Replit AI — privacy & data policy
Provider: Replit. PromptPrivacy score: 48/100. Last verified July 26, 2026.
What happens to your data?
Replit collects your profile, usage, and content data to provide and improve their services, including training their machine learning models. Your data may be shared with affiliates, service providers, and other users, and it is stored in the United States or other international locations.
Does it train on your data?
The policy states they have a legitimate interest in using information to improve the accuracy of machine learning technologies such as code generation, implying user data is used for training by default.
Can you opt out?
Yes, for marketing emails via the link in the email, and for certain data processing rights by contacting them or using account settings.
Data retention
Data is kept as long as necessary for the purposes for which it was processed, unless required by law to be kept longer. Upon account deletion, data is deleted within 30 days.
Encryption & security
The policy mentions using technical, organizational, and physical safeguards but does not specify encryption standards or certifications.
Is it safe for work?
Use with caution. While the policy includes enterprise-focused features like a Data Processing Agreement (DPA) and team controls, the default use of user content for machine learning training may pose intellectual property or confidentiality risks for sensitive business code.
Source policy: https://replit.com/privacy