Developer-first authentication platform โ prebuilt UI components, social login, MFA, user management, and B2B organizations for React/Next.js stacks.
Clerk publishes several compliance and legal pages that change over time. Under GDPR Article 28, data controllers using Clerk as a processor must continuously verify that "sufficient guarantees" remain in place โ which means tracking changes to these pages as they happen. Below are the 4 most relevant pages, what typically changes on each, and ready-to-paste monitoring prompts.
Choose the pages that matter most and get an alert when something meaningful changes. The free plan covers 3 monitors.
Start with 3 free monitors โhttps://clerk.com/legal/subprocessors โ
Typical change frequency: quarterly
Alert me when Clerk updates sub-processors, especially SMS/email delivery and OAuth infrastructure. Report name and purpose.
https://clerk.com/legal/dpa โ
Typical change frequency: yearly
Monitor the Clerk DPA for changes to EU hosting, session retention, security measures, or transfer mechanisms.
https://clerk.com/legal/privacy โ
Typical change frequency: yearly
Alert me when Clerk changes user data collection, social login data, or MFA storage practices. Ignore editorial changes.
Typical change frequency: weekly
Alert me on Clerk incidents affecting authentication, JWT handling, frontend API, or webhooks. Ignore minor UI issues.
Hosting locations: United States (AWS), European Union (opt-in)
EU-US Data Privacy Framework: Certified
Ready to start monitoring Clerk?
Set up monitoring free โ