Provision Registry

7353 classified provisions across 299 platforms — browse, filter, and compare.

Every clause classified by type, severity, and platform. Updated as policies change.

Start Compliance free trial Track specific clauses across platforms with provision-level alerts.
Filtering: Medium × Clear all
medium Privacy rights
BeReal · BeReal Privacy Policy
The absence of specific retention timelines for categories of data such as dual-camera imagery and location data makes it difficult for users to know exactly how long their most sensitive information is held.
CA-P-006344 First tracked May 8, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
HubSpot · HubSpot Privacy Policy
This provision establishes a principles-based rather than fixed-period retention framework, which may require evaluation under GDPR data minimization and storage limitation principles where specific retention schedules are expected by supervisory authorities.
CA-P-002981 First tracked Apr 18, 2026 Last seen May 22, 2026 Compare across platforms →
medium Data retention
Visa · Visa Privacy Notice
The clause defines the operational scope and duration of data retention practices, establishing that retention periods are determined by functional necessity rather than fixed time limits, and explicitly authorizing retention to support regulatory compliance and dispute resolution activities.
CA-P-002249 First tracked Apr 4, 2026 Last seen Apr 27, 2026 Compare across platforms →
medium Data retention
Nintendo · Nintendo Privacy Policy
The clause defines the operational framework for data lifecycle management, establishing that retention decisions are tied to functional necessity and legal compliance rather than fixed timeframes. This approach allows Nintendo to maintain records across multiple justifications without specifying discrete deletion schedules.
CA-P-001000 First tracked Apr 3, 2026 Last seen Apr 27, 2026 Compare across platforms →
medium Data retention
Uber · Uber Privacy Notice
The clause defines the operational scope and duration of data retention by linking retention periods to specific business and legal functions rather than establishing fixed time limits, which affects the company's data management obligations and compliance framework.
CA-P-006906 First tracked May 8, 2026 Last seen May 11, 2026 Compare across platforms →
medium Privacy rights
Fly.io · Fly.io Privacy Policy
Open-ended retention language means your personal data may be held indefinitely unless you actively request deletion, and the criteria for determining retention length are not defined with precision.
CA-P-005364 First tracked May 7, 2026 Last seen May 22, 2026 Compare across platforms →
medium Data retention
Apple App Store · Apple Privacy Policy
This provision operationalizes Apple's retention obligations by establishing criteria for determining storage duration rather than specifying fixed retention periods. The framework ties retention duration to purpose fulfillment and risk assessment, creating a variable retention standard based on data classification and processing necessity.
CA-P-002419 First tracked Apr 9, 2026 Last seen Apr 10, 2026 Compare across platforms →
medium Data retention
Fastly · Fastly Privacy Policy
The clause defines the operational framework for data lifecycle management, establishing both retention triggers (fulfillment of stated purposes and legal obligations) and termination conditions (deletion or anonymization upon loss of necessity). This structure addresses regulatory compliance requirements and establishes predictable data handling procedures.
CA-P-006999 First tracked May 8, 2026 Last seen May 8, 2026 Compare across platforms →
medium Privacy rights
Cloudflare · Cloudflare Privacy Policy
The absence of specific retention periods in the public policy makes it difficult for users to know how long their IP addresses, usage logs, and account data are stored, which is relevant to understanding the scope of potential data exposure.
CA-P-003016 First tracked Apr 18, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Miro · Miro Privacy Policy
If Miro retains your data for extended periods after account closure or inactivity, your information may remain in Miro systems longer than you would expect. Users who close accounts should consider submitting a deletion request to ensure timely removal.
CA-P-007872 First tracked May 9, 2026 Last seen May 20, 2026 Compare across platforms →
medium Data retention
Neon · Neon Privacy Policy
This provision establishes the operational framework governing how long Neon maintains personal data in its systems. The retention standard ties duration to purpose fulfillment and legal obligation rather than specifying fixed retention periods, requiring contextual assessment of each data category.
CA-P-004800 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
medium Privacy rights
Weights & Biases · Weights & Biases Privacy Policy
Retention periods determine how long your personal data exists in CoreWeave's systems, affecting both your privacy and the company's obligation to delete data upon request.
CA-P-004029 First tracked Apr 30, 2026 Last seen May 20, 2026 Compare across platforms →
medium Data retention
Uber · Uber Privacy Notice
The provision operationalizes data retention by tying the retention period to purpose fulfillment and legal requirements rather than establishing a fixed deletion timeline. This creates a variable retention schedule where data persistence depends on ongoing purpose applicability and regulatory mandates.
CA-P-002309 First tracked Apr 9, 2026 Last seen Apr 28, 2026 Compare across platforms →
medium Data retention
Palantir · Palantir Privacy Statement
This clause establishes the operational framework for data lifecycle management, permitting indefinite retention where legally authorized or operationally necessary while requiring deletion once purposes are fulfilled. The provision ties retention duration to functional necessity rather than creating a defined expiration schedule.
CA-P-004244 First tracked Apr 30, 2026 Last seen Apr 30, 2026 Compare across platforms →
medium Data retention
Patreon · Patreon Privacy Policy
Data retention policies establish the operational framework for when personal information is deleted or anonymized, affecting the scope and duration of Patreon's data stewardship obligations and determining how long user information remains available for service operations, analytics, or legal compliance.
CA-P-000974 First tracked Apr 3, 2026 Last seen Apr 10, 2026 Compare across platforms →
medium Data retention
X · X Privacy Policy
This provision establishes X's data retention framework and specifies exceptions to deletion requests. The operational significance is that account deletion does not automatically result in complete data removal across all categories, as certain data classes are subject to extended retention under defined circumstances.
CA-P-006642 First tracked May 8, 2026 Last seen May 8, 2026 Compare across platforms →
medium Privacy rights
DocuSign · DocuSign Privacy Statement
Open-ended retention language means your data, including document content, may be retained for extended periods beyond the immediate transaction, and the specific retention periods are not detailed in the public notice.
CA-P-008915 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
GitHub · GitHub Privacy Statement
The policy does not specify retention periods for individual data categories, stating instead that retention is based on necessity and legal obligation; this means users cannot determine from this document alone how long specific types of data will be held.
CA-P-003601 First tracked Apr 27, 2026 Last seen May 22, 2026 Compare across platforms →
medium Data retention
Loom · Loom Privacy Policy
This provision establishes the operational scope and duration of data retention within Loom's service infrastructure. The clause authorizes extended retention periods beyond active service use by reference to multiple institutional purposes, which affects the timeline and conditions under which personal information is maintained in company systems.
CA-P-005466 First tracked May 7, 2026 Last seen May 7, 2026 Compare across platforms →
medium Privacy rights
T-Mobile · T-Mobile Privacy Policy
Open-ended retention language tied to 'business needs' and 'legal obligations' without specific retention periods means consumers have limited visibility into how long sensitive data such as location records, call logs, and financial information is actually stored.
CA-P-010245 First tracked May 11, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Monday.com · Monday.com Privacy Policy
The absence of specific retention periods means personal data may be retained for an indeterminate period after you stop using the service, until you actively request deletion or your account is closed.
CA-P-008746 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Data retention
Ancestry · Ancestry Privacy Statement
This provision establishes the operational framework governing how long Ancestry maintains user data and the circumstances under which retention continues post-deletion. The clause creates exceptions to deletion requests based on legal requirements and specified business operations, which affects the scope and timeline of data removal.
CA-P-006462 First tracked May 8, 2026 Last seen May 8, 2026 Compare across platforms →
medium Data retention
DeepL · DeepL Privacy Policy
This provision establishes the operational framework for data lifecycle management, defining retention periods tied to purpose necessity and legal requirements rather than indefinite storage. It creates a procedural obligation for deletion or anonymization upon account termination.
CA-P-004054 First tracked Apr 30, 2026 Last seen Apr 30, 2026 Compare across platforms →
medium Privacy rights
MyFitnessPal · MyFitnessPal Privacy Policy
The retention period is not precisely defined, which means your health and fitness data could be held for an extended and uncertain duration even after you stop using or delete your account.
CA-P-009362 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Data retention
Stripe · Stripe Privacy Policy
The retention standard creates an operational baseline tied to functional necessity and legal mandate rather than a fixed timeline, establishing that retention duration varies by data category and regulatory context. This framework allocates responsibility to Stripe for determining appropriate retention periods based on stated purposes and legal requirements.
CA-P-002346 First tracked Apr 9, 2026 Last seen Apr 10, 2026 Compare across platforms →
medium Data retention
Microsoft · Microsoft Privacy Statement (Legacy)
The provision operationalizes data retention as a function of multiple institutional factors rather than a fixed timeline, establishing that Microsoft determines retention periods through assessment of necessity, legal requirements, and product-specific contexts. This framework allows retention durations to differ substantially across data categories and user segments.
CA-P-008965 First tracked May 10, 2026 Last seen May 11, 2026 Compare across platforms →
medium Privacy rights
Squarespace · Squarespace Privacy Policy
The litigation hold carve-out means Squarespace may retain your data beyond the period you would expect or request deletion, and the retention periods are not specified with defined timeframes.
CA-P-010307 First tracked May 11, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Walmart · Walmart Privacy Policy
The absence of specific retention timelines in the general notice means consumers cannot easily determine how long their purchase history, location data, or biometric identifiers will be retained, which is relevant to the practical effectiveness of deletion rights.
CA-P-011365 First tracked May 12, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
ClickUp · ClickUp Privacy Policy
Open-ended retention language means your data could be kept indefinitely without a clear endpoint, which affects both your privacy expectations and your ability to request deletion.
CA-P-008115 First tracked May 10, 2026 Last seen May 22, 2026 Compare across platforms →
medium Privacy rights
Fiverr · Fiverr Privacy Policy
Retention periods are not specified with precision, meaning Fiverr may retain your personal data for extended periods after you stop using the service, including for unspecified legal obligation and dispute resolution purposes.
CA-P-007435 First tracked May 9, 2026 Last seen May 22, 2026 Compare across platforms →

Compliance Governance Intelligence

Monitor specific governance provisions across platforms.

Compliance includes provision-level monitoring, regulatory mapping, and audit-ready analysis.

Start free Start Compliance free trial