{"schema":"https://policywatcher.online/schemas/evidence-packet/v1","schemaVersion":"1.0.0","mappingVersion":"2026-07-29.1","changeId":"0f0b5d8a-a1c2-4b58-9dc9-5048ea871508","screeningDate":"2026-10-11T03:43:27.489Z","publicationGate":"published","company":{"id":"abeee5e5-6930-4e28-995a-552c200bc853","name":"X (Twitter)","slug":"x-twitter","industry":"Social Media"},"policy":{"id":"f2b77af5-3705-4573-94a5-10153d76e7f5","name":"Terms of Service","type":"terms","jurisdiction":"Global","sourceUrl":"https://x.com/en/tos"},"sourceConfidence":{"state":"verified-retrieval","lastCheckedAt":"2026-10-11T03:43:27.475Z","retrievalChannel":"direct","dataStatus":"Available","publicSnapshotEvidence":true,"limitation":"Source confidence describes recorded retrieval and publication state. It does not rate the provider policy or certify source authenticity."},"snapshots":{"old":{"version":3,"sha256":"dbf213c2130ff856c3ad554f8f6ec6e16e03191188e4acf97a3545e74ea8fd5e","capturedAt":"2026-10-01T19:52:57.936Z"},"current":{"version":4,"sha256":"758cc252544ef918a36a3fd12daf78b68a81df07910a67d57ada7a8b7d681b00","capturedAt":"2026-10-11T03:43:27.483Z"}},"assessment":{"summary":"X's updated terms grant the company broad rights to use your posts and data for training AI models without compensation.","overallRisk":"Medium","overallScore":6,"previousPublicChange":{"id":"16f9b187-89de-400c-ab73-df87ef192fe0","overallRisk":"Low","overallScore":3,"screeningDate":"2026-10-01T19:52:57.942Z"},"scoreDelta":3,"direction":"higher","reasons":[{"icon":"warning","textEn":"Mandatory AI training license allows X to use all submitted content for machine learning.","textIt":"La licenza obbligatoria per l'addestramento IA consente a X di usare i contenuti per il machine learning.","deltaScore":4,"evidenceQuote":"for use with and training of our machine learning and artificial intelligence models, whether generative or another type","evidenceSide":"new","relatedKpi":"kpiAiTrainingOptOut","anchorStatus":"verified"},{"icon":"alert","textEn":"Strict limitation of liability caps user claims at $100 USD or past six months of fees.","textIt":"La rigida limitazione di responsabilità fissa il risarcimento a 100 USD o alle tariffe di 6 mesi.","deltaScore":3,"evidenceQuote":"our aggregate liability shall not exceed the greater of $100 USD or the amount you paid us, if any, in the past six months","evidenceSide":"new","relatedKpi":"kpiRegulatoryCompliance","anchorStatus":"verified"},{"icon":"info","textEn":"Forced Texas forum selection clause for non-EU/UK users restricts legal challenges.","textIt":"La clausola di foro competente in Texas per utenti non UE/UK limita le azioni legali.","deltaScore":2,"evidenceQuote":"any disputes between you and us will be resolved by a court in Texas, based on Texas law","evidenceSide":"new","relatedKpi":"kpiCrossBorderTransfer","anchorStatus":"verified"}],"keyPoints":[{"textEn":"Grants X a worldwide license to use your content for training AI and machine learning models.","textIt":"Concede a X una licenza mondiale per utilizzare i tuoi contenuti per l'addestramento di modelli di IA.","sentiment":"negative"},{"textEn":"Prohibits unauthorized scraping and automated data collection without express permission.","textIt":"Vieta lo scraping non autorizzato e la raccolta automatizzata di dati senza esplicito permesso.","sentiment":"neutral"},{"textEn":"Limits X's aggregate liability to the greater of $100 USD or payments made in the past six months.","textIt":"Limita la responsabilità complessiva di X al maggiore tra 100 USD o i pagamenti degli ultimi sei mesi.","sentiment":"negative"},{"textEn":"Provides specific dispute mechanisms and legal avenues for users in the EU and United Kingdom.","textIt":"Fornisce specifici meccanismi di controversia e vie legali per gli utenti in UE e Regno Unito.","sentiment":"positive"}],"regionImpacts":[{"region":"EU","perspective":"Enterprise","riskLevel":"Medium","impactAnalysisEn":"Businesses operating in the EU must ensure their shared marketing and operational content complies with X's broad AI training permissions. Compliance officers should monitor potential IP leakage into AI models.","complianceNoteEn":"EU AI Act"},{"region":"EU","perspective":"Individual","riskLevel":"Medium","impactAnalysisEn":"EU users benefit from carve-outs allowing complaints under the Digital Services Act and Online Safety regulations. However, broad data scraping for AI training creates ongoing privacy friction under GDPR.","complianceNoteEn":"GDPR Art 6"},{"region":"Global","perspective":"Enterprise","riskLevel":"Medium","impactAnalysisEn":"Global entities must coordinate compliance across varying international standards while adhering to X's centralized Texas-governed framework. Liability caps limit financial recovery in the event of service failure.","complianceNoteEn":"Global Governance"},{"region":"Global","perspective":"Individual","riskLevel":"Medium","impactAnalysisEn":"Global users outside the EU/UK face unrestricted cross-border data transfers to the US and Ireland. The agreement places complete responsibility on individuals for automated actions and prompt inputs.","complianceNoteEn":"Cross-Border Transfer"},{"region":"US","perspective":"Enterprise","riskLevel":"High","impactAnalysisEn":"US corporations utilizing X for branding or customer engagement grant a broad license for content adaptation and redistribution. Enterprise risk teams must evaluate intellectual property exposure.","complianceNoteEn":"Commercial Terms"},{"region":"US","perspective":"Individual","riskLevel":"High","impactAnalysisEn":"US users are bound by Texas forum selection and mandatory class action waivers for any legal disputes. Your public posts can be utilized to train proprietary AI algorithms without financial compensation.","complianceNoteEn":"CCPA / State Laws"}],"explanationBoundary":"Score reasons and deltaScore values are stored AI-assisted screening outputs. Verified anchors confirm only that the quoted passage occurs in the named snapshot; they do not prove the interpretation."