Provision Registry

3351 classified provisions across 299 platforms — browse, filter, and compare.

Every clause classified by type, severity, and platform. Updated as policies change.

Start Compliance free trial Track specific clauses across platforms with provision-level alerts.
Filtering: Privacy rights × Clear all
Audible · Audible Privacy Notice
This provision establishes that listening and content interaction data is used not only for service delivery but also for advertising measurement and personalization, including interest-based advertising. This use of sensitive behavioral data for advertising purposes may engage CPRA's opt-out of sensitive data processing requirements and GDPR profiling rules depending on the inferences drawn.
CA-P-013199 First tracked May 21, 2026 Last seen May 22, 2026 Compare across platforms →
Twitch · Twitch Privacy Notice
Once your data is transferred to an exhibitor, Twitch's privacy protections no longer apply; you are subject to the exhibitor's own data practices, which you may not have reviewed or consented to in advance.
CA-P-009597 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
Chime · Chime Privacy Policy
Identity resolution services like LiveRamp can connect your Chime activity to your broader online identity across websites, apps, and devices, potentially creating a richer advertising profile than traditional tracking alone.
CA-P-009950 First tracked May 11, 2026 Last seen May 22, 2026 Compare across platforms →
Whatnot · Whatnot Privacy Policy
Collection of audiovisual content from livestreams constitutes collection of biometric-adjacent data in some jurisdictions and may engage state biometric privacy statutes; session and interaction metadata from livestreams can be used for behavioral profiling and platform personalization as described elsewhere in the policy.
CA-P-012493 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
WhatsApp · WhatsApp Privacy Policy
The collection of unique identifiers associated with other Facebook Company products on the same device creates a technical linkage between your WhatsApp usage and your activity on other Meta platforms, supporting cross-platform data integration described elsewhere in the policy.
CA-P-011431 First tracked May 12, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Chase · Chase Privacy Notice
Real-time location data is among the most sensitive categories of personal information, and its collection for marketing offers goes beyond what is strictly necessary to deliver core banking services.
CA-P-008777 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Threads · Threads Privacy Policy
This provision establishes that location data, including precise GPS location where device permissions allow, is collected and available for use in advertising targeting, personalization, and other purposes described in the policy. Location data combined with behavioral and identity data can enable granular profiling.
CA-P-010734 First tracked May 11, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Venmo · Venmo Privacy Policy
The policy authorizes collection of both precise device geolocation and IP-derived approximate location, creating a location history associated with the user's financial activity and identity.
CA-P-002798 First tracked Apr 18, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
TaskRabbit · TaskRabbit Privacy Policy
This provision establishes that the platform collects precise geographic coordinates in addition to approximate location data, which constitutes sensitive personal information under CCPA and may require distinct handling under GDPR and applicable state privacy laws.
CA-P-012512 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Zillow · Zillow Privacy Notice
Precise location data is among the most sensitive personal data categories and can reveal daily routines, home address, and patterns of movement; its sharing with third-party providers extends its exposure beyond Zillow.
CA-P-007591 First tracked May 9, 2026 Last seen May 20, 2026 Compare across platforms →
medium Privacy rights
Paramount+ · Paramount Privacy Policy
Location data enables Paramount+ to control which content you can access based on where you are, and may also be used for advertising targeting purposes, making it a category of data with both service and commercial uses.
CA-P-007176 First tracked May 9, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Meta Ads · Meta Privacy Policy
This provision establishes that Meta collects multiple categories of location data, ranging from precise GPS-level device location to inferred location from social activity, and applies this data to advertising and personalization purposes across Meta's products.
CA-P-000188 First tracked Apr 3, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
YouTube Ads · Google Privacy Policy
This provision authorizes collection of granular location data through multiple signal types simultaneously, which is material for advertising targeting, product personalization, and data profiling; the use of GPS alongside Wi-Fi and nearby device sensors can enable precise location inference.
CA-P-001900 First tracked Apr 4, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Eufy · Eufy Privacy Policy
Precise location data reveals sensitive behavioral patterns including your home address, daily routines, and periods of absence, making it one of the most privacy-sensitive data categories collected by consumer devices.
CA-P-009533 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Oura · Oura Privacy Policy
This provision establishes that precise location data may be collected via GPS and Wi-Fi triangulation for activity tracking purposes, conditioned on device-level consent. The policy notes that disabling location access may reduce service functionality, which compliance teams should evaluate in the context of whether this creates an effective barrier to consent withdrawal.
CA-P-012695 First tracked May 21, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Apple App Store · Apple Privacy Policy
Precise real-time location data is one of the most sensitive categories of personal information because it can reveal where you live, work, worship, seek medical care, and who you associate with. The fact that this data may be shared with partners and licensees extends its reach beyond Apple.
