data report card

Data Report Card · Wispr Flow

Wispr Flow Data Report Card

AI dictation + notetaker · Wispr AI, Inc.
Data
Practices
1Access1Portability1Friction1Deletion2Sells2Trains AI
=
C
8/12
Agent
Readiness
1Access 1Portability 0API access
=
D
2/6

Agent Readiness is a derived signal — a synthesis of two existing cells (Access, Portability) plus one sourced factor (API access), not an independently measured grade. API access scale: Best (2) consumer-grantable API · Moderate (1) partial / encumbered · Restrictive (0) manual export only. What is Agent Readiness?

Help me make a request →
Reviewed Jun 2026  ·  some cells re-verified Sep 2026 · policies are checked weekly for changes  ·  stated — every cell is read from Wispr Flow's published policy; none has been tested (run by us) yet.
1Accessstated
Rights to access, update and delete are listed, exercised by emailing support+privacy@wisprflow.ai — no portal, no self-serve data view beyond your transcript history, and no stated response window.
Wispr Flow Privacy Policy — your rights · accessed Sep 2026 ↗
1Portabilitystated
The stated copy right is GDPR-shaped — “a copy of your Personal Data in a structured, machine-readable and commonly used format” — but request-only, fulfilled through support; no self-serve export tool exists on any platform.
Wispr Flow Privacy Policy — data portability · accessed Sep 2026 ↗
1Frictionstated
The privacy toggles are self-serve (Dictation Cloud Storage, the training-share toggle, Context Awareness — all under Settings → Data and Privacy), and account deletion is self-serve on desktop and iOS — but Android deletion runs through a support ticket, rights requests are email-only with no stated windows, and neither GPC nor Do Not Track is mentioned.
Wispr Flow — Data Controls / help center · accessed Sep 2026 ↗
1Deletionstated
Account deletion is self-serve (Settings → Account → Delete account), but the docs state “cloud transcription history, stored audio, and usage history are queued for a follow-up cleanup that support completes” — a manual purge with no stated timeline, and local history on other devices is not removed.
Wispr Flow Help Center — Manage your Flow account · accessed Sep 2026 ↗
2Sells / sharesstated
“We do not sell your data or use it to optimize ads for other companies”, and “currently, we do not allow unaffiliated parties to serve tailored marketing through our Services” — the plain no-sell shape, with first-party marketing cookies and NAI/DAA opt-outs.
Wispr Flow Privacy Policy — selling and advertising · accessed Sep 2026 ↗
2Trains AIstated
Training is opt-in by the policy’s own framing — “if you opt to share your content with us for model training” via the “Improve the model for everyone” toggle — meeting audio is excluded “unless expressly disclosed and enabled”, and third-party LLM providers are “not used to train their models”, with data “generally deleted within 30 days” by providers. Does not train by default.
Wispr Flow Privacy Policy — model training · accessed Sep 2026 ↗
0API access — feeds Agent Readiness, not the /12stated
Wispr publishes no developer platform or consumer OAuth API; the programmatic self-data path is absent — export runs through an emailed rights request, and history lives in the app.
Wispr Flow Help Center (no developer platform) · accessed Sep 2026 ↗
Graded 2026-09-01 against the Wispr Flow Privacy Policy (last updated Aug 19, 2026), the Data Controls page and the Wispr Flow help center. Consumer surface = the Wispr Flow dictation and Notetaker apps (Mac, Windows, iOS, Android), operated by Wispr AI, Inc. The stated privacy design is genuinely differentiated: model training is opt-in via the “Improve the model for everyone” toggle (formerly Privacy Mode), cloud storage of transcripts is a user choice, meeting audio is excluded from training “unless expressly disclosed and enabled”, and third-party LLM providers are barred from training on the data with roughly 30-day provider deletion. The rights mechanics lag the design: email-only requests with no stated windows, no export tool, and a cloud purge that support completes by hand. A young, fast-moving product — the policy is days old and help articles update weekly, so watch coverage carries more weight than usual. All cells stated, not tested.

Events

Breaches, policy changes, and export-format changes we’ve recorded at Wispr Flow — other parties’ actions, alongside the enforcement record above. An event never changes a grade by itself. All events →

No events on record for Wispr Flow.

Grade history

Every change to this company’s grade since it was first published, and why. All grade changes →

No changes since this grade was first published in Jun 2026.

How to request your data from Wispr Flow

  1. Go to https://wisprflow.ai/data-controls — Wispr Flow's data-request entry point.
  2. In-app: Settings → Data and Privacy for storage/training toggles; Settings → Account → Delete account (desktop/iOS); rights via support+privacy@wisprflow.ai.
  3. Expected wait: email requests with no stated response window; cloud purge after deletion is completed manually by support, no stated timeline — Wispr Flow's stated turnaround (we haven't independently timed a request yet).
  4. No self-serve option, or want a formal request? Contact Wispr — Privacy: mailto:support+privacy@wisprflow.ai.

These steps reflect Wispr Flow's documented process as of Jun 2026. The wait time is the company's stated figure, not yet independently measured by us.