GenAgent Trust Hub
Menu

Grammarly

CTier CMedium risk · 41/100
  • Your data trains their AI unless you switch it off in settings.
  • Your data is used for personalized ads, including by third-party ad companies.
  • Data is shared with partners and affiliates; you can opt out.
  • The documents do not say who can read your content.

They read your writing and emails, can train AI unless you flip a setting, run ads, auto-renew with no refunds.

Highest riskMedium riskLow risk

Agent Trust Hub uses AI and may make mistakes. Review reports and confirm their contents before relying on them.

Privacy policy ↗Terms · October 29, 2025 ↗23 min read · professional or legal expert level28 lines verified word for word

Collected

What is collected

Account info, emails and documents you give it, device data, contacts in your content, and optional voice recordings.

Read the exact line

Privacy policy

“User content: We receive the content you upload or enable our products to access, such as emails and drafts, text, screen content, web pages, documents, files, calendars, images, data, and any other content you allow our products to access.”

Training

How it is used

They personalize writing help, can train AI from your content unless you change settings, and advertise using other data.

Read the exact line

Privacy policy

“We also use information we collect to train our AI models. You can decide whether Superhuman can use your user content to train our AI models by adjusting the available training control(s) in your account settings.”

Sharing

Who may see it

Company family, vendors (including AI), marketplace apps you connect, and ad partners with hashed IDs.

Read the exact line

Privacy policy

“We engage other companies to serve advertisements promoting our products and our company and to perform related services. We do not make user content available to these companies.”

Kept

How long it is kept

They keep data as long as needed for the product, legal duties, and business; no exact delete-by date.

Read the exact line

Privacy policy

“We retain personal data for as long as necessary to provide our products to you, to complete the transactions you have requested, to comply with our legal obligations, to resolve disputes, and for other .”

Controls

Your controls

You can turn off AI training in account settings, opt out of ads, and request access or deletion.

Read the exact line

Privacy policy

“AI training control. As described above, you can decide whether Superhuman can use your user content to train our AI models by adjusting the available training control(s) in your account settings.”

Fine print

The fine print

Subscriptions auto-renew with no refunds.

No exact line could be verified.

Expand “Read the exact line” to see the source alongside the explanation.

What you can turn off

The controls and opt-outs their own documents describe, and where they say to find them.

  1. Turn off AI training on user content

    Account settings training control(s)

  2. Opt out of targeted ads / “sale” or sharing

    “Your Privacy Choices” link in the footer of Superhuman product websites

  3. Cancel subscription or delete account

    Customer Care ‘how do I cancel my subscription?’ page, or Documentation ‘how to delete my account’ page; care@superhuman.com

If a switch is not where they say, the deletion request above still applies.

Line by line

The lines that matter most, worst first.

1 · How it is used

Your writing and uploads can be used to train their AI unless you change a setting in your account.

Read the exact line

Privacy policy

“We also use information we collect to train our AI models. You can decide whether Superhuman can use your user content to train our AI models by adjusting the available training control(s) in your account settings.”

For example, a confidential email you draft could be used to improve their models if you never turn the training control off.

2 · What is collected

If you grant access, they can see a lot more than spelling: emails, screens, files, and calendars.

Read the exact line

Privacy policy

“User content: We receive the content you upload or enable our products to access, such as emails and drafts, text, screen content, web pages, documents, files, calendars, images, data, and any other content you allow our products to access.”

For example, a browser extension that reads the page you are on can send that page content to them.

3 · The fine print

If you pay, you generally cannot get money back even if you cancel mid-cycle.

Read the exact line

Terms of service

“To the fullest extent permitted by applicable law, all payments made by you under these Terms are non-refundable and payment obligations are non-cancelable, and we do not provide refunds or credits for any partially used Subscription periods or unused consumption or capacity.”

For example, canceling a yearly plan after a week still leaves you without a refund.

4 · How it is used

They share cookie IDs and hashed email or phone with ad companies, which some laws treat as a sale.

Read the exact line

Privacy policy

“These activities–disclosing unique IDs and disclosing data through Cookies–may constitute “targeted advertising”, “sharing”, or “selling” under certain privacy laws, and depending on where you live, we may require your consent or you may be able to opt out of such activities.”

For example, visiting their marketing site can help show Superhuman ads on other websites unless you opt out.

5 · How it is used

You still own your writing, but they get a broad license to copy and change it to run and improve the product.

Read the exact line

Terms of service

“You grant us a worldwide, non-exclusive, license to your User Content that allows us to use, store, reproduce, publish, and publicly display (to show your User Content to you or other users as you may specify), modify, and create derivative works from it”

For example, whether you accept a grammar suggestion can be used to train their suggestion engine.

6 · What is collected

Turning on Notetaker stores audio of you and people on the call.

Read the exact line

Privacy policy

“Voice data: If you choose to use our Notetaker or transcription features, we collect recordings to create transcriptions of communications captured through our services, including recordings of other participants.”

For example, a meeting recording can include coworkers who never signed up for the app.

7 · The fine print

They say they can end the agreement whenever they want and owe you nothing for that.

Read the exact line

Terms of service

“We may terminate these Terms at any time without to you.”

For example, they could shut off your account and you would have no claim for lost access under these terms.

8 · The fine print

They do not promise the product will work, be accurate, or be available.

