Free tool

AI Tool Risk Directory

Every AI tool we rate, in one place — alphabetical, with its plain-English risk rating and the tiers that change it.

Independent AI-leakage risk ratings for the AI tools small businesses actually use. Each tool is rated 1 (lowest risk) to 5 (highest risk) — the chance that sensitive data leaves your control through the tool. Lower is safer. Ratings reflect our editorial judgement from documented evidence, not vendor input.

Read the rating column carefully: most tools are rated differently across their plan tiers. A consumer or free tier is often higher-risk than the same vendor’s business or enterprise tier, which may carry no-training or zero-retention guarantees. Where a tool has a split rating, both are shown. Click any tool for the full breakdown, the plan-by-plan detail, and sources.

AI toolCategoryRisk rating (lower = safer)
Adobe FireflyVertical SaaS AI1 of 5 (Firefly Enterprise with indemnification) / 2 of 5 (Creative Cloud Firefly)
Asana AI / Asana IntelligenceEmbedded Productivity AI2 of 5
Canva Magic StudioVertical SaaS AI3 of 5 (Free/Pro) / 1 of 5 (Teams/Business/Enterprise/Education with Canva Shield)
ChatGPT (OpenAI)Direct AI Tools3 of 5
Claude (Anthropic)Direct AI Tools3 of 5
Cursor (Anysphere)Direct AI Tools3 of 5 (Hobby/Pro without Privacy Mode) / 2 of 5 (Pro with Privacy Mode)
ElevenLabsDirect AI Tools4 of 5 (Free/Starter/Creator) / 3 of 5 (Pro/Scale)
Fathom (meeting AI)Embedded Productivity AI3 of 5 (Free/Premium) / 2 of 5 (Team Edition with custom contract)
Gemini (Google)Direct AI Tools3 of 5 (consumer Gemini) / 1 of 5 (Workspace Gemini)
GitHub Copilot (GitHub / Microsoft)Direct AI Tools4 of 5 (Free/Pro/Pro+) / 2 of 5 (Business/Enterprise)
Grammarly (with Grammarly AI / GrammarlyGO)Vertical SaaS AI3 of 5 (Free/Premium) / 2 of 5 (Business/Enterprise)
GranolaEmbedded Productivity AI3 of 5 (Individual/Business) / 2 of 5 (Enterprise with no-training)
Grok (xAI)Direct AI Tools5 of 5 (Consumer Grok) / 3 of 5 (Grok API)
HubSpot AI (Breeze)Vertical SaaS AI2 of 5
Intercom FinVertical SaaS AI2 of 5
Jasper (Jasper AI)Direct AI Tools2 of 5
Linear AIEmbedded Productivity AI2 of 5
Microsoft CopilotDirect AI Tools3 of 5 (Consumer Copilot) / 2 of 5 (Microsoft 365 Copilot)
MidjourneyDirect AI Tools4 of 5 (Free/Basic/Standard) / 3 of 5 (Pro/Mega with Stealth Mode)
Notion AIEmbedded Productivity AI3 of 5 (Free/Plus/Business) / 1 of 5 (Enterprise with zero-retention APIs)
Otter.aiEmbedded Productivity AI5 of 5 (Free/Pro pending litigation outcome) / 3 of 5 (Business/Enterprise)
PerplexityDirect AI Tools4 of 5 (Consumer Perplexity) / 2 of 5 (Enterprise Perplexity)
Replit (with Replit AI)Direct AI Tools5 of 5
Salesforce Einstein / AgentforceVertical SaaS AI2 of 5
Shopify Magic / SidekickVertical SaaS AI2 of 5
Slack AI (Salesforce)Embedded Productivity AI3 of 5
Xero (with JAX / Just Ask Xero)Vertical SaaS AI2 of 5
Zendesk AI (Advanced AI / Resolution Platform)Vertical SaaS AI2 of 5
Zoom AI CompanionEmbedded Productivity AI2 of 5

Ratings are reviewed as vendors change their data policies and as new incidents come to light. This directory is the free summary layer; the full profiles carry the retention terms, training-opt-out steps, breach history, and the evidence behind every rating.


How this was written: this page was researched and drafted with AI assistance (primarily Claude on a no-training tier) and reviewed against primary sources before publication. We hold ourselves to the same standard we rate other tools against — see How This Site Uses AI for the full disclosure.