No Filter Review

safety · Hands-on + researched · 18+

Is Janitor AI Safe? I Read the Privacy Policy So You Don't Have To

Is Janitor AI safe? Who runs it, where your chats go, what the December 2025 privacy policy actually says, the proxy question nobody covers, and the breach record.

If you sign up through a link marked "Visit site", I may earn a commission. It never changes what I write. Every number is measured before any partnership exists, and the test date is printed next to it.

JanitorAI's privacy policy, dated December 11, 2025, showing the operator JanitorAI Inc. and the data it collects including chat conversations
Evidence captureJanitorAI's privacy policy, last updated Dec 11, 2025, read from the Internet Archive's Jul 17, 2026 copy because the live page blocks automated access

Is Janitor AI safe? The short answer

Safer than its reputation and vaguer than its fans assume. I read the full privacy policy, the December 11, 2025 version, line by line: it is a competently drafted, CCPA-aware document that disclaims selling your data and grants deletion rights, from a real corporate operator. Two things it never answers are the two things users most want to know: whether your chats train models, and what happens to chats you route through a proxy. And one detail deserves more attention than it gets: your payments run through a Cyprus payment entity, so your card statement and your roleplay live closer together than you might assume.

Everything below is quoted from the policy or checked against a named source, with dates.

What is Janitor AI?

JanitorAI is a free character-card roleplay platform: community-created characters, permissive 18+ content rules, and the option to connect outside language models through a proxy. It is one of the largest platforms in this category, which is exactly why its paperwork deserves a real read.

Who runs Janitor AI, and where your data goes

The policy’s own first line answers the operator question: “JanitorAI Inc. (‘JanitorAI,’ ‘we,’ ‘us,’ or ‘our’) operates the JanitorAI platform.” The payments section names the more interesting entity: purchases are processed by third parties “including Dulova Investments Limited (located at 10-12 Florinis Street, 1065, Nicosia, Cyprus, Company Registration Number HE 477877).”

Beyond payments, the sharing section is standard SaaS plumbing: “trusted third-party companies” for hosting, analytics, payment processing, customer support, and marketing, with access limited to what their service requires. On selling: “We do not sell your Personal Data as defined under the CCPA,” alongside a California section granting the right to know, delete, and opt out of sharing for behavioral advertising.

One practical note on sourcing: janitorai.com currently blocks automated access behind an aggressive firewall, so I read the policy from the Internet Archive’s July 17, 2026 capture of the live page, whose text is the December 11, 2025 version quoted throughout. If you want to verify by hand, the policy link in the site footer works fine in a normal logged-in browser.

Does Janitor AI read or train on your chats?

The policy's Information We Collect section, listing chat conversations and messages as collected User Content

What it collects is explicit. “Content” is defined as “any text, images, characters, personas, chat logs, or other materials you create,” and the collection list includes “User Content: Characters you create, chat conversations, messages, and other content you generate or upload.” Your roleplay is collected data, full stop.

What it does with them is where the policy goes quiet. In the entire document, the words “train,” “model,” and “AI provider” never appear in a data-use context. There is no clause saying chats train models, and no clause saying they do not. By the standard I use on every review, that is an unclear, not a pass: the absence of a promise is not a promise. Retention follows the same pattern: data is kept “only for as long as necessary,” with deletion or anonymization “when data is no longer needed,” which is a framework rather than a number.

Using a proxy? Who else sees your chats

This is the question none of the pages ranking for this search cover, and it is the one with real teeth. The moment you connect an outside model, every message in that chat is sent to the proxy provider’s servers under that provider’s privacy terms, not Janitor’s. Janitor’s policy does not mention proxied chats at all; the beginner threads show users assuming “the chats stay on JAI’s end as usual,” which is true of storage and false of processing.

So the safety of a proxied Janitor session is really the safety of your provider. A major provider with a published data policy is one thing; a shared key from a stranger, or a “free proxy” link out of a comment section, is your entire roleplay in an unknown party’s logs. My proxy guide carries the same warning with the setup details.

Has Janitor AI ever been hacked?

No Janitor AI entry exists in Have I Been Pwned’s breach database as of July 26, 2026, and my research found no credible breach report. Worth knowing for calibration: the same database confirms the 2024 breach of Muah AI, a companion platform whose 1.9 million accounts, including prompt content, were exposed. The category attracts attackers because the data is blackmail-shaped; Janitor’s clean record so far is genuinely good news, not a reason to reuse your main email.

Have I Been Pwned's entry for the 2024 Muah AI breach, 1.9 million accounts; Janitor AI has no entry

Is Janitor AI safe for NSFW roleplay?

The policy’s age line is unambiguous: “Our Platform is not intended for individuals under the age of 18. We do not knowingly collect Personal Data from anyone under 18,” with prompt deletion if underage data is found. Most pages ranking for this query are written for parents deciding about teenagers; this one is for the adults the platform is actually for. For an adult, the NSFW question reduces to the two answers above: the operator collects your chats with an unclear training stance, and proxied chats add a second company to the audience. Neither is unusual for this category; both are worth knowing before your roleplay gets personal.

What I’d check before you start

  • Sign up with a clean email. Not the one attached to your name and workplace; the Muah breach is the case study for why.
  • Keep identity out of prompts. Real names, faces, and locations do not belong in collected User Content anywhere, Janitor included.
  • Pick your proxy provider like it can read your chats, because it can. Published data policy or no key.
  • Know the deletion path. The policy grants deletion rights; account deletion requests go through the platform, and the retention language means backups may lag.
  • Assume a human could someday read what you type. The policy’s security and legal-compliance clauses make that possible in principle on every platform of this kind.

If you have used JanitorAI, my alternatives page sorts the escape routes; if you are staying, the proxy guide and free models list are the practical companions to this read.

Questions people ask

JanitorAI FAQ

Is Janitor AI safe to use?

Reasonably, with two open questions. The policy is a normal, competently drafted document: no data sales under CCPA definitions, deletion rights, 18+ only. The open questions are that it never says whether chats train models, and it never addresses where proxied chats go