Skip to main content
Platform Review
PricingSign in
← All platforms
Workflow & Automation · chat.openai.com

ChatGPT

Graded against 804 verified platforms, from its own policy text. Automated assessment against a published rubric — not legal advice.

Overall riskHIGHReviewed 2026-08-24
Creator: medium · GRC: medium · Counsel: medium
creator band
Caution
enterprise · Caution
Exhibit A · Privacy Policy · verbatim

For information on how to exercise your rights with respect to data we have collected from the internet to train our models, please see this help center article ⁠ (opens in a new window) .

highest-risk verified finding on training use — tap for the citation
126 verified findings12 policy surfaces2/2 core docs verified
Risk triage

Watch: governing law disputes

Start here. These are the highest-risk verified clauses AIRIN found in the platform's own policy text.

0
high
54
medium
60
low
2/2
docs
Trains on your data?
Training possible — conditions or opt-outs apply
from 7 cited findings
Who owns outputs?
You own outputs — with license carve-outs
from 3 cited findings
Commercial use?
Commercial use allowed
from 2 cited findings
Every rating:verbatim-citedsnapshot-datedchange-loggedHow we keep ratings honest →
Risk by role
Select a role to tailor the summary and reorder the findings below.

Scores derived from 49 enriched findings — same verbatim citations as below. AI-generated, not legal advice.

What this means for you
  • ChatGPT's terms explicitly protect your inputs from training use — the policy is affirmatively favorable on this point.
  • Your outputs and prompts are explicitly yours — ChatGPT's terms include affirmatively protective IP language.
  • Data handling is conditional — 9 privacy or retention clauses warrant review before using ChatGPT at scale.

Derived from AI-enriched analysis of the verified findings below — informational only, not legal advice.

How to read this page: Overall risk rates what ChatGPT's own policy terms mean for your prompts, outputs, and data. The benchmark bands below grade those same verified terms relative to peers — a platform in a risky-by-default category can rate HIGH risk and still grade STRONG against its peer set. Both trace to the cited findings.

Creator lens
Your prompts, your outputs, your IP
CAUTION

Based on 138 verified, verbatim-cited findings below — read the citations.

Enterprise lens
Data use, retention, subprocessors, audit
CAUTION

Based on 162 verified, verbatim-cited findings below — read the citations.

Automated assessment against a published rubric — not legal advice.

Fully verifiedWorkflow & Automation

Fully verified — complete core corpus captured and read in full.

Document status
  • Privacy Policy
    Verified - read in full - 67 citationsstaticLast captured 2026-08-17
  • Terms of Service
    Verified - read in full - 50 citationsstaticLast captured 2026-08-24
Tier conditions

Only citation-backed plan differences are shown here; absent cells mean AIRIN has not verified a tier-specific claim.

api
Privacy & data use

This segment carves out business API customers' data from the scope of this Privacy Policy, stating that such processing is governed by separate customer agreements, thereby creating a legal exception to the policy's applicability.

" This Privacy Policy does not apply to content that we process on behalf of customers of our business offerings, such as our API. Our use of that data is governed by our customer agreements covering access to and use of those offerings. "
📍 Privacy Policy › “US privacy policy”Jump to exact text →
plan language
Privacy & data use

Establishes the procedure for submitting privacy rights requests through authorized agents, specifying the authority documentation required, the user's independent verification obligations, and the submission email address.

" The right to be free from retaliation relating to the exercise of any of your privacy rights. Review our California privacy rights reporting here ⁠ . "
📍 Privacy Policy › “The right to correct your Personal Data; and”Jump to exact text →
plan language
Privacy & data use

Grants users the right to control whether their Content is used to train and improve OpenAI's models, and describes opt-out mechanisms including Temporary Chat which prevents content from being used for model improvement.

" You can easily choose whether your Content can be used to improve and train our models ⁠ (opens in a new window) . You can decide whether we will remember details between chats to make Content more personalized and relevant. You can ex..."
📍 § 5 (Data controls)Jump to exact text →
plan language
Privacy & data use

Defines 'Parties involved in Transactions' as a category of recipients to whom Personal Data may be disclosed, forming part of the U.S. state law disclosure table.

