All apps

Is Greenhouse safe with your data?

C
Greenhouse icon

Greenhouse

Greenhouse Software, Inc.

67/100

Partial disclosure · high confidence

Greenhouse earns a C (67/100) because it discloses its data practices only in part.

Dealbreaker flag

  • D1.1: the MyGreenhouse section states personal information is used to develop and train AI models with no training-specific opt-out disclosed

#54

of 177 apps ranked

67

score · HR & recruiting avg 64

+3

vs category average

Grade scaleA · 85–100B · 70–84C · 55–69D · 40–54F · 0–39

Greenhouse discloses a full data-subject rights slate, names the Data Privacy Framework as its transfer safeguard, lists clear sharing categories, and states plainly that it does not sell personal information. The MyGreenhouse section commits to training AI models on user data and offers an opt-out only for sharing data with potential employers, with no opt-out for model training. Retention is described only as keeping data while a legitimate business need exists, and the security section names no breach notification timeframe.

What Greenhouse's privacy policy says about your data

Trains AI without a training opt-out

The MyGreenhouse section says personal information is used to develop and train artificial intelligence models. The only opt-out offered covers sharing data with potential employers, and it does not cover model training.

Full slate of data-subject rights

Users can access, correct, update, delete, port, object to processing, and restrict processing through the Data Subject Request Portal. The rights are set out for EEA, Swiss, and UK subjects.

Named international transfer safeguard

Greenhouse certifies to the EU-U.S. Data Privacy Framework, the UK Extension, and the Swiss-U.S. DPF. This names a concrete adequacy mechanism rather than a generic transfer claim.

Retention and breach handling stay vague

Retention is described only as keeping data while there is an ongoing legitimate business need, with no day count. The security section gives no breach notification timeframe or process.

What the policy is silent or vague on

  • Not stated: keeping user inputs out of model training
  • Not stated: a way to opt out of training
  • Not stated: whether training use differs by plan
  • Not stated: your ownership of generated outputs

Greenhouse privacy rating

Training-data use0 of 4 disclosed
Keeps user inputs out of model training, or makes training opt-inAdverse
Names a way to opt out of or into trainingSilent
Says whether training use differs by plan or tierSilent
Lets the user keep ownership of generated outputsSilent
Data-subject rights5 of 5 disclosed
Grants a right to access your dataDisclosed
Grants a right to delete your dataDisclosed
Offers data portability in a usable formatDisclosed
Grants a right to correct your dataDisclosed
Grants a way to object to or opt out of processingDisclosed
Retention and deletion1 of 3 disclosed
States a retention period for your dataPartial
States a deletion timeline after closure or requestPartial
Sets a shorter retention for AI conversation logsNot applicable
Commits to collecting only the data it needsDisclosed
Third-party sharing4 of 5 disclosed
Lists the categories of third parties it shares withDisclosed
References a sub-processor list or data processing agreementDisclosed
Does not sell or share data for advertising, or offers opt-outPartial
Names a safeguard for international data transfersDisclosed
States a standard for government and law-enforcement accessDisclosed
Transparency3 of 4 disclosed
Discloses that you are interacting with AIPartial
Marks AI-generated or synthetic outputNot applicable
Enumerates the categories of data it collectsDisclosed
Maps processing purposes to legal basesDisclosed
Is versioned and dated, with change noticeDisclosed
Sensitive data and children2 of 2 disclosed
Discloses automated decisions and a human-review pathNot applicable
Limits the use of special-category dataDisclosed
Governs biometric data specificallyNot applicable
States protections for children's dataDisclosed
Security and accountability1 of 3 disclosed
Describes its security safeguardsPartial
Commits to breach notificationSilent
Names a certification or a privacy contactDisclosed
DisclosedPartialSilentAdverseNot applicable

Details

Category
HR & recruiting
Modalities
text
Processes biometrics
No
Policy last updated
2026-05-28
Region scored
Global / US-default
Assessed
2026-06-20
Read Greenhouse's privacy policy

Each grade reflects our analysis of what an app states in its public privacy policy and terms as of the assessment date. It measures the transparency of those documents, not the company's actual data practices, security, or compliance. Grades are our opinion, offered for general information. Full disclaimer.

Is Greenhouse safe with your data? Grade C | AI App Trust & Transparency Index