Provision Registry

7353 classified provisions across 299 platforms — browse, filter, and compare.

Every clause classified by type, severity, and platform. Updated as policies change.

Start Compliance free trial Track specific clauses across platforms with provision-level alerts.
Filtering: Medium × Clear all
medium Restricted content
Google Ads · Google Ads Advertising Policies Overview
This provision establishes that political advertising eligibility and requirements are jurisdiction-dependent, requiring advertisers to satisfy both local electoral law and Google's country-specific platform policies, which may differ materially across markets.
CA-P-012084 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →
X · X Ads Policies
This provision requires advertisers in regulated categories to complete an approval process with X before launching campaigns, creating a procedural prerequisite for campaign eligibility; the absence of defined approval timelines in this document creates potential operational uncertainty for time-sensitive campaigns.
CA-P-012474 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →
Shopify · Shopify Acceptable Use Policy
The provision creates a pre-authorization requirement for specific product categories, establishing Shopify's gatekeeping role over merchant product offerings. This mechanism enables Shopify to conduct categorical review and risk assessment before permitting sales of regulated or high-risk product types on its platform.
CA-P-002657 First tracked Apr 10, 2026 Last seen Apr 10, 2026 Compare across platforms →
medium Platform discretion
Delta Airlines · Delta Terms of Use
This restriction directly affects travel technology companies, price comparison services, and developers who might otherwise use automated means to access fare or schedule data from Delta's website.
CA-P-010282 First tracked May 11, 2026 Last seen May 22, 2026 Compare across platforms →
23andMe · 23andMe Terms of Service
The restriction operates as a condition of service eligibility by excluding specific institutional entity types from accessing 23andMe's platform. This limitation may reflect regulatory requirements or service-specific operational constraints related to genetic data handling by institutional users.
CA-P-000897 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
OpenAI · OpenAI Usage Policies
This provision establishes a procedural requirement that OpenAI customers implement human oversight mechanisms when deploying automated decision systems in high-impact contexts. The restriction functions as a use-case limitation in OpenAI's service agreement, requiring customers to maintain human review as a condition of service use in these specified domains.
CA-P-010653 First tracked May 11, 2026 Last seen May 11, 2026 Compare across platforms →
OpenAI · OpenAI Usage Policies
This restriction operationalizes OpenAI's content governance framework by establishing categorical prohibitions on a specific class of outputs—impersonation content—that present elevated risk of downstream fraud or reputational harm to named third parties and financial system integrity.
CA-P-010654 First tracked May 11, 2026 Last seen May 11, 2026 Compare across platforms →
Stability AI · Stability AI Model License
This provision determines the conditions under which users may share, redistribute, or build upon Stability AI model weights, which is operationally significant for developers publishing fine-tuned models, open-source projects, and organizations distributing AI-powered applications.
CA-P-012669 First tracked May 21, 2026 Last seen May 22, 2026 Compare across platforms →
Replicate · Replicate Terms of Service
The definition creates a contractual distinction between customer-controlled data and aggregated usage metrics, clarifying that performance analytics and statistical compilations generated from service operation remain available to the provider independently of customer data retention rights.
CA-P-004300 First tracked Apr 30, 2026 Last seen Apr 30, 2026 Compare across platforms →
medium Data sharing
Replicate · Replicate Terms of Service
By defining Resultant Data as outside the scope of Customer Data, Replicate asserts the right to use anonymized usage information without restriction, which could include data derived from your inputs and model runs. Whether the anonymization meets legal standards under GDPR or CCPA is not specified.
CA-P-009689 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
Minecraft · Minecraft Privacy Statement
The clause creates a variable retention framework rather than fixed deletion timelines, which means data lifecycle management is contingent on operational necessity and legal requirements rather than predetermined schedules. This structure requires the entity to determine retention duration based on contextual factors for different data categories.
CA-P-004710 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
Reddit · Reddit Privacy Policy
The provision creates a two-stage deletion process: account visibility termination is immediate, but content persistence depends on prior user action. This distinction establishes Reddit's data retention authority during the deletion process and permits indefinite retention of anonymized or legally-mandated information, affecting the scope and timeline of data removal.
CA-P-000713 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
Redfin · Redfin Privacy Policy
This means correcting your personal data in your account does not necessarily result in that original data being deleted from Redfin's systems, which may matter for users who have provided inaccurate or sensitive information they later wish to remove.
CA-P-009726 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Meta Ads · Meta Privacy Policy
This provision establishes that Meta does not apply fixed retention periods across data categories but instead determines retention duration on a case-by-case basis, with 'protection of interests' and 'other legitimate purposes' included as open-ended retention justifications alongside legal obligations and service delivery.
CA-P-012439 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Thomson Reuters · Thomson Reuters Privacy
Open-ended retention periods mean personal data may be held for extended periods, particularly where legal or regulatory requirements create long retention obligations, reducing individuals' practical ability to have data deleted.
CA-P-009355 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