Read the exact line

Terms of service

“THE SERVICES ARE PROVIDED TO YOU ON AN “AS IS,” AND “AS AVAILABLE” BASIS, WITHOUT REPRESENTATIONS OR OF ANY KIND, WHETHER EXPRESS OR IMPLIED.”

For example, if AI output is wrong and you send a bad email, they disclaim responsibility.

9 · How long it is kept

They describe basic security steps like encryption and limiting who can access data.

Read the exact line

Privacy policy

“We design our products with security in mind, and we use a combination of safeguards and processes designed to secure data, including encryption, secure network configuration, and other measures, including encryption, network segregation, and access minimization.”

For example, they say they encrypt data and try to keep access to a minimum.

Words to know

Legal words from the lines above, in plain English.

retention
How long a company keeps your data before deleting it. For example, a policy might keep your messages for 30 days after you delete them, or for as long as it likes.
personal data
Any information that is about you or can be linked to you, from your name to your phone's ID. For example, your email, your IP address and the list of apps on your phone are all personal data.
legitimate interest
A legal reason that lets a company use your data without asking, when it decides its own need outweighs your privacy. For example, an app may analyse how you use it to improve the product, without ever asking you.
model training
Using your content and conversations as examples to teach an AI system, which can then echo them in future answers. For example, a story you write in a chatbot may be studied by the company to make the next version of the bot.
cookies
Small files a website saves on your device so it can recognise you and remember what you did. For example, a cookie keeps you logged in and can also tell an ad company which sites you visited.
targeted advertising
Ads chosen for you based on what you have done across other apps and websites, not just this one. For example, you look at shoes in one app and see shoe ads in a totally different app the next day.
consent
Your clear agreement to something, given by an action like ticking a box or tapping Accept. For example, a pop-up asking if the app may use your location is asking for consent.
opt out
Something is on by default and stays on until you find the setting and turn it off. For example, your chats may be used for training unless you go into settings and switch it off.
worldwide license
You let the company use your content anywhere on earth, usually for free and for as long as it likes. For example, a video you post can be shown in ads in any country without asking you again.
royalty-free
The company can use your content without ever paying you for it. For example, your photo can appear in the app's ads and you get nothing.
limitation of liability
A cap on what the company will ever pay you if something goes wrong, often only what you paid in the last year. For example, if a leak of your data costs you thousands, the most you may get back is a month's subscription fee.
as is
You get the service in whatever state it is in, with no promise that it works or will keep working. For example, if the app deletes your photos by mistake, it is not promising to fix that or pay you back.
How we got here · grade C · score 41/100 · 15 of 15 policy answers backed by a verified quote · 1 not stated
  • What does the app collect beyond what it needs to work?

    Besides account and what you type, they collect emails, screen and web content, files, calendars, contacts in your content, device details, licensed job data, and inferences.

  • Does it record your voice, face or body, and what happens to that?

    If you use Notetaker or transcription, they collect and keep recordings of you and other participants to make transcripts.

  • Are your chats and uploads used to train AI models, and is that off by default?

    They use collected information to train AI, and you can turn that off for user content in account settings. The policy does not say it starts off.

  • Can employees or contractors read your conversations, and when?

    Not stated in the documents.

  • Are you profiled or tracked for advertising?

    They work with ad partners using cookies and unique IDs from email or phone to promote their products on other sites.

  • Do they sell or share your data, and can you opt out?

    They say some ad disclosures may be a “sale” or “sharing” under state law, and you can opt out via Your Privacy Choices.

  • What rights do they take over what you type and what the AI makes?

    You own your content. You give them a worldwide royalty-free license to use and modify it to operate, protect, customize, and improve the service, including via providers.

  • How long do they keep your data after you delete it, and can you delete it in the app?

    They keep data as long as needed for the product and legal reasons. You can delete an account via their help docs and request deletion under privacy laws; no 30-day wipe is stated.

  • Does it build a lasting memory or profile of you, and can you see, edit or turn it off?

    They infer things like approximate location, product interest, industry, and writing style. They do not describe a memory you can view or turn off.

  • Do they commit to basic security, and have they leaked data?

    They describe encryption, network segregation, and access minimization. No independent audit or leak history is described.

  • Is there a real age gate, and are teens protected?

    You must be old enough to consent yourself, such as 13 in most of the US or 16 in the EU. There is no extra age-check described.

  • Will they tell you when the rules change, and is the policy specific?

    The terms are dated October 29, 2025. They say they will email or notify you at least 30 days before changes take effect.

  • Can they close your account without warning, and can you get your data out first?

    They may terminate the terms at any time without liability. They usually give notice for some breaches, but not for material breach or legal risk.

  • If something goes wrong, who pays?

    The service is “as is.” Their total liability is capped at fees you paid in the last 12 months, or $100 if you pay nothing.

  • Do subscriptions renew on their own, and can you get a refund?

    Paid plans auto-renew at then-current fees. You can cancel for the next cycle, but payments are non-refundable.

The privacy policy is 5,067 words at a professional or legal expert level (Flesch reading ease 24.3); the terms are 8,849 words at a college graduate level.

Your privacy
has an agent now

Be in control of your online privacy in the AI Era with confidence.

Gen

From Gen, the Company BehindNorton