PRISM Surveillance Watch

Companies named in the 2013 Edward Snowden NSA leaks. Think twice before hosting with PRISM countries/companies.

Read: What is PRISM & Why It Matters
Historical Context: Sourced from top-secret NSA slides leaked June 2013. Some companies denied direct portal access but were legally compelled to participate via FISA orders regardless.
Scope Note: The companies/countries listed on this site represent key jurisdictions implicated in global surveillance programs based on public disclosures and intelligence alliances. This is not an exhaustive list. Many other nations participate in informal data-sharing agreements, host undersea cable tapping infrastructure, or have domestic laws enabling warrantless access that are not publicly documented. Always conduct independent jurisdictional research before hosting sensitive data.

AOL

Named in Leaks

Joined in 2009. Legacy ISP and media company.

Apple

Named in Leaks

Joined in 2012. Includes iCloud backups, iMessage metadata, and FaceTime logs.

Cisco

Infrastructure Enabler

Not a direct PRISM participant but provides core routing/switching hardware used in NSA upstream collection. Routers contain documented backdoors exploited by Equation Group. Critical infrastructure provider enabling mass surveillance at network layer.

Cloudflare

Confirmed Participant

CDN and security provider acknowledged complying with FISA orders. While promoting privacy features, infrastructure positioned to intercept traffic at edge nodes. Transparency reports confirm receipt of national security requests.

Dropbox

Confirmed Participant

Joined PRISM in 2013 per Snowden documents. Provides direct API access to user files and metadata. Filed transparency reports acknowledging FISA compliance. Zero-knowledge encryption not available for business accounts.

Evernote

Confirmed Participant

Joined in 2013. Notes, attachments, and search history accessible via PRISM portal. Company acknowledged receiving national security letters. No end-to-end encryption for stored content.

Facebook

Named in Leaks

Joined in 2009. Includes Instagram, WhatsApp, and Messenger metadata.

Fastly

Confirmed Participant

Edge cloud platform subject to Section 702 compliance. CDN architecture enables traffic inspection at thousands of global PoPs. Acknowledged receiving classified requests in transparency documentation.

Google

Named in Leaks

Joined in 2009. Includes YouTube. Has challenged some FISA orders in FISC.

Juniper Networks

Infrastructure Enabler

ScreenOS firmware contained hardcoded backdoor (Dual_EC_DRBG) allowing passive decryption of VPN traffic. Backdoor attributed to NSA. Devices widely deployed in government and enterprise networks worldwide prior to discovery.

Microsoft

Named in Leaks

First company to join PRISM in 2007. Includes Skype and LinkedIn data access.

PalTalk

Named in Leaks

Joined in 2009. Smaller video chat and social networking platform.

Skype

Named in Leaks

Joined in 2011. Now owned by Microsoft. Known for VoIP call interception capabilities.

Slack

Confirmed Participant

Enterprise messaging platform joined post-2013. Direct messages, channel history, and file shares subject to FISA orders. Business customers cannot opt out of lawful intercept capabilities built into infrastructure.

Yahoo

Named in Leaks

Joined in 2008. Subject to multiple FISA court orders for bulk data collection.

YouTube

Named in Leaks

Joined in 2010. Owned by Google. Video content and user metadata accessible.

Zoom

Confirmed Participant

Video conferencing metadata and recording storage accessible under Section 702. Despite marketing claims of privacy, architecture allows real-time stream interception. Chinese ownership raised additional concerns about dual-jurisdiction exposure.