix · Netflix Account and Content Policies
Granting remote access to Netflix support means giving a third party full control over your computer, which is a significant privacy and security risk if not clearly understood.
CA-P-002196 First tracked Apr 4, 2026 Last seen Apr 10, 2026 Compare across platforms →
medium Data collection
Netflix · Netflix Terms of Use
Granting full remote access to your computer during a support session carries significant privacy and security risks that consumers should be aware of before consenting.
CA-P-000344 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
medium Data collection
Netflix · Netflix Terms of Use
Granting 'full access' to your computer during a support session creates significant privacy and data security risks, as the support agent can potentially view all files, applications, and data on your device beyond what is needed for Netflix troubleshooting.
CA-P-002273 First tracked Apr 5, 2026 Last seen Apr 9, 2026 Compare across platforms →
Delta Airlines · Delta Terms of Use
This restriction directly affects travel technology companies, price comparison services, and developers who might otherwise use automated means to access fare or schedule data from Delta's website.
CA-P-010282 First tracked May 11, 2026 Last seen May 12, 2026 Compare across platforms →
Replicate · Replicate Terms of Service
By carving Resultant Data out of Customer Data protections, Replicate can freely collect, use, and share aggregated information about your AI model usage without the same restrictions that apply to your content — this data could reveal sensitive business patterns or usage behaviors.
CA-P-004300 First tracked Apr 30, 2026 Last seen Apr 30, 2026 Compare across platforms →
medium Data collection
Replicate · Replicate Terms of Service
By defining Resultant Data as outside the scope of Customer Data, Replicate asserts the right to use anonymized usage information without restriction, which could include data derived from your inputs and model runs. Whether the anonymization meets legal standards under GDPR or CCPA is not specified.
CA-P-009689 First tracked May 10, 2026 Last seen May 12, 2026 Compare across platforms →
PayPal · PayPal Privacy Statement
Users who chose not to create an account during guest checkout had no notice at the time of their transaction that their data would be permanently associated with a future account, raising a retroactive consent concern.
CA-P-002265 First tracked Apr 5, 2026 Last seen Apr 9, 2026 Compare across platforms →
medium Data collection
Twilio · Twilio Privacy Notice
Because Segment is a Twilio-owned product, data collected about you on the website may flow into Twilio's own customer data platform, enabling more persistent and integrated profiling than typical third-party analytics relationships.
CA-P-008675 First tracked May 10, 2026 Last seen May 11, 2026 Compare across platforms →
Segment · Segment Privacy Policy
Because Twilio owns Segment, this creates a situation where your website browsing data is processed by the same company's customer data platform infrastructure, potentially enabling richer data profiling than typical third-party analytics.
CA-P-010087 First tracked May 11, 2026 Last seen May 11, 2026 Compare across platforms →
Yelp · Yelp Privacy Policy
Sensitive personal data categories such as health information, sexual orientation, and religious affiliation receive heightened legal protections under GDPR, CCPA/CPRA, and several US state privacy laws; their collection through incidental platform activity (such as searching for a medical clinic) may not be obvious to users.
CA-P-009024 First tracked May 10, 2026 Last seen May 12, 2026 Compare across platforms →
medium Data collection
Betterment · Betterment Privacy Policy
The collection of Social Security numbers, bank account numbers, and full financial transaction histories creates significant risk exposure if the data is ever breached, misused, or shared beyond what users expect.
CA-P-009204 First tracked May 10, 2026 Last seen May 12, 2026 Compare across platforms →
Ticketmaster · Ticketmaster Privacy Policy
Health and disability information is among the most sensitive categories of personal data under GDPR and similar laws; its collection, storage, and potential sharing with event venues creates heightened privacy risk and legal obligations for Ticketmaster that differ from standard ticketing data.
CA-P-009649 First tracked May 10, 2026 Last seen May 12, 2026 Compare across platforms →
medium Data collection
Noom · Noom Privacy Policy
Health data is among the most sensitive categories of personal information; its collection and potential sharing creates meaningful privacy exposure for users.
CA-P-003844 First tracked Apr 28, 2026 Last seen May 12, 2026 Compare across platforms →
medium Data collection
Audible · Audible Privacy Notice
A persistent 7-day tracking cookie tied to a session ID means Audible can recognise and profile your device across multiple visits within that period, even if you do not log in.
CA-P-001572 First tracked Apr 3, 2026 Last seen Apr 10, 2026 Compare across platforms →
Amplitude · Amplitude Privacy Notice
Session replay captures granular behavioral data including mouse movements and form inputs, which may include sensitive information, and the responsibility for obtaining your consent rests with the business using Amplitude, not Amplitude itself.
CA-P-010290 First tracked May 11, 2026 Last seen May 12, 2026 Compare across platforms →
Shein · Shein Terms and Conditions
