

Insider
Based exclusively on public evidence • 20 criteria (Privacy + AI)
Last review: 21 Feb 2026
AI Trust Summary
- •In AI: it does not document retention periods for AI interaction data, which can create uncertainty about data management.
- •In Core Privacy: it details data retention criteria, ensuring clarity on storage time, essential for customer trust.
Safer Alternatives
Higher-rated software in the same category
Attention Points in AI (3)
AI criteria that require attention. Buy the Premium Analysis to see all 3 criteria.
- •Insider
- •does not specify retention periods for AI inputs/outputs, which creates uncertainty about data management.
- •does not document ethical AI principles, raising concerns about bias.
- •it is advisable to require contractual clauses addressing these critical points.
AI data retention (prompts and responses) is not disclosed
The policy does not specify retention periods for AI interaction data, which can create uncertainty about behavioral data management.
Ethical AI principles and anti-bias measures not documented
The policy does not mention commitments to ethical AI, which may raise concerns about bias and discrimination in automated decisions.
AI decision contestation mechanism not available
The policy does not mention human review of automated decisions, which may impact user trust in decisions made by AI.
Source: vendor public documents
Compliances in AI (3)
AI criteria the company meets. Buy the Premium Analysis to see all 3 criteria.
- •Insider
- •lists processing purposes by data category, facilitating understanding.
- •clearly states data retention periods, ensuring transparency.
- •these practices strengthen due diligence and customer trust in data management.
Use of artificial intelligence clearly disclosed in policies
The policy declares the use of artificial intelligence, essential to understand how behavioral and interaction data is used in campaign optimization.
Automated AI decisions explained in an understandable way
The policy explains how automated decisions are made, important for customer trust in campaign personalization.
AI features clearly identified with their purposes
The policy mentions functionalities that use AI, demonstrating initial transparency practices regarding the use of behavioral and interaction data.
Source: vendor public documents
Highlights in Privacy (3)
Most relevant criteria for this category. Buy the Premium Analysis to see all 3 criteria.
Data Processing Agreement (DPA) not available for customers
The policy does not mention the availability of a Data Processing Agreement, which may create uncertainty about legal compliance.
Data controller and processor roles clearly defined
The policy clearly identifies the roles of data controller and processor, essential for ensuring compliance in optimizing marketing campaigns.
Data controller identity and contact clearly disclosed
The policy provides detailed information about the data controller, facilitating communication and transparency for customers.
Source: vendor public documents
Critical Alerts
- •Princípios de IA ética e medidas anti-viés não documentados: Crucial para a confiança dos usuários nas tecnologias utilizadas..
- •Acordo de Processamento de Dados (DPA) não disponível para clientes: Crucial para a proteção legal e direitos dos clientes.
Conformance analysis (20)
Roles of data controller and processor clearly defined
Reference: ISO/IEC 27701 (7.3)
Identity and contact of the data controller clearly informed
Reference: ISO/IEC 27701 (7.3)
Contact channel for privacy issues available
Reference: ISO/IEC 27701 (7.3)
Source: vendor public documents
Follow this company and access all 20 criteria
Track score changes, get alerts on policy updates, and view the full conformance analysis
Don't miss any update
Sign up to follow this company and track changes in privacy and AI scores
Why trust the AITS Index: Open Community Audit
Public transparency, peer review and open evidence trails — all verifiable by the community
Trust guarantees
Peer review
users, professionals and experts confirm or contest items online.
Public history
vendor and index changes are versioned and accessible.
Participate
Evidence, confirmations and contestations
participate in the collaborative validation of AITS criteria
Insider Marketing Automation: Privacy and Security Insights
Transparency in Data Processing
Insider excels in its transparency regarding data processing purposes. With a high OPTI Base Privacy Score of 86%, it clearly categorizes the purposes for which user data is processed. This clarity is crucial for users who want to understand how their data is being utilized, especially in compliance with regulations like the GDPR and LGPD. By knowing the specific categories of data processing, users can make informed decisions about their engagement with the platform, ensuring that their privacy preferences align with Insider's practices.
Clear Data Retention Policies
Another strength of Insider is its clearly defined data retention periods. This aspect is vital for users who are concerned about how long their data will be stored. The platform provides explicit information about the duration of data retention, which fosters trust and allows users to manage their data privacy effectively. This transparency is particularly important under the ISO 27701 framework, which emphasizes the need for organizations to communicate their data retention policies clearly.
Undefined AI Data Retention Periods
Despite its strengths, Insider has notable weaknesses, particularly concerning its handling of AI-related data. The platform does not document retention periods for prompts and responses generated through AI interactions. This lack of clarity can lead to uncertainty for users regarding how long their data is stored and used, which is a significant risk. Users should be aware that without defined retention periods, their data may be retained indefinitely, potentially violating privacy regulations.
Lack of Ethical AI Documentation
Another area of concern is the absence of documented ethical AI principles and anti-bias measures. This shortcoming is critical for users who prioritize ethical considerations in their data handling and AI interactions. Without these safeguards, users may be exposed to biased outcomes or unethical data practices. It is advisable for users to inquire directly with Insider about these practices and to seek assurances that their data will be handled in an ethical manner.
Practical Settings to Enhance Privacy
To enhance privacy while using Insider, users should regularly review their account settings. Ensure that you have enabled all available privacy features, such as data access controls and consent management tools. Additionally, consider limiting the amount of personal data shared with the platform, especially if you are concerned about AI data retention. Regularly check for updates on Insider's privacy policies and any new features that may enhance your control over your data.
Mitigating Risks with Alternatives
Given the weaknesses identified, users may want to consider alternative platforms that offer more robust documentation on AI data retention and ethical practices. Researching competitors that provide clear Data Processing Agreements (DPA) can also be beneficial. If you choose to continue using Insider, stay informed about any updates regarding their AI practices and consider implementing additional data protection measures, such as data anonymization or encryption, to safeguard your information.
Other Marketing Automation software
Dive into in-depth research and analysis of each player
Source: vendor public documents
Analyzed Sources
Public documents used in the audit of Insider:
Evidence, confirmations and contestations
participate in the collaborative validation of AITS criteria
Scope & Limitations
TrustThis/AITS assessments are based exclusively on publicly available information, duly cited with date and URL, following the AITS methodology (privacy & AI transparency).
The content is indicative in nature, intended for screening and comparison, not replacing internal audits.
TrustThis/AITS does not perform invasive tests, does not access vendor technology environments and does not process customer personal data. Conclusions reflect only the vendor's public communication at the date of collection.
Source: vendor public documents