" For Free and Go users, subject to your controls, to personalize the ads you see on our Services and measure the effectiveness of ads shown on our Services. Learn more. Communicate with you, including to respond to your questions, and sen..."
📍 Privacy Policy › “To personalize and customize your experience across our Services”Jump to exact text →
plan language
Privacy & data use

States that information may be received from advertisers and data partners for the purpose of measuring and improving ad effectiveness for Free and Go users, including data about purchases — discloses receipt and use of third-party advertiser data for ad personalization and measurement.

" We may receive information from advertisers and other data partners, which we use for purposes including to help us measure and improve the effectiveness of ads shown to Free and Go users on our Services. For example, we could receive info..."
📍 § 1 (Personal Data we collect)Jump to exact text →
plan language
Moderation & enforcement

This segment imposes a compliance obligation on users to adhere to all applicable trade laws, sanctions, and export control laws, and restricts use of the Services in embargoed territories or for prohibited end uses, creating binding legal duties and restrictions with potential liability implications.

" Trade controls. You must comply with all applicable trade laws, including sanctions and export control laws. Our Services may not be used in or for the benefit of, or exported or re-exported to (a) any U.S. embargoed country or territory o..."
📍 Terms of Service › “General Terms”Jump to exact text →
plan language
Moderation & enforcement

This segment prohibits use of OpenAI services to manipulate or deceive people, interfere with human rights, exploit vulnerabilities, or impede access to education and critical services, listing specific forbidden activities including academic dishonesty, fraud, election interference, and automation of high-stakes decisions without appropriate oversight.

" Empower people . People should be able to make decisions about their lives and their communities. So we don’t allow our services to be used to manipulate or deceive people, to interfere with their exercise of human rights, to exploit peopl..."
📍 Usage Policy › “Usage policies”Jump to exact text →
plan language
Moderation & enforcement

Provides users with a procedural remedy to appeal account suspension or termination decisions by contacting the Support team, creating an administrative recourse mechanism.

" Appeals. If you believe we have suspended or terminated your account in error, you can file an appeal with us by contacting our Support team⁠ ⁠ (opens in a new window) . "
📍 Terms of Service › “Termination and suspension”Jump to exact text →

Evidence appendix

Showing priority citations first. The full appendix is available for audit trails; not every citation is a severe risk.

High - 0
Medium - 54
Tier-specific - 1
Total citations - 126
Severity
Surface
Document
Tier
Output ownership
CautionHigh
" Similarity of content. Due to the nature of our Services and artificial intelligence generally, output may not be unique and other users may receive similar output from our Services. Our assignment above does not extend to other users’ output or any Third Party Output. "
Terms of Service › “Content”Jump to exact text →
Source: Terms of Service- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment limits the scope of the IP assignment in segment 26 by clarifying that it does not extend to other users' similar output or Third Party Output, restricting the breadth of the ownership right granted to any individual user.

AI-generated interpretation, not legal advice.

Subprocessors & data sharing
CautionHigh
" Parents or guardians of teen users for account linking purposes described above Other users and third parties you interact or share information with"
Privacy Policy › “Business account administrators for the reasons described above”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

States that OpenAI does not sell Personal Data and describes conditions under which limited data may be shared with marketing partners for targeted advertising, establishing the boundary of permissible data sharing and users' opt-out rights.

AI-generated interpretation, not legal advice.

Training on your content
CautionHigh
" We also collect information from other sources, like information that is publicly available on the internet, to develop the models that power our Services. For more information on the sources of information used to develop the models that power ChatGPT and other Services, please see this help center article ⁠ (opens in a new window) . "
§ 1 (Personal Data we collect)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment discloses that OpenAI collects publicly available internet data to develop the models powering its Services, establishing the scope of data collection for AI training purposes and incorporating a help center article for further detail.

AI-generated interpretation, not legal advice.

Training on your content
CautionHigh
" Improve and develop our Services and conduct research, including using your Content to train our models (subject to your control) "
Privacy Policy › “Provide, analyze, and maintain our Services”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

Permits OpenAI to use Personal Data to personalize and customize the user experience across its Services.

AI-generated interpretation, not legal advice.

Training on your content
CautionHigh
" As noted above, we may use Content you provide us to improve our Services, for example to train the models that power ChatGPT. Read our instructions ⁠ (opens in a new window) on how you can opt out of our use of your Content to train our models. "
§ 2 (How we use Personal Data)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment states that OpenAI may use user-provided content to train its models and directs users to instructions for opting out, establishing a conditional permission for training use of content subject to user opt-out rights.

AI-generated interpretation, not legal advice.