CA-P-002416 First tracked Apr 9, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
YouTube Ads · Google Privacy Policy
Location data is among the most sensitive categories of personal information because it can reveal where you live, work, worship, receive medical care, and more — and the policy authorizes its use for ad targeting.
CA-P-000135 First tracked Apr 3, 2026 Last seen May 20, 2026 Compare across platforms →
medium Privacy rights
Nextdoor · Nextdoor Privacy Policy
This provision authorizes collection of precise location data as both a functional and advertising-related data practice, which implicates heightened sensitivity classifications under CPRA and requires documented lawful basis under GDPR.
CA-P-012691 First tracked May 21, 2026 Last seen May 22, 2026 Compare across platforms →
TikTok · TikTok Privacy Policy
Approximate location is collected by default from IP address and device settings, while precise location collection requires enabling location services; the policy states location services can be disabled in device settings at any time, giving users a direct control mechanism.
CA-P-011619 First tracked May 12, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Oura · Oura Privacy Policy
Precise location data combined with detailed health and biometric data creates a particularly sensitive data profile; users should be aware they can disable location tracking without losing core Oura functionality, though some features may be affected.
CA-P-004912 First tracked May 7, 2026 Last seen May 20, 2026 Compare across platforms →
medium Privacy rights
Cohere · Cohere Enterprise Data Commitments
Logical isolation is a key data security commitment for enterprise customers, particularly those in regulated industries. The document states this separation applies to customer data within Cohere's shared infrastructure.
CA-P-011330 First tracked May 12, 2026 Last seen May 22, 2026 Compare across platforms →
Walgreens · Walgreens Privacy Policy
Loyalty program participation generates a persistent, linked dataset combining retail purchase history, prescription information, and behavioral data, which the policy authorizes for use in personalized advertising and communications. The combination of pharmacy and retail data within the loyalty program context creates specific data minimization and use limitation considerations.
CA-P-012825 First tracked May 21, 2026 Last seen May 22, 2026 Compare across platforms →
TikTok Ads · TikTok Privacy Policy
Using personal data to train AI models is an emerging area of regulatory scrutiny; data used in model training may be retained and influence system behavior in ways that are difficult to audit or reverse, and this use may require a distinct legal basis in some jurisdictions.
CA-P-009479 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Google Play Store · Google Play Terms
This provision discloses collection of device-level data including the full list of installed applications and network connection information, not limited to apps installed through Google Play, for security analysis purposes. Under this clause, some level of application inventory analysis continues even when users disable certain protection features in device settings.
CA-P-013180 First tracked May 21, 2026 Last seen May 22, 2026 Compare across platforms →
Visa · Visa Privacy Notice
The opt-out right for marketing communications is meaningful, but targeted advertising may involve sharing data with third-party advertising platforms that persists independently of opting out of direct Visa marketing emails.
CA-P-008721 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Best Buy · Best Buy Privacy Policy
The provision establishes Best Buy's authority to initiate marketing communications across multiple channels while simultaneously creating procedural pathways for users to restrict receipt of such communications. The operational significance lies in the explicit opt-out mechanisms available to users rather than an opt-in requirement.
CA-P-005565 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
medium Privacy rights
McDonald's · McDonald's Privacy Policy
The clause establishes the operational basis for McDonald's marketing communications practices and specifies the procedural pathways through which users may modify their receipt of promotional content. This delineates both the company's authorization to conduct marketing outreach and the control mechanisms available to users within the service infrastructure.
CA-P-006217 First tracked May 8, 2026 Last seen May 8, 2026 Compare across platforms →
Target · Target Privacy Policy
The provision creates an opt-out framework rather than an opt-in requirement, meaning promotional communications are sent by default unless customers take action to decline them. The operational significance lies in the multiple opt-out mechanisms available across different communication channels.
CA-P-001376 First tracked Apr 3, 2026 Last seen Apr 17, 2026 Compare across platforms →
medium Privacy rights
Revolut · Revolut Privacy Policy
The clause establishes an operational framework for preference management, enabling users to control the scope of marketing communications directed to them without requiring service termination or account suspension.
CA-P-004701 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
medium Privacy rights
Zoom · Zoom Privacy Statement
This provision establishes that Zoom's data collection scope includes the substantive content of communications, not only metadata or usage signals. For enterprise accounts processing confidential business discussions, legal communications, or healthcare-related conversations, this collection scope is relevant to data classification and retention assessments.
CA-P-012532 First tracked May 20, 2026 Last seen May 22, 2026 Compare across platforms →

Compliance Governance Intelligence

Monitor specific governance provisions across platforms.

Compliance includes provision-level monitoring, regulatory mapping, and audit-ready analysis.

Start free Start Compliance free trial