This persistent cross-session identifier enables Shein to link your browsing activity across multiple visits, which may constitute personal information under privacy laws and requires disclosure and, in some jurisdictions, consent.
CA-P-007630 First tracked May 9, 2026 Last seen May 12, 2026 Compare across platforms →
Samsung · Samsung Privacy Policy
ACR technology creates a detailed record of your television viewing habits, including content from third-party services, which Samsung may use for advertising purposes and share with partners.
CA-P-007956 First tracked May 10, 2026 Last seen May 12, 2026 Compare across platforms →
Revolut · Revolut Privacy Policy
Identity document data and biometric verification data are treated as special categories under UK GDPR, meaning stricter rules apply to how they are collected, stored, and used, and Revolut must have a stronger legal basis for this processing.
CA-P-007674 First tracked May 9, 2026 Last seen May 12, 2026 Compare across platforms →
Microsoft · Microsoft Privacy Statement (Legacy)
Voice data is inherently sensitive and can reveal personal details beyond the spoken content; the disclosure that voice clips may be reviewed by human employees or contractors is a practice that has attracted regulatory scrutiny at other companies and warrants user awareness.
CA-P-002498 First tracked Apr 9, 2026 Last seen May 11, 2026 Compare across platforms →
Starbucks · Starbucks Privacy Policy
The Rewards program creates a persistent, longitudinal record of your consumer behavior that is directly linked to your identity, making it one of the most data-rich components of the Starbucks customer relationship and the foundation for the profiling and advertising activities described elsewhere in the notice.
CA-P-007243 First tracked May 9, 2026 Last seen May 12, 2026 Compare across platforms →
Stripe · Stripe Privacy Policy
By enrolling in Link, you are creating a persistent financial identity profile with Stripe that is shared across unrelated merchants, giving Stripe broad visibility into your purchasing behavior beyond any single transaction.
CA-P-000749 First tracked Apr 3, 2026 Last seen Apr 3, 2026 Compare across platforms →
Paramount+ · Paramount Privacy Policy
Storing a default payment method enables automatic recurring charges for your subscription, so if you do not update or remove your payment information, billing will continue without additional authorization each cycle.
CA-P-007177 First tracked May 9, 2026 Last seen May 12, 2026 Compare across platforms →
Target · Target Privacy Policy
Target Circle creates a comprehensive cross-channel behavioral profile linking your in-store purchases, online browsing, and offer engagement — this aggregated profile is used for both personalization and advertising targeting.
CA-P-003620 First tracked Apr 27, 2026 Last seen Apr 27, 2026 Compare across platforms →
Skillshare · Skillshare Privacy Policy
Teachers share highly sensitive financial and tax identification data with Skillshare and its third-party payment and tax compliance partners, creating significant data security and identity theft risk if mishandled.
CA-P-001300 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
Uber · Uber Privacy Notice
This behavioral monitoring data is used to generate safety scores that can affect your standing on the platform, and may be shared with insurers, meaning how you drive could directly affect your insurance premiums or coverage.
CA-P-001866 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
medium Data collection
Tabnine · Tabnine Terms of Use
This clause discloses that Tabnine collects telemetry data including code completion statistics and plugin interaction data, which may include metadata about code patterns and development activity; users in privacy-sensitive roles should review what specific telemetry is collected.
CA-P-011530 First tracked May 12, 2026 Last seen May 12, 2026 Compare across platforms →
Chime · Chime Privacy Policy
Chime's website actively loads tracking pixels from Facebook, TikTok, Google, Reddit, Taboola, Bing, and LiveRamp, meaning your visit to Chime's site or use of its app may contribute to advertising profiles across multiple third-party platforms.
CA-P-009946 First tracked May 11, 2026 Last seen May 12, 2026 Compare across platforms →
RunPod · RunPod Privacy Policy
These third-party scripts can collect data about how you interact with the RunPod website and may share that data with Google and Intellimize, which are separate companies with their own data practices.
CA-P-009102 First tracked May 10, 2026 Last seen May 12, 2026 Compare across platforms →
Palantir · Palantir Privacy Statement
Third-party analytics tools can share your browsing data with advertising platforms, and their use on a privacy policy page specifically has attracted regulatory attention in some EU jurisdictions regarding whether consent is properly obtained before tracking cookies are set.
CA-P-009644 First tracked May 10, 2026 Last seen May 12, 2026 Compare across platforms →
Writer · Writer Privacy Policy
Third-party tracking technologies like Google Analytics can build profiles of your online behavior across many websites, not just Writer, which goes beyond what many users would expect from an enterprise AI platform.
CA-P-005915 First tracked May 8, 2026 Last seen May 8, 2026 Compare across platforms →

Professional Governance Intelligence

Monitor specific governance provisions across platforms.

Professional includes provision-level monitoring, regulatory mapping, and audit-ready analysis.

Start free Start Professional free trial