Training on your content
CautionHigh
" Opt out. If you do not want us to use your Content to train our models, you can opt out by following the instructions in this article ⁠ . Please note that in some cases this may limit the ability of our Services to better address your specific use case. "
Terms of Service › “Content”Jump to exact text →
Source: Terms of Service- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment provides users with the right to opt out of having their Content used for model training by following specified instructions, and notes that opting out may limit service personalization, establishing both a user right and a procedural mechanism for exercising it.

AI-generated interpretation, not legal advice.

Privacy & data use
CautionHigh
" Network activity information, such as how you interact with our Services, including Log Data, Usage Data, and information about the device you use to access the Services Content, including your prompts and content you upload to the Services and interactions and messages with other users Communication Information, such as your contact information when you send us email"
Privacy Policy › “Commercial information, such as your transaction history”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

Defines 'Contact Data' as a category of Personal Data optionally collected when users connect device contacts, scoping the conditions and data types involved.

AI-generated interpretation, not legal advice.

Privacy & data use
CautionHigh
" This is known as “targeted advertising” or sharing for “cross-context behavioral advertising” under certain state privacy laws. You can opt out using the marketing privacy control in your account settings. If you’re not logged in, you can opt out within Settings > Data Controls on ChatGPT or using the Your Privacy Choices link ⁠ on our website. You can also opt out using a legally recognized opt-out mechanism, like Global Privacy Control. You can learn more about the types of data we use and share for these purposes and controls we offer you here ⁠ (opens in a new window) . We don’t engage in these activities for users we know to be under 18 years of age. "
Privacy Policy › “Business account administrators for the reasons described above”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

Enumerates additional privacy rights for users under applicable U.S. state laws, including rights to know, access in portable format, deletion, correction, and freedom from retaliation for exercising those rights.

AI-generated interpretation, not legal advice.

Privacy & data use
CautionHigh
" Log Data : We collect information that your browser or device automatically sends when you use our Services. Log data includes your Internet Protocol address, browser type and settings, the date and time of your request, and how you interact with our Services. Usage Data : We collect information about your use and activity across the Services, such as the types of content that you view or engage with, the features you use and the actions you take, when you submit feedback to a model response, the people with whom you interact, as well as your time zone, country, the dates and times of access, user agent and version, type of computer or mobile device, and your computer connection. If you use the Atlas browser we may also collect your browser data according to your controls ⁠ (opens in a new window) and use of the service. Device Information : We collect information about the device you use to access the Services, such as the name of the device, operating system, device identifiers, and browser you are using. Information collected depends on the type of device you use and its settings. Location Information: We determine the general area from which your device accesses our Services based on information like its IP address for security reasons and to make your product experience better, for example to protect your account by detecting unusual login activity or to provide more accurate responses. In addition, some of our Services allow you to choose to provide more precise location information from your device, such as location information from your device’s GPS. "
§ 1 (Personal Data we collect)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment describes OpenAI's automatic collection of log data (IP address, browser type, request timestamps) and usage data (content interactions, feature use, feedback submissions, time zone, access times), establishing the scope of passive data collection obligations.

AI-generated interpretation, not legal advice.

Privacy & data use
CautionHigh
" We also aggregate or de-identify Personal Data so that it no longer identifies you and use this information for the purposes described above, such as to analyze the way our Services are being used, to improve and add features to them, and to conduct research. We will maintain and use de-identified information in de-identified form and not attempt to reidentify the information, unless required by law. "
§ 2 (How we use Personal Data)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment describes OpenAI's practice of aggregating or de-identifying personal data and commits to maintaining such data in de-identified form without re-identification except as required by law, creating a legal obligation regarding de-identification standards.

AI-generated interpretation, not legal advice.

