Back to AI Tools
Choppity
Risk Overview
Moderate Risk
5.1
/10
Video Generation
·
Video Editing
·
Top Risks
Severely outdated privacy policy (2022) does not address current AI processing of uploaded videos; broad 'create derivative works' license in ToS could allow training use; 180-day post-deletion retention window; no AI training opt-out mechanism; no security certifications documented.
Mitigations
Contact hi@choppity.com to request clarification on AI training data use. Request explicit deletion of uploaded video content. Consider waiting for updated privacy policy before uploading sensitive content. Review governing law (UK) which offers some user protections.
Get started
Is your team using
Choppity
safely?
Highest Risk Categories
The highest-scoring risk categories identified in this assessment.
Training Use
Privacy policy (effective Nov 2022, last updated Nov 2022—appears outdated) does not explicitly address AI model training with user content. The California section notes collection of 'Audio or visual data, such as photos or videos you share or post on the service.' ToS grants a 'non-exclusive, royalty-free, transferable, sub-licensable, worldwide license to use, distribute, modify, run, copy, publicly display, translate, or otherwise create derivative works of your content'—this broad license could cover training use. No explicit opt-out or opt-in for AI training. Policy significantly predates current AI practices and appears not to have been updated despite AI feature additions.
6
/10
Data Retention
Policy states data retained only as long as needed. Explicit clause: 'If you terminate or delete your account, we will delete your personal information within 180 days of the deletion of your account.' 180-day retention post-deletion is on the longer end for a small tool. Search results from Choppity's own description also confirm this 180-day period. No specific retention period for uploaded video content while account is active.
6
/10
Security Posture
Policy references 'commercially acceptable means to prevent loss and theft.' No SOC 2 Type II or ISO 27001 certification mentioned. No bug bounty program. Privacy policy has not been updated since November 2022 despite significant product evolution including AI features—this is a notable gap. Third-party providers: Firebase (Google), Stripe, Google Analytics. Small Australian startup; basic security posture assumed.
6
/10
Unlock the complete assessment
Run a free assessment to access the full AI tool risk analysis.
Updated July 2026 • AI-assisted research • Reviewed by Verax • Report an issue
Reference Documentation
Official documentation and policies referenced as part of this assessment.
Terms of Service
https://www.choppity.com/terms-of-use/
Privacy Policy
https://www.choppity.com/privacy-policy