These rights are meaningful tools for users to manage their personal data, but they are qualified by the phrase 'depending on what laws apply,' meaning the rights available to you depend on your jurisdiction and may not be universally available to all Bluesky users.
Calm
· Calm Privacy Policy
This provision confirms that privacy rights are not limited to EU or California residents; any user can request access to, correction of, or deletion of their personal data by contacting Calm.
Knowing how to exercise your data rights is practically important, and Riot's provision of a dedicated portal is a meaningful consumer-facing mechanism for submitting requests.
By extending state privacy rights to all U.S. residents, the policy makes data access, deletion, correction, portability, and opt-out of tailored advertising available to users in states that do not yet have standalone comprehensive privacy laws, expanding the practical scope of these rights beyond what applicable law strictly requires.
If someone else accesses your account because your password was compromised, you remain responsible for any activity that occurs unless and until you report the unauthorized access to Dropbox.
These rights allow members to review what data LinkedIn holds, correct inaccuracies, request deletion, or limit certain uses; the availability and scope of these rights varies by jurisdiction, with EU/EEA users having the most clearly defined framework.
This provision operationalizes data subject rights by explicitly authorizing users to initiate requests for data access and modification, while establishing a procedural protection against service degradation as a consequence of exercising those rights. The non-discrimination assurance clarifies Apple's operational obligations when processing such requests.
Tinder
· Tinder Privacy Policy
This provision establishes the operational framework under which Tinder responds to user data subject access requests and related rights. The availability of these mechanisms is contingent on applicable legal jurisdiction, meaning the scope and applicability of these rights varies by location.
Loom
· Loom Privacy Policy
These rights give you a concrete way to find out what data Loom holds about you, ask for it to be deleted, or stop certain types of processing, but the practical availability of these rights depends on your location and whether you are accessing Loom as an individual or through an employer.
Bumble
· Bumble Privacy Policy
These provisions operationalize data subject access rights, establishing procedural mechanisms through which users can exercise control over personal information retention and format. The specification of a dedicated email address creates a defined request and response pathway for data governance requests.
The availability of these rights is conditional on the user's location, meaning not all users globally have the same set of enforceable rights under this policy.
This provision describes the data subject rights framework Telegram asserts it supports, including portability and the right to lodge complaints with national authorities. The qualification of rights as applying under applicable legislation and in certain circumstances reflects standard GDPR language conditioning these rights on legal basis and specific circumstances.
Writer
· Writer Privacy Policy
These rights are legally enforceable for EU, UK, and California residents, meaning Writer is obligated under applicable law to respond to valid requests within specified timeframes.
eBay
· eBay Privacy Notice
Knowing you have the right to contact eBay's Privacy Team and exercise data rights is important for users who want to access, correct, delete, or port their personal information.
Miro
· Miro Privacy Policy
This provision establishes the procedural mechanism for data subject rights requests, which is a direct compliance obligation under GDPR, UK GDPR, and CCPA/CPRA, and determines the operational workflow Miro uses to respond to these requests.
The policy provides a single email contact for exercising all privacy rights and commits to non-discrimination for rights exercises, which is required under CCPA and consistent with GDPR obligations; however, the policy notes that actioning requests regarding training datasets is complex and may not always be possible.
Cohere
· Cohere Privacy Policy
This provision establishes the procedural mechanism through which users may invoke jurisdiction-specific privacy rights and establishes Cohere's obligation to process such requests according to applicable legal requirements. The clause operationalizes compliance with varying privacy regimes by directing requests to a designated contact point and specifying that responses must align with legal standards.
Fly.io
· Fly.io Privacy Policy
These rights give users meaningful control over their personal data, but exercising them requires knowing they exist and actively contacting Fly.io to invoke them.
These rights give users meaningful control over the personal data Uniswap Labs holds about them, including the wallet address and IP address combination, though the practical scope of deletion rights is limited by the immutability of blockchain data.
Knowing your rights and the practical steps to exercise them means you can actively control what Revolut knows about you and how it uses that information.
This provision operationalizes Peloton's compliance framework with varying data subject rights under different privacy regimes (including GDPR, CCPA, and other state/national laws). The jurisdiction-dependent structure means users' available remedies and data control mechanisms are determined by their location rather than uniform across the user base.
BeReal
· BeReal Privacy Policy
These rights establish enforceable mechanisms through which users can exercise control over personal data processing practices. The provision operationalizes statutory obligations under EU and California privacy frameworks by explicitly recognizing user entitlements to initiate data-related requests.
This provision creates a publicly auditable, cryptographically signed record of the software running on PCC nodes, which is the primary mechanism by which the other privacy guarantees in this document can be independently verified rather than accepted on Apple's word alone.
The Virtual Research Environment is the primary mechanism by which the privacy and security claims in this guide can be independently verified, and the existence of a formal research pathway and bug bounty program creates an operational accountability mechanism beyond self-attestation.
Twilio
· Twilio Privacy Notice
This provision establishes VWO as an active behavioral tracking and experimentation tool on twilio.com. The consent handler reads a specific TrustArc consent key from localStorage and maps it to VWO initialization states (1=allowed, 2=no consent data found, 3=denied), indicating a consent-conditional loading mechanism for this specific tool.
OpenAI
· OpenAI Safety Standards
Voluntary government commitments of this type may influence how regulators evaluate OpenAI's practices and could become reference points in future enforcement or regulatory proceedings, though they are not legally binding in the same manner as regulatory requirements.
This commitment is significant for developers who need to ensure that sensitive API interactions are not retained on Fireworks infrastructure, which is relevant for legal, security, and confidentiality purposes.