Data retention
CautionHigh
" Information we retain until you delete it: Some of our Services allow you to delete Personal Data stored in your account. For example, you can delete specific, or all, of your ChatGPT conversations, delete specific Saved Memories ⁠ (opens in a new window) , or delete your account. Once you choose to delete Personal Data, we will remove it from our systems within 30 days unless we need to retain it for longer as described below, or it has already been de-identified and disassociated from your account when you allow us to use your Content to improve our models ⁠ (opens in a new window) . Information we delete automatically: In some cases, Personal Data will be deleted automatically. For example, Temporary Chats ⁠ (opens in a new window) will be automatically deleted within 30 days (unless we have to retain them for safety or legal reasons, as described further below), and your Atlas incognito browsing history ⁠ (opens in a new window) won’t be saved after you end your session. Information we retain for longer for legitimate security, safety, or legal reasons: In some cases, we need to retain Personal Data for longer even after you delete it, for example because we are legally required to, to address fraud and abuse, for security reasons, or for financial record-keeping purposes. For instance: If specific Content, or your account, is banned because of violations of our usage policies ⁠ , we may retain that data for to protect our services from fraud, abuse, or other violations of our policies; If we are legally required to retain your data (for instance, we receive a lawful subpoena) then we may retain it for the duration of the relevant legal or regulatory obligation; When we are a party to a financial transaction (for instance, when we process your payment for a"
§ 4 (Retention)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment describes the procedure for user-initiated deletion of personal data, specifying that deletion occurs within 30 days unless retention is otherwise required, and creates an exception for de-identified data already dissociated from the user's account.

AI-generated interpretation, not legal advice.

Data retention
CautionHigh
" ChatGPT Plus or Pro account, or facilitate a purchase on ChatGPT), we may retain payment and transaction related information to meet our accounting, dispute resolution, and regulatory compliance purposes; When you ask us to delete your Personal Data, we retain the audit record of the erasure request to be able to verify that we have complied with the request. "
§ 4 (Retention)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment establishes OpenAI's obligation to retain payment and transaction data for accounting, dispute resolution, and regulatory compliance, and to retain audit records of erasure requests to demonstrate compliance with deletion obligations.

AI-generated interpretation, not legal advice.

Data retention
CautionHigh
" We’ll retain your Personal Data for only as long as we need in order to provide our Services to you, or for other legitimate business purposes such as resolving disputes, safety and security reasons, or complying with our legal obligations. How long we retain Personal Data depends on the type of data, how we use it, and in many cases your settings: "
§ 4 (Retention)Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment establishes OpenAI's obligation to retain personal data only as long as necessary for service provision or legitimate business purposes such as dispute resolution, safety, and legal compliance, and defines factors that determine retention duration.

AI-generated interpretation, not legal advice.

Indemnity & liability
CautionHigh
" YOU ACCEPT AND AGREE THAT ANY USE OF OUTPUTS FROM OUR SERVICE IS AT YOUR SOLE RISK AND YOU WILL NOT RELY ON OUTPUT AS A SOLE SOURCE OF TRUTH OR FACTUAL INFORMATION, OR AS A SUBSTITUTE FOR PROFESSIONAL ADVICE. "
Terms of Service › “Disclaimer of warranties”Jump to exact text →
Source: Terms of Service- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

Disclaims reliance on service outputs as authoritative or as a substitute for professional advice, placing sole risk of output use on the user and restricting OpenAI's liability for output-related harm.

AI-generated interpretation, not legal advice.

Indemnity & liability
CautionHigh
" A note about accuracy: Services like ChatGPT generate responses by reading a user’s request and, in response, predicting the words most likely to appear next. In some cases, the words most likely to appear next may not be the most factually accurate. For this reason, you should not rely on the factual accuracy of output from our models. If you notice that ChatGPT output contains factually inaccurate information about you and you would like to request a correction or removal of the information, you can submit these requests through privacy.openai.com ⁠ (opens in a new window) or to dsar@openai.com ⁠ , and we will consider your request based on applicable law and the technical capabilities of our models. "
Privacy Policy › “Rectify or update your Personal Data”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

Disclaims reliance on the factual accuracy of AI-generated output by explaining that ChatGPT predicts likely words rather than guaranteed facts, and provides a procedure for requesting correction or removal of inaccurate personal information in outputs.

AI-generated interpretation, not legal advice.

Confidentiality
CautionHigh
" Feedback. We appreciate your feedback, and you agree that we may use it without restriction or compensation to you. "
Terms of Service › “Using our Services”Jump to exact text →
Source: Terms of Service- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment grants OpenAI a perpetual, unrestricted, royalty-free right to use user feedback without restriction or compensation, effectively waiving any ownership or compensation rights the user might otherwise have in submitted feedback.

AI-generated interpretation, not legal advice.

