All apps

Is EvenUp safe with your data?

D
EvenUp icon

EvenUp

EvenUp, Inc.

36/100

Weak disclosure · high confidence

EvenUp earns a D (36/100) because it leaves much about its data practices unstated.

Dealbreaker flag

  • D1.1: as an AI business, we may use personal information to develop, improve, train, and provide our proprietary AI technologies and services for all of our customers
  • D1.4: You hereby grants Company a royalty-free, fully paid up, worldwide, transferable, sublicenseable, irrevocable, perpetual license

#167

of 211 apps ranked

36

score · Legal avg 49

-13

vs category average

Grade scaleA · 70–100B · 60–69C · 48–59D · 35–47F · 0–34

EvenUp's US-default policy states it trains its proprietary AI on personal information with no opt-out and takes a perpetual sublicensable licence over user feedback, while its privacy rights, retention and security disclosures stay at conditional boilerplate level.

What EvenUp's privacy policy and terms of service say about your data

Trains on personal data with no opt-out

The policy states "as an AI business, we may use personal information to develop, improve, train, and provide our proprietary AI technologies and services for all of our customers". No opt-out appears anywhere in the document.

Perpetual sublicensable feedback licence

Terms section 2.6 grants EvenUp a "royalty-free, fully paid up, worldwide, transferable, sublicenseable, irrevocable, perpetual license" over user Feedback. The terms separately say "You have no rights in or to the Content."

Privacy rights are conditional, not guaranteed

Access, deletion, correction plus portability all sit under "Depending on your location and the nature of your interactions with our Services, you may request the following," and portability adds "Where applicable." None of the four is an unconditional grant.

No sub-processor list, transfer safeguard, breach notice or certification

The text names no DPA or sub-processor list, no international transfer mechanism, no breach-notification commitment and no ISO 42001, ISO 27001 or SOC 2 certification, and security is described only as "technical, organizational, and physical safeguards.

What the policy is silent or vague on

  • Not stated: keeping user inputs out of model training
  • Not stated: a way to opt out of training
  • Not stated: whether training use differs by plan
  • Not stated: your ownership of generated outputs

EvenUp privacy rating

Training-data use0 of 4 disclosed
Keeps user inputs out of model training, or makes training opt-inAdverse
Names a way to opt out of or into trainingSilent
Says whether training use differs by plan or tierSilent
Lets the user keep ownership of generated outputsAdverse
Data-subject rights1 of 5 disclosed
Grants a right to access your dataPartial
Grants a right to delete your dataPartial
Offers data portability in a usable formatPartial
Grants a right to correct your dataPartial
Grants a way to object to or opt out of processingDisclosed
Retention and deletion0 of 4 disclosed
States a retention period for your dataPartial
States a deletion timeline after closure or requestSilent
Sets a shorter retention for AI conversation logsSilent
Commits to collecting only the data it needsSilent
Third-party sharing1 of 5 disclosed
Lists the categories of third parties it shares withDisclosed
References a sub-processor list or data processing agreementSilent
Does not sell or share data for advertising, or offers opt-outPartial
Names a safeguard for international data transfersSilent
States a standard for government and law-enforcement accessPartial
Transparency2 of 4 disclosed
Discloses that you are interacting with AIDisclosed
Marks AI-generated or synthetic outputNot applicable
Enumerates the categories of data it collectsDisclosed
Maps processing purposes to legal basesPartial
Is versioned and dated, with change noticePartial
Sensitive data and children1 of 3 disclosed
Discloses automated decisions and a human-review pathSilent
Limits the use of special-category dataPartial
Governs biometric data specificallyNot applicable
States protections for children's dataDisclosed
Security and accountability0 of 3 disclosed
Describes its security safeguardsPartial
Commits to breach notificationSilent
Names a certification or a privacy contactPartial
DisclosedPartialSilentAdverseNot applicable

Details

Category
Legal
Modalities
text
Processes biometrics
No
Policy last updated
2026-07-09
Region scored
Global / US-default
Last assessed
2026-08-13

Documents examined

Each grade reflects our analysis of what an app states in its public privacy policy and terms as of the assessment date. It measures the transparency of those documents, not the company's actual data practices, security, or compliance. Grades are our opinion, offered for general information. Full disclaimer.

Is EvenUp safe with your data? Grade D | AI App Trust & Transparency Index