},"governance":{"boundary":"Mappings identify review relevance between recorded PolicyWatcher KPI fields and framework topics. They are not legal interpretations, conformity assessments, certifications or compliance verdicts.","mappings":[{"framework":{"id":"eu-ai-act","name":"Regulation (EU) 2024/1689 (EU AI Act)","shortName":"EU AI Act","referenceUrl":"https://eur-lex.europa.eu/eli/reg/2024/1689/oj","referenceVersion":"Official Journal text, 2024","reviewQuestion":"Which recorded policy statements may be relevant to transparency, automated decisions, data use and human oversight review?","kpiFields":["kpiAiTrainingOptOut","kpiAlgoTransparency","kpiAutomatedDecision","kpiAiBiasFairness"]},"status":"mapped","assessedCount":4,"mappedFieldCount":4,"evidence":[{"field":"kpiAiTrainingOptOut","label":"AI training opt-out","value":"Not Available"},{"field":"kpiAlgoTransparency","label":"Algorithmic transparency","value":"Opaque"},{"field":"kpiAutomatedDecision","label":"Automated decisions","value":"Opaque"},{"field":"kpiAiBiasFairness","label":"AI bias and fairness","value":"Absent"}]},{"framework":{"id":"iso-42001","name":"ISO/IEC 42001:2023","shortName":"ISO/IEC 42001","referenceUrl":"https://www.iso.org/standard/42001","referenceVersion":"ISO/IEC 42001:2023 overview","reviewQuestion":"Which recorded policy statements may inform an AI management-system review of transparency, risk oversight and independent assurance?","kpiFields":["kpiAlgoTransparency","kpiAiBiasFairness","kpiIndependentAudit","kpiRegulatoryCompliance"]},"status":"mapped","assessedCount":4,"mappedFieldCount":4,"evidence":[{"field":"kpiAlgoTransparency","label":"Algorithmic transparency","value":"Opaque"},{"field":"kpiAiBiasFairness","label":"AI bias and fairness","value":"Absent"},{"field":"kpiIndependentAudit","label":"Independent audit","value":"Absent"},{"field":"kpiRegulatoryCompliance","label":"Regulatory compliance","value":"Partial"}]},{"framework":{"id":"nist-ai-rmf","name":"NIST AI Risk Management Framework 1.0","shortName":"NIST AI RMF","referenceUrl":"https://www.nist.gov/itl/ai-risk-management-framework","referenceVersion":"AI RMF 1.0; NIST revision in progress, checked 2026-07-29","reviewQuestion":"Which recorded policy statements may support Govern, Map, Measure or Manage review questions?","kpiFields":["kpiAlgoTransparency","kpiAutomatedDecision","kpiAiBiasFairness","kpiContentModeration"]},"status":"mapped","assessedCount":4,"mappedFieldCount":4,"evidence":[{"field":"kpiAlgoTransparency","label":"Algorithmic transparency","value":"Opaque"},{"field":"kpiAutomatedDecision","label":"Automated decisions","value":"Opaque"},{"field":"kpiAiBiasFairness","label":"AI bias and fairness","value":"Absent"},{"field":"kpiContentModeration","label":"Content moderation","value":"Partial"}]},{"framework":{"id":"oecd-ai-principles","name":"OECD AI Principles","shortName":"OECD AI Principles","referenceUrl":"https://oecd.ai/en/ai-principles","referenceVersion":"OECD AI Principles, updated 2024","reviewQuestion":"Which recorded policy statements may be relevant to transparency, fairness, accountability and user agency review?","kpiFields":["kpiConsentMechanism","kpiAlgoTransparency","kpiAiBiasFairness","kpiIndependentAudit"]},"status":"mapped","assessedCount":4,"mappedFieldCount":4,"evidence":[{"field":"kpiConsentMechanism","label":"Consent mechanism","value":"Implicit"},{"field":"kpiAlgoTransparency","label":"Algorithmic transparency","value":"Opaque"},{"field":"kpiAiBiasFairness","label":"AI bias and fairness","value":"Absent"},{"field":"kpiIndependentAudit","label":"Independent audit","value":"Absent"}]}]},"humanReviewQuestions":["Does the original Terms of Service source still match the recorded public snapshot version 4?","Do the cited source passages support each displayed reason, KPI value and regional note?","Which advisory framework topics require specialist legal, risk or governance review for this use case?","Has a later public change superseded this packet before it is reused in a decision or publication?"],"methodologyUrl":"https://policywatcher.online/methodology/confidence","changeUrl":"https://policywatcher.online/change/0f0b5d8a-a1c2-4b58-9dc9-5048ea871508","boundary":"This packet records PolicyWatcher evidence and AI-assisted screening for one public change. It is not legal advice, a compliance verdict, a certification, or proof that the external source remains unchanged.","contentDigest":"097a92a4ed4e75c0f95160721cc66d15fce2c844987b1a4b6bee862f277bd354"}