Moderation & enforcement
High
" Protect people . Everyone has a right to safety and security. So you cannot use our services for: threats, intimidation, harassment, or defamation suicide, self-harm, or disordered eating promotion or facilitation sexual violence or non-consensual intimate content terrorism or violence, including hate-based violence weapons development, procurement, or use, including conventional weapons or CBRNE illicit activities, goods, or services destruction, compromise, or breach of another’s system or property, including malicious or abusive cyber activity or attempts to infringe on intellectual property rights of others real money gambling provision of tailored advice that requires a license, such as legal or medical advice, without appropriate involvement by a licensed professional unsolicited safety testing circumventing our safeguards national security or intelligence purposes without our review and approval "
Usage Policy › “Usage policies”Jump to exact text →
Source: Usage Policy- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment enumerates specific prohibited uses of OpenAI services that harm people, including threats, harassment, defamation, self-harm promotion, sexual violence, terrorism, weapons development, illicit activities, and malicious cyber activity, constituting binding use restrictions.

AI-generated interpretation, not legal advice.

Moderation & enforcement
High
" Changes to the law or regulatory requirements. Security or safety reasons. Circumstances beyond our reasonable control. Changes we make in the usual course of developing our Services. To adapt to new technologies. "
Terms of Service › “General Terms”Jump to exact text →
Source: Terms of Service- Snapshot 2026-06-10- View source
Permalink to this finding →
Automated analysis

This segment lists the permissible grounds (legal/regulatory changes, security, force majeure, product development, new technologies) that justify modifications to the Terms, functioning as exceptions that excuse OpenAI from standard change-notification obligations.

AI-generated interpretation, not legal advice.

Common questions about ChatGPT's policies

Does ChatGPT train its AI models on your data?
Training possible — conditions or opt-outs apply — based on 7 verified findings from ChatGPT's published policy. Informational only, not legal advice.
Who owns the content you create with ChatGPT?
You own outputs — with license carve-outs — based on 3 verified findings from ChatGPT's published policy. Informational only, not legal advice.
Can you use ChatGPT's output commercially?
Commercial use allowed — based on 2 verified findings from ChatGPT's published policy. Informational only, not legal advice.

Clause detail — protections, your obligations, and coverage

Every clause below is a verbatim quote from ChatGPT's own published policy, read in full and linked to its exact location. Protections and user obligations are reported separately from risk because they are different kinds of clause — an obligation on you is not a risk to your data. Informational only, not legal advice.

✅ Protections found

21 verified clauses

Clauses in ChatGPT's policies that work in your favour — commitments the platform made to you.

  • Privacy & data useads & tracking use
    You can easily choose whether your Content can be used to improve and train our models ⁠ (opens in a new window) . You can decide whether we will remember details between chats to make Content more personalized and relevant. You can export your ChatGPT his…

    Grants users the right to control whether their Content is used to train and improve OpenAI's models, and describes opt-out mechanisms including Temporary Chat which prevents content from being used for model improvement…

    📍 § 5 (Data controls)Jump to exact text →
  • Governing law & disputesarbitration & class-action waiver
    Informal dispute resolution. We would like to understand and try to address your concerns prior to formal legal action. Before either of us files a claim against the other, we both agree to try to resolve the Dispute informally. You agree to do so by sending u…

    Establishes a mandatory informal dispute resolution process requiring both parties to attempt resolution for 60 days before initiating arbitration, including notice requirements and optional individual settlement confere…

    📍 Terms of Service › “Dispute resolution”Jump to exact text →
  • Privacy & data usechildren's data
    Our Services are not directed to, or intended for, children under 13. We do not knowingly collect Personal Data from children under 13. If you have reason to believe that a child under 13 has provided Personal Data to OpenAI through the Services, please email…

    Restricts Services from being directed to children under 13, prohibits knowing collection of Personal Data from such children, imposes a parental permission requirement for users under 18, and establishes a procedure for…

    📍 § 7 (Children)Jump to exact text →
  • Moderation & enforcementterms can change anytime
    We update as we learn . People are using our systems in new ways every day, and we update our rules to ensure they are not overly restrictive or to better protect our users. We reserve all rights to withhold access where we reasonably believe it necessary to p…

    This segment asserts OpenAI's reserved right to withhold access where necessary to protect its service or users, establishes a user right to appeal enforcement decisions, and describes a procedure for updating policies —…

    • Terms changes: no advance notice promised
    📍 Usage Policy › “Usage policies”Jump to exact text →
  • Indemnity & liabilitydamages/liability cap
    Some countries and states do not allow the disclaimer of certain warranties or the limitation of certain damages, so some or all of the terms above may not apply to you, and you may have additional rights. In that case, these Terms only limit our responsibilit…

