Live feed · updated daily

Recent policy changes

3052 policy changes detected across 352 platforms. Most platforms don't announce policy changes — these updates were detected automatically.

Stay ahead of the changes

Start monitoring platform changes

Free: research letter. Monitor: same-day alerts on the platforms you choose.

352 Entities monitored
844 Documents tracked
3052 Changes detected
Showing all changes. Show significant changes only
April 19, 2026
Google Gemini
Gemini Apps Privacy Notice
low
Adds disclosure of imported data handling and clarifies that imported chats are included in deletable activity records.
Why it matters: The updated terms establish explicit documentation of data sourcing practices when users import chats or memory from other AI platforms. This clarification increases transparency about what data Gemini collects and processes, and confirms that imported data is subject to the same user deletion and management controls as natively generated content. The change does not expand Gemini's collection authority but makes existing practices more visible in the privacy documentation.
Google Maps
Google Maps Platform Terms of Service
low
Google Maps Platform Terms modified with 15 sentences revised, 4 added, and 3 removed
Why it matters: Google Maps Platform Terms of Service are binding on developers and businesses that integrate the service into their applications and infrastructure. Changes to these terms may affect data usage rights, API obligations, liability allocation, and pricing. The specific operational significance cannot be determined from the detection summary alone.
Paramount+
Paramount+ Terms of Use
high
Adds mandatory arbitration clause and class action waiver; establishes binding dispute resolution procedure
Why it matters: The addition of mandatory arbitration and class action waiver clauses fundamentally changes how consumers can resolve disputes with Paramount+, shifting from potential court proceedings to private arbitration and eliminating the possibility of joining group lawsuits. These are material changes to consumer legal rights and protections.
Max
HBO Max Terms of Use (Legacy)
low
Added localization options for 13 additional Asia-Pacific territories in Terms of Use footer.
Why it matters: This change indicates Max's service expansion into 13 new Asia-Pacific markets. Users in these territories can now access the Terms of Use in localized language options, improving accessibility and clarity of Max's terms.
Riot Games
Riot Games Privacy Notice
low
Reorganizes privacy notice structure and cross-references; consolidates data collection and use disclosures.
Why it matters: The reorganized notice aims to make privacy disclosures more navigable, particularly for California residents who need to understand what personal data is collected and how it is used. Clear structure and accurate cross-references ensure consumers can actually locate and understand their privacy rights and data practices without confusion.
Stay ahead of the changes

You're seeing a fraction of what's changing

ConductAtlas monitors every tracked platform and captures every policy update.