Amazon Marketplace · Amazon Privacy Notice
The retention standard establishes that data retention is tied to service provision, legal compliance obligations, and disclosed purposes rather than automatic deletion upon account closure or service discontinuation. This creates an ongoing data retention framework with multiple operational justifications.
CA-P-002302 First tracked Apr 9, 2026 Last seen Apr 9, 2026 Compare across platforms →
PayPal · PayPal Privacy Statement
This provision establishes PayPal's operational practice of consolidating transaction history across guest and account-based interactions. The retroactive linking affects the scope of data associated with an account and the transaction record PayPal maintains under the account relationship.
CA-P-002265 First tracked Apr 5, 2026 Last seen Apr 9, 2026 Compare across platforms →
OpenRouter · OpenRouter Privacy Policy
The policy states changes apply to existing data retroactively, meaning processing practices for data already collected may change without the user needing to take any affirmative action to accept new terms.
CA-P-011897 First tracked May 12, 2026 Last seen May 20, 2026 Compare across platforms →
medium Payment fees
Bank of America · Bank of America Fee Schedule
The provision defines a specific charge associated with failed deposit transactions, establishing a cost structure for the operational handling of returned items. This fee represents a defined revenue mechanism tied to deposit processing failures.
CA-P-000480 First tracked Apr 3, 2026 Last seen Apr 10, 2026 Compare across platforms →
Perplexity AI · Perplexity Data Processing Addendum
This clause implements the GDPR Article 28(3)(g) data return and deletion requirement and is operationally significant for customers managing data lifecycle obligations and vendor offboarding procedures.
CA-P-012525 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →
medium Content moderation
PayPal · PayPal Buyer and Seller Protection
This provision establishes the cost allocation mechanism for product return obligations within PayPal's dispute resolution framework. By excluding return shipping from coverage, the terms define which party bears the financial burden when item returns are required to resolve purchase disputes.
CA-P-002725 First tracked Apr 18, 2026 Last seen Apr 18, 2026 Compare across platforms →
PayPal · PayPal Buyer and Seller Protection
The provision operationally defines the boundaries of PayPal's Purchase Protection coverage by explicitly carving out return shipping costs from reimbursable expenses. This clarifies the financial responsibility allocation between PayPal, buyers, and sellers in claim resolution procedures.
CA-P-003934 First tracked Apr 28, 2026 Last seen Apr 28, 2026 Compare across platforms →
medium Platform discretion
Cash App · Cash App Terms of Service
The provision defines the legal mechanism through which the service provider maintains authority to alter the contractual relationship with users and establishes the procedural requirements for notification. This allocation of amendment authority affects whether terms remain fixed or may be modified during the course of the user relationship.
CA-P-008198 First tracked May 10, 2026 Last seen May 11, 2026 Compare across platforms →
medium Platform discretion
Meta · Llama API Terms of Service
The revocable nature of this license means that any application or business built on Meta's APIs operates without a guarantee of continued access, creating material risk if Meta modifies or removes access.
CA-P-011482 First tracked May 12, 2026 Last seen May 20, 2026 Compare across platforms →
TaskRabbit · TaskRabbit Terms of Service
This provision establishes TaskRabbit's authority to control access to the platform through license revocation and account termination based on information accuracy requirements and platform risk assessment. The revocable nature of the license means platform access is conditional rather than permanent, and termination authority is reserved to TaskRabbit as a contractual right.
CA-P-003451 First tracked Apr 27, 2026 Last seen Apr 27, 2026 Compare across platforms →
TaskRabbit · TaskRabbit Privacy Policy
The clause establishes procedural mechanisms for data subject rights, enabling users to review, modify, and request removal of personal information from TaskRabbit's systems in accordance with data access and deletion authorization frameworks.
CA-P-000887 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
medium Privacy rights
Google Gemini · Gemini Apps Privacy Notice
This provision establishes the operational mechanisms by which users can control data retention, including manual deletion options and automatic deletion timelines. The clause specifies that activity cessation results in data purge on a defined schedule, creating a procedural framework for data lifecycle management.
CA-P-005550 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
medium Privacy rights
TaskRabbit · TaskRabbit Privacy Policy
This provision establishes the operational framework for data subject deletion requests under privacy regulations. The carve-out for legally-required retention clarifies that TaskRabbit's deletion obligations are subject to compliance with applicable legal retention requirements.
CA-P-005172 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
Anthropic · Anthropic Privacy Policy
The provision establishes a deletion mechanism with two operational components: a general data deletion request process subject to exceptions, and an immediate conversation-level deletion with a defined 30-day backend purge timeline. The 30-day backend retention period represents the operative timeframe between user-initiated deletion and complete removal from backend infrastructure.
CA-P-000104 First tracked Apr 3, 2026 Last seen Apr 10, 2026 Compare across platforms →
Anthropic · Anthropic Privacy Policy
The provision establishes a data deletion mechanism with two operational pathways: user-initiated deletion requests for personal data (subject to exceptions) and automatic deletion of conversation records following a 30-day backend retention period. This structure creates distinct timelines for different data categories.
CA-P-004653 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →

Compliance Governance Intelligence

Monitor specific governance provisions across platforms.

Compliance includes provision-level monitoring, regulatory mapping, and audit-ready analysis.

Start free Start Compliance free trial