    Creates a geographic/jurisdictional exception acknowledging that certain warranty disclaimers or damage limitations may not apply in some jurisdictions, preserving users' statutory rights where local law prohibits such l…

    📍 Terms of Service › “Limitation of liability”Jump to exact text →
  • Governing law & disputesarbitration & class-action waiver
    Exceptions. This section does not require informal dispute resolution or arbitration of the following claims: (i) individual claims brought in small claims court; and (ii) injunctive or other equitable relief to stop unauthorized use or abuse of the Services o…

    Carves out small claims court actions and requests for injunctive or equitable relief related to unauthorized use, service abuse, or intellectual property infringement from the mandatory informal dispute resolution and a…

    📍 Terms of Service › “Dispute resolution”Jump to exact text →

+ 15 more verified clauses of this kind on this platform, cited in full in the report.

📋 Rules you must follow

8 verified clauses

What ChatGPT requires of YOU. These are your obligations, not risks to your data or IP, so they are cited here and excluded from this platform's risk rating.

  • Moderation & enforcement
    Respect privacy . People are entitled to privacy. So, we don’t allow attempts to compromise the privacy of others, including to aggregate, monitor, profile, or distribute individuals’ private or sensitive information without their authorization. And, you may n…

    This segment prohibits uses of OpenAI services that compromise others' privacy, including aggregating, monitoring, profiling, or distributing private information without authorization, and specifically bans facial recogn…

    📍 Usage Policy › “Usage policies”Jump to exact text →
  • Moderation & enforcement
    Protect people . Everyone has a right to safety and security. So you cannot use our services for: threats, intimidation, harassment, or defamation suicide, self-harm, or disordered eating promotion or facilitation sexual violence or non-consensual intimate…

    This segment enumerates specific prohibited uses of OpenAI services that harm people, including threats, harassment, defamation, self-harm promotion, sexual violence, terrorism, weapons development, illicit activities, a…

    📍 Usage Policy › “Usage policies”Jump to exact text →
  • Moderation & enforcementchildren's data
    Keep minors safe . Children and teens deserve special protection. Our services are designed to prevent harm and support their well-being, and must never be used to exploit, endanger, or sexualize anyone under 18 years old. We report apparent child sexual abuse…

    This segment restricts use of OpenAI services for any content or activity that exploits, endangers, or sexualizes minors, including CSAM and grooming, and discloses an obligation to report apparent CSAM to NCMEC, constit…

    📍 Usage Policy › “Usage policies”Jump to exact text →
  • Moderation & enforcement
    Empower people . People should be able to make decisions about their lives and their communities. So we don’t allow our services to be used to manipulate or deceive people, to interfere with their exercise of human rights, to exploit people’s vulnerabilities,…

    This segment prohibits use of OpenAI services to manipulate or deceive people, interfere with human rights, exploit vulnerabilities, or impede access to education and critical services, listing specific forbidden activit…

    📍 Usage Policy › “Usage policies”Jump to exact text →
  • Moderation & enforcementconduct restrictions
    Use our Services in a way that infringes, misappropriates or violates anyone’s rights. Modify, copy, lease, sell or distribute any of our Services. Attempt to or assist anyone to reverse engineer, decompile or discover the source code or underlying compone…

    This segment enumerates specific prohibited activities including rights infringement, copying or distributing Services, reverse engineering, automated data extraction, misrepresenting AI-generated output as human-generat…

    📍 Terms of Service › “Using our Services”Jump to exact text →

+ 3 more verified clauses of this kind on this platform, cited in full in the report.

What the policies actually cover

16 topics
  • Product telemetry & usage tracking4 clauses
  • Advertising & tracking1 protective6 clauses
  • Sale or sharing of personal data1 protective1 clause
  • Sensitive data (biometric, location, health)1 clause
  • Children's data1 protective1 obligation2 clauses
  • Does not train on your content1 clause
  • Trains by default, opt-out available4 clauses
  • Trains with no opt-out1 clause
  • Arbitration & class-action waiver2 protective9 clauses
  • Damages & liability cap1 protective4 clauses
  • Indemnity direction1 clause
  • Terms can change at any time4 protective7 clauses
  • Deletion rights & post-termination survival1 protective4 clauses
  • Auto-renewal & cancel window1 protective3 clauses
  • Feedback ownership1 clause
  • Conduct restrictions2 obligations2 clauses

75 further verified clauses are cited on this page but not yet assigned a topic.

Cross-clause notes

Cross-reference

Two verified clauses intersect on the same subject matter: the Privacy Policy, § 4 (Retention) addresses how long content is retained, and the Privacy Policy, Privacy Policy › “Provide, analyze, and maintain our Services” addresses use of content in connection with model training or service improvement. Both clauses are in force at the same time — read them together.

Cross-referenceacross documents

The Terms of Service, Terms of Service › “Content” describes rights the platform takes in user content, and the Privacy Policy, § 3 (Disclosure of Personal Data) describes disclosure of data to third parties or subprocessors. Both clauses are in force at the same time — read them together.

Ambiguity — Caution

Verified retention clauses point in different directions: the Privacy Policy, § 4 (Retention) describes broad or open-ended retention, while the Privacy Policy, § 4 (Retention) describes deletion or erasure. Which clause controls in a given situation is not resolved by the documents' text alone — this is surfaced as an ambiguity, treated as Caution.

Ambiguity — Cautionacross documents

Verified training clauses point in different directions: the Privacy Policy, § 2 (How we use Personal Data) describes use of content for training or improvement, while the Terms of Service, Terms of Service › “Content” states content is not used for training. The clauses may govern different products, tiers, or data categories — the documents' text alone does not resolve it. Surfaced as an ambiguity, treated as Caution.

Automated cross-reference against the published rubric — not legal advice.

Clause intelligence

Canonical clauses and stance patterns extracted from the same gate-verified citations shown on this page.

365
clauses
79
patterns
79
stances
privacy sharing · 36dispute resolution · 26ip ownership · 5training use · 4legal burden · 3tier conditionality · 3
data retentionLOW§ 4 (Retention)

The clause provides a deletion or time-bounded retention path.

Information we retain until you delete it: Some of our Services allow you to delete Personal Data stored in your account. For example, you can delete specific, or all, of your ChatGPT conversations, delete specific Saved Memories ⁠ (opens in a new window) , or delete your account. Once you choose to delete Personal Data, we will remove it from our systems within 30 days unless we need to retain it for longer as de...
Open source citation
data retentionLOW§ 4 (Retention)

The clause provides a deletion or time-bounded retention path.

Information we retain until you delete it: Some of our Services allow you to delete Personal Data stored in your account. For example, you can delete specific, or all, of your ChatGPT conversations, delete specific Saved Memories ⁠ (opens in a new window) , or delete your account. Once you choose to delete Personal Data, we will remove it from our systems within 30 days unless we need to retain it for longer as de...
Open source citation
dispute resolutionMEDIUMTerms of Service › “Dispute resolution”

The clause imposes arbitration, class-action waiver, or jury-trial waiver terms.

Exceptions. This section does not require informal dispute resolution or arbitration of the following claims: (i) individual claims brought in small claims court; and (ii) injunctive or other equitable relief to stop unauthorized use or abuse of the Services or intellectual property infringement or misappropriation.
Open source citation
dispute resolutionMEDIUMTerms of Service › “Dispute resolution”

The clause imposes arbitration, class-action waiver, or jury-trial waiver terms.

Severability. If any part of these arbitration terms is found to be illegal or unenforceable, the remainder will remain in effect, except that if a finding of partial illegality or unenforceability would allow class arbitration, class action, or representative action, this entire dispute resolution section will be unenforceable in its entirety.
Open source citation
dispute resolutionMEDIUMTerms of Service › “Dispute resolution”

The clause imposes arbitration, class-action waiver, or jury-trial waiver terms.

Batch arbitration. If 25 or more claimants represented by the same or similar counsel file demands for arbitration raising substantially similar Disputes within 90 days of each other, then you and OpenAI agree that NAM will administer them in batches of up to 50 claimants each (“Batch”), unless there are less than 50 claimants in total or after batching, which will comprise a single Batch. NAM will administer each...
Open source citation

Tier matrix

Plan-level conditions detected from citation-backed clauses. Empty tiers mean AIRIN has not captured decisive tier language yet.

TierSurfaceVerdictRiskCitations
All applicable tierscommercial useworsensHIGH1
All applicable tiersdata retentionimprovesLOW3
All applicable tiersgoverning law disputesconditionalMEDIUM26
All applicable tiersindemnity liabilityconditionalMEDIUM1
All applicable tiersmoderation enforcementworsensHIGH1
All applicable tiersprivacy data useworsensHIGH6
All applicable tierssubprocessors data sharingconditionalMEDIUM1
Freedata retentionworsensHIGH3
Freeindemnity liabilityconditionalMEDIUM1
Freemoderation enforcementworsensHIGH1
Freesubprocessors data sharingconditionalMEDIUM1
Governmentprivacy data useconditionalMEDIUM1

Policy evolution

Open full timeline

Before/after stance changes across captured policy versions. When no material delta exists yet, AIRIN shows the latest citation-backed stance events instead.

improvedhigh materialityJul 20Aug 17, 2026

data sharing improved from high/sale or sell to medium/third party or vendor sharing.

Before · high
**Your Opt-Out Rights.** We don’t “sell” Personal Data. Depending upon your choices, we may share limited data with select marketing partners for purposes of promoting our products and services to you on third-party properties.
Before citation
After · medium
At OpenAI, our mission is to ensure that artificial general intelligence benefits everyone. We build tools like ChatGPT and Sora to help people learn, create, and solve problems. We at OpenAI (together with our affiliates, “OpenAI”, “we”, “our” or “us”) are committed to respecting your privacy and are strongly committed to keeping secure any information we obtain from you or about you. This Privacy Policy describes our practices with respect to personal data that we collect from or about you, and how we use it when you use our website, applications, and services (collectively, “Services”).
After citation
Aug 24, 2026dispute termsMEDIUM

Latest stance: arbitration or waiver on governing law disputes

CLASS AND JURY TRIAL WAIVERS. You and OpenAI agree that Disputes must be brought on an individual basis only, and may not be brought as a plaintiff or class member in any purported class, consolidated, or representative proceeding. Class arbitrations, class actions, and representative actions are prohibited. Only individual relief is available. The parties agree to sever and litigate in court any request for public injunctive relief after completing arbitration for the underlying claim and all other claims. This does not prevent either party from participating in a class-wide settlement. You and OpenAI knowingly and irrevocably waive any right to trial by jury in any action, proceeding, or counterclaim.
Open timeline citation
Aug 24, 2026dispute termsMEDIUM

Latest stance: arbitration or waiver on governing law disputes

Arbitration forum. If we are unable to resolve the Dispute, either of us may commence arbitration with National Arbitration and Mediation (“NAM”) under its Comprehensive Dispute Resolution Rules and Procedures and/or Supplemental Rules for Mass Arbitration Filings, as applicable (available here⁠ ⁠ (opens in a new window) ).
Open timeline citation
Aug 24, 2026dispute termsMEDIUM

Latest stance: arbitration or waiver on governing law disputes

MANDATORY ARBITRATION. You and OpenAI agree to resolve any claims arising out of or relating to these Terms or our Services, regardless of when the claim arose, even if it was before these Terms existed (a “Dispute”), through final and binding arbitration. You may opt out of arbitration within 30 days of account creation or of any updates to these arbitration terms within 30 days after the update has taken effect by filling out this form ⁠ . If you opt out of an update, the last set of agreed upon arbitration terms will apply.
Open timeline citation
Aug 24, 2026dispute termsMEDIUM

Latest stance: arbitration or waiver on governing law disputes

Exceptions. This section does not require informal dispute resolution or arbitration of the following claims: (i) individual claims brought in small claims court; and (ii) injunctive or other equitable relief to stop unauthorized use or abuse of the Services or intellectual property infringement or misappropriation.
Open timeline citation

Capture recency

  • Privacy Policy:Last captured 2026-08-17· verified 2026-08-17
  • Terms of Service:Last captured 2026-08-24· verified 2026-08-24

Dates state when our pipeline captured and verified each document — not when the vendor last changed it. Documents are re-scanned on a recurring cadence; a document verified once says so until a re-scan confirms it again.

↑ 10 more findings this quarter vs last (270 vs 260). First scan: June 2026.

Claim this profile

Compare and stack are saved in your browser. Open compare · View your stack. A correction triggers an automated re-read of ChatGPT's policies — no human edits the data.

Need this for procurement or legal diligence?

Free shows today's risk. A Stack Audit gives you a citable, verbatim-sourced PDF across your whole AI stack — and flags the moment a vendor's terms change.

Every finding above is a verbatim quote from ChatGPT's own published policy, captured to an immutable snapshot and read in full through a two-gate verification pipeline. Confidence labels and any analysis are AI-generated and informational only — not legal advice.

📢 POLICY UPDATES ALERT

AIRIN Brief

Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.