Ledger
Ledger Privacy Policy
high
Removed service exclusions and reduced privacy policy scope from 224 to 36 sentences, eliminating explicit carve-outs for Ledger Recover and Multisig services.
Why it matters: The removal of explicit service exclusions and cross-references to separate privacy policies creates regulatory compliance risk and user confusion about what data practices apply to each Ledger service. Under GDPR and CCPA, privacy policies must clearly disclose the scope of services covered; the absence of this disclosure may not satisfy those requirements.
Wise
Wise Terms of Use (Superseded URL)
low
Updates office address, renumbers sections, and clarifies account terminology in terms of use
Why it matters: The updated address ensures that legal notices and formal correspondence reach Wise at the correct location. The clarified account definition removes any ambiguity about whether standard Wise Accounts apply only to business customers, though this appears to be a clarification of existing practice rather than a substantive policy change.
Zelle
Zelle Privacy Policy
high
Replaced marketing homepage with binding website privacy notice requiring express consent to data collection and retention.
Why it matters: The change converts zelle.com from a marketing destination into a legally binding privacy notice that requires your consent to data collection merely by visiting. This means Zelle is now asserting broad authority to collect and use your personal information on the basis of your presence on the site, and the notice warns that you should not visit if you disagree.
Shein
Shein Terms and Conditions
low
Added shopping cart retention messaging and cookie consent prompt to website interface.
Why it matters: The updated website interface establishes a more explicit consent and notification flow for returning users, which may clarify how Shein handles shopping cart data and cookie preferences. The cookie consent prompt may formalize compliance with privacy regulations that require affirmative user consent for non-essential cookies.
GitHub
GitHub Terms of Service
medium
GitHub substantially revised Terms of Service with 54 modified sentences, 40 removed, and 4 added; review specific changes to understand revised service terms.
Why it matters: The revision scale indicates material changes to GitHub's service terms. The removal of 40 sentences and modification of 54 others suggests changes to core provisions governing acceptable use, intellectual property handling, liability, dispute resolution, or data processing. Users and organizations with GitHub in their vendor stack should identify the specific provisions that changed to assess operational and contractual implications.
Twilio
Twilio Privacy Notice
low
Restructured privacy notice to lead with Binding Corporate Rules governance and transparency principles instead of specific data collection practices.
Why it matters: The updated notice reorganizes how Twilio describes its privacy governance and operational authority. By leading with Binding Corporate Rules and transparency values rather than specific data relationships and definitions, the notice changes the information architecture users encounter first. For compliance teams, the restructuring requires verification that substantive data processing authority, scope, and controller responsibility remain aligned with prior understanding; organizational changes can obscure scope boundaries if not carefully documented.
Twilio
Twilio Terms of Service
medium
Added Mexico and Brazil entities to Terms of Service; removed guarantee against material service functionality reduction; clarified online order placement options.
Why it matters: The addition of Mexico and Brazil service entities creates distinct legal contracting relationships with regional companies, potentially affecting dispute venue, applicable law, and regulatory compliance for customers in those jurisdictions. The removal of the functionality protection clause broadens Twilio's contractual authority to modify service features without the prior constraint that changes be non-material to overall functionality, shifting risk to customers who may have relied on that commitment for service stability planning.
Skillshare
Skillshare Privacy Policy
low
Updated privacy policy timestamp display format from specific date to relative indicator.
Why it matters: This change does not materially affect user privacy, data handling, or rights. It is a cosmetic update to how the policy displays its last revision date.
Skillshare
Skillshare Terms of Service
low
Updated last-modified timestamp display format from specific date to relative reference; no substantive policy changes detected.
Why it matters: This change has no practical significance. It is a cosmetic modification to how the page displays the date the Terms of Service were last updated; the actual terms remain unchanged.
Booking.com
Booking.com Privacy Statement
medium
Expands privacy notice with 516 added sentences covering data collection, AI decision-making, cookie usage, and traveler rights
Why it matters: The expanded privacy notice provides substantially more detail about what data Booking.com collects from travelers, how it uses that data (including for AI-driven decisions), who it shares data with, and what rights travelers have. For travelers considering booking through Booking.com, the additional transparency allows more informed decisions about data privacy before committing to a reservation.
Hinge
Hinge Privacy Policy
low
Hinge modified six sentences in privacy policy; specific operational changes require document review.
Why it matters: Privacy policy modifications warrant review to confirm whether they affect how Hinge discloses data practices, consent requirements, or processing mechanisms. Six sentence changes could affect material disclosures or could reflect minor clarifications; document-level review is necessary to determine significance.
Bumble
Bumble Privacy Policy
medium
Removes UK from stated server locations; now lists only US and EU servers
Why it matters: Transparency about server locations is a key privacy disclosure that affects where your data is stored and what data protection laws apply. Removing UK from the list changes what the policy tells you about data handling and may indicate a shift in infrastructure that affects your rights under UK and EU data protection law.
Ancestry
Ancestry Terms and Conditions
low
Added 'Do Not Sell or Share My Personal Information' link in Terms footer for California privacy compliance
Why it matters: The updated Terms establish clearer navigation to California privacy rights disclosures. This change improves accessibility to opt-out mechanisms required under CCPA and reflects standard compliance practice for serving California consumers.
Noom
Noom Privacy Policy
low
Adds plain-language summaries to major privacy policy sections clarifying data collection, use, and sharing practices.
Why it matters: The updated policy makes Noom's data practices more transparent and easier to understand by adding clear summaries at the start of each major section. Users can now quickly see that Noom collects personal, technical, and health data; uses it to personalize services and run the platform; and shares it with service providers and partners, without having to parse detailed legal language.
Noom
Noom Terms of Service
medium
Adds explicit disclaimers that Noom is not medical care, requires age 18+, clarifies features may be inaccurate, and reserves unilateral account suspension rights
Why it matters: The updated terms make explicit that Noom is not a substitute for medical care and that its coaching and food features may be inaccurate, which is critical for users who might rely on it for health decisions. The new language also reserves Noom's right to terminate your account at any time without stated cause or process, expanding the company's unilateral control over your access.
Headspace
Headspace Privacy Policy
low
Reorganized privacy policy footer navigation and link placement
Why it matters: This change has no material impact on consumer privacy rights or protections. It is a structural reorganization of the policy webpage footer and does not alter any substantive privacy commitments or data handling practices.
Headspace
Headspace Terms and Conditions
low
Removed two sitemap navigation links from footer; no policy changes to terms or user rights.
Why it matters: This change does not materially affect consumers. It is a removal of two footer navigation links with no impact on the terms of service, user rights, data handling, or any substantive provision.
Figma
Figma Privacy Policy
low
Updates privacy contact email from support@figma.com to privacy@figma.com; centralizes DPO contact; reorganizes footer navigation
Why it matters: The updated policy establishes a dedicated privacy contact channel, which may improve response times for data subject rights requests and privacy inquiries. GDPR and UK Data Protection Act require transparent contact methods for exercising data rights; the clearer channel supports regulatory compliance and user accessibility.
Canva
Canva Terms of Use
low
Removed template library from product navigation in Terms of Use document structure.
Why it matters: This change has no operational significance. It is a structural reorganization of the Terms of Use document navigation and does not modify substantive terms, consumer obligations, data practices, or service features.
Nintendo
Nintendo Privacy Policy
medium
Shifts child privacy certification to CARU, clarifies persistent ID collection for children, and expands parental visibility of authorized third-party app access.
Why it matters: Nintendo now explicitly discloses that it collects and permits service providers to collect persistent identifiers from child users for specific operational purposes, and parents can see exactly which apps are authorized to access their child's account, providing clearer visibility into data practices affecting children. The shift from ESRB to CARU oversight represents a change in the third-party body conducting independent audits and enforcement of the company's child privacy compliance.
Microsoft Azure
Microsoft Privacy
medium
Adds AI-powered phone marketing disclosures and reorganizes data retention criteria; removes specific retention examples.
Why it matters: Microsoft disclosed a new marketing contact method (AI-generated voice calls) that consumers may not expect, requiring them to verify their consent preferences. Simultaneously, the company made its data retention commitments less specific and more operationally broad, which reduces consumer clarity about how long their data is kept and may complicate vendor compliance verification.
Substack
Substack Privacy Policy
medium
Removed one-month response commitment for privacy requests and explicit disclosure of child safety consortia data sharing
Why it matters: The removal of response timelines for privacy rights requests eliminates a compliance commitment that operationalized GDPR and UK DPA obligations, creating ambiguity about what timeline now applies when users exercise data subject rights. The removal of explicit child safety consortium disclosure eliminates transparency about a data processing practice, which may affect users' ability to understand what data is shared and for what purpose, and may create compliance questions under transparency-focused regulations like GDPR Article 14.
Plaid
Plaid Terms of Use (Legal Index)
medium
Reframes Plaid Account role from third-party app accelerator to direct consumer service provider; adds Plaid Web-App monitoring platform.
Why it matters: The updated terms establish that Plaid is now a direct service provider with its own account and monitoring platform, not just an intermediary for third-party apps. This means Plaid's use of your financial and identity data has expanded beyond facilitating third-party connections to include providing its own alerts and monitoring services, and organizations using Plaid need to verify their data processing agreements and customer disclosures reflect this expanded role.
Plaid
Plaid End User Privacy Policy
medium
Restructured account terms to clarify Plaid's direct service role and introduced new account monitoring service with expanded payment data sharing scope.
Why it matters: The restructured terms expand Plaid's explicitly authorized scope to share your financial data for payment purposes and introduce a new direct service offering. This shift from Plaid as a connection intermediary to Plaid as a direct service provider with its own monitoring system means Plaid's role and data-handling authority is now broader and more direct than previously stated in the account terms.
Klarna
Klarna Privacy Policy
low
Restructured privacy policy sections with "Show more" toggles and numbered lists for data collection disclosure.
Why it matters: Privacy policy formatting affects how clearly consumers can understand what data is collected and why. Expandable sections and numbered lists may improve readability, though regulators also scrutinize whether such formatting obscures required disclosures rather than clarifying them.
Stay ahead of the changes

Don't manually check every platform

Get alerts when policies change, before it affects you.

Updated daily. New changes added as detected.

← Newer Page 94 of 102 Older →