Live feed · updated daily
Recent policy changes
3052 policy changes
detected across 352 platforms. Most platforms don't announce policy changes — these updates were detected automatically.
May 1, 2026
Fixed grammatical errors and contact information formatting in privacy policy; no material changes to consumer rights or data practices.
Why it matters: These corrections improve clarity and accuracy of Hinge's privacy disclosures without changing the substance of consumer rights or data handling practices. The corrected retention period (five years, not 'five 6 years') removes ambiguity about how long customer care data is kept, and the fixed appeal language ensures residents of specified US states clearly understand their right to contact their state attorney general.
Modified one sentence in privacy policy; specific language change not disclosed in update summary.
Why it matters: Privacy policy changes can affect how your data is collected, used, retained, and shared. However, without knowing what this specific sentence says, we cannot assess whether the change creates new risks, removes protections, or simply clarifies existing practices.
Replaces direct privacy contact channels with annual Transparency Reports disclosing government data request practices and volumes.
Why it matters: This change prioritizes published disclosure of government data request practices over individual contact pathways in Salesforce's Privacy Statement. For users and organizations concerned with government data access, the shift to Transparency Reports provides standardized, aggregate disclosure rather than case-by-case response; however, the underlying right to contact Salesforce about privacy concerns remains intact.
Updated policy helpfulness metric from 228/271 to 233/280 users—formatting or analytics update only.
Why it matters: This change does not materially affect consumer privacy rights or data practices. It reflects only a routine update to usage feedback statistics embedded in the policy document.
Removed detailed Data Privacy Framework compliance disclosures and certification language, retaining only a data request mechanism.
Why it matters: The removal of explicit Data Privacy Framework compliance language eliminates a key transparency disclosure about how Upwork protects personal data transferred from the EU, UK, and Switzerland to the U.S. Under GDPR and UK GDPR, data transfers to non-adequate third countries require documented safeguards, and privacy policies are expected to inform users of the mechanisms used; the removal of this disclosure creates uncertainty about what legal basis now protects those transfers.
Stay ahead of the changes
You're seeing a fraction of what's changing
ConductAtlas monitors every tracked platform and captures every policy update.
Removed Data Privacy Framework compliance disclosures; retained contact mechanism for data transfer documents.
Why it matters: The removal of Data Privacy Framework language eliminates transparent commitments about how Upwork handles personal data transfers from regulated jurisdictions. For individual users and enterprises, this creates ambiguity about the legal mechanism protecting cross-border transfers and may require verification of the current transfer arrangement.
Restricts credit score monitoring rewards to new members; replaces ClassPass benefit with Wall Street Journal and MarketWatch subscriptions in SoFi Plus tier.
Why it matters: The updated terms establish a new automatic renewal obligation for SoFi Plus members, shifting from a benefit that required no renewal management (ClassPass trial) to subscriptions that automatically renew at standard rates after a one-year promotional period. This change operationally affects billing and requires members to take affirmative action (cancellation) to avoid ongoing charges, creating compliance implications under ROSCA and state negative option laws.
Restricts personalized advertising to users 18 and older; users under 18 will see only nonpersonalized ads.
Why it matters: The updated terms establish a clear age-based boundary for ad personalization, restricting targeted advertising to adults 18 and older. This change affects how minors experience the platform and limits data use for marketing purposes, which has operational implications for advertisers relying on behavioral targeting and compliance implications for organizations subject to child privacy regulations like COPPA.
Minor formatting and spelling corrections to privacy policy contact procedures and regulatory authority disclosures.
Why it matters: This change corrects spelling and formatting errors in the Privacy Policy but does not alter any substantive rights, obligations, or procedures. The contact methods and regulatory frameworks for data protection requests and complaints remain operationally identical.
Added exception permitting asset transfers to third parties for Secured USDC cardholder agreements; restricts user withdrawals of designated USDC
Why it matters: The updated terms create a new category of asset transfers that operate outside the prior framework requiring user instruction or legal mandate. Users who opt into the Secured USDC feature agree to lose withdrawal rights and permit Coinbase to follow third-party instructions without their further approval. This materially changes the control and disposition rights for designated assets and introduces a new product-specific governance structure not previously addressed in the general asset custody provisions.
Adds explicit direct marketing disclosures and marketing partner data sharing; introduces user controls for third-party product promotion.
Why it matters: The updated terms establish explicit authorization for OpenAI to engage in direct marketing to users and to share data with non-service-provider marketing partners to support those efforts. This change operationalizes a new category of data recipient and marketing use case that was not previously disclosed with this level of specificity. The addition of user-control mechanisms suggests OpenAI intends to scale direct-marketing activities while maintaining an option for users to opt out, which affects how personal data flows through the company's marketing operations.
April 30, 2026
Added documentation index link to privacy policy header; core terms unchanged.
Why it matters: This change does not materially affect how Weights & Biases handles personal data or what rights users have under the privacy policy. It is a navigation or documentation update with no substantive impact on privacy terms or user rights.
Clarifies mandatory first-party cookies and adds explicit opt-out option for targeted advertising and data sale.
Why it matters: The updated terms establish which cookies users must accept (functional) versus which they can reject (advertising and tracking), and add a concrete opt-out mechanism for targeted advertising. This clarification reduces ambiguity around consent and gives users more explicit control over data used for personalization and advertising purposes.
Updated introductory language to announce Voice API general availability; no substantive terms changed.
Why it matters: This change has no material impact on consumer rights, protections, or obligations. It is a routine update to promotional language announcing a product feature availability.
Updated privacy policy marketing content to reflect Voice API general availability
Why it matters: While this change is minor, it reflects that privacy policies can be modified without substantive notice. Monitoring such updates helps organizations track when vendor documents change, even when changes are editorial rather than material.
Updated privacy notice to clarify Memory feature consent requirements and expand personalization practices globally.
Why it matters: The updated terms authorize personalization based on chat history for all users globally, whereas the prior policy restricted this to users outside regulated jurisdictions. This represents a material expansion of the scope of data processing and personalization practices. Organizations that based their vendor assessments or compliance strategies on prior geographic limitations should reevaluate their data processing documentation.
Stay ahead of the changes
You're seeing a fraction of what's changing
ConductAtlas monitors every tracked platform and captures every policy update.
Updated shopping cart interface messaging and removed CAPTCHA confirmation language; no substantive privacy practice changes detected.
Why it matters: While the detected changes are limited to user interface messaging rather than privacy practices, maintaining clarity about how user data is managed remains important. The shopping cart messaging change confirms that Shein retains user cart information, which implies ongoing data storage and retrieval tied to user accounts.
Adds disclosure of CA Shipt Shopper Benefit Fee on all same-day deliveries in California
Why it matters: California customers using same-day delivery will now pay an additional fee disclosed in Target's terms, which may have been previously undisclosed or is being newly introduced. Clear disclosure of delivery fees is a consumer protection requirement in California, so this update reflects Target's compliance with state law.
Privacy policy header modified with price figure adjustment from $2,326.89 to $2,246.19.
Why it matters: Accuracy and transparency in policy disclosures, including any fees or costs referenced, are fundamental to regulatory compliance and user trust. If the modified figure represents a material fee or cost change, clarity about what changed and why matters for both user understanding and vendor accountability.
Added disclosure of data collection through third-party sign-in services (Apple, Google) and clarified AI chatbot practices.
Why it matters: The updated policy now explicitly discloses that signing in through Apple, Google, or similar services results in data collection by both Acorns and those third-party providers, and clarifies that their separate terms govern how they use that data. This transparency allows users to understand the full scope of data sharing when they choose third-party authentication.
Added $20 Research Bonus Investment Promotion Terms link to terms of service document.
Why it matters: This change does not materially affect consumer rights, obligations, or protections. It simply adds a reference to a new promotional bonus program that follows Acorns' existing bonus structure.
Privacy policy feedback metric updated; 228 of 271 users now report finding the policy helpful.
Why it matters: This change does not materially affect TaskRabbit users or compliance obligations. It is a metadata update reflecting user engagement with the privacy policy page, not a modification to privacy practices or rights.
Updated help article feedback metrics in support documentation.
Why it matters: This change does not materially affect consumer rights, protections, or obligations. It is a routine administrative update to reflect current user feedback on support content and has no bearing on the substance or enforceability of TaskRabbit's terms.
Expanded 1% unstaking fee to cover conversion of pending standard unstakes to instant unstakes.
Why it matters: The updated language clarifies that the 1% instant unstaking fee applies in two scenarios, not just one. This affects users who have initiated a standard unstake but decide later to convert it to instant; they will now encounter the 1% fee upon conversion, whereas the prior language did not explicitly describe this conversion action.
April 29, 2026
Removed API navigation link from Terms of Service header
Why it matters: This change has no operational significance to the agreement itself. The removal of a navigation link does not alter contract terms, user rights, obligations, or governance structures. The substantive legal agreement between Luma AI and users remains unchanged.
Removed API navigation link from privacy policy header; no policy substance changes.
Why it matters: This change has no operational significance. It is a menu navigation adjustment that does not affect the privacy disclosures, data practices, or user rights described in the policy.
Updated promotional content in Terms of Use, replacing on-demand session reference with live event scheduled for May 7.
Why it matters: This change has no material operational significance. It updates promotional event scheduling language within the document without modifying contractual terms, user rights, obligations, or service scope. The underlying Terms of Use remain substantively unchanged.
Added document title to privacy policy header; no substantive policy changes
Why it matters: This change has no operational significance. It is a formatting update to the document header that does not alter any privacy terms, data collection practices, consumer rights, or regulatory obligations.
Updated promotional headers and marketing content in DeepL Terms and Conditions; no substantive legal terms modified.
Why it matters: This change reflects a routine refresh of promotional content and marketing references within DeepL's Terms and Conditions document. No substantive legal terms, user rights, data practices, or service obligations were modified, making this a low-impact administrative update with no operational consequence for users or compliance teams.
Stay ahead of the changes
You're seeing a fraction of what's changing
ConductAtlas monitors every tracked platform and captures every policy update.
Updated Privacy Policy homepage promotional content; core privacy terms unchanged.
Why it matters: This change is operationally minimal. The updated Privacy Policy landing page now directs users to a Spring Event Hub and references data infrastructure expansion, but the substantive privacy terms, data collection disclosures, and user rights remain unchanged. Organizations reviewing this change do not need to modify their own privacy notices or data processing agreements in response.
Updated daily. New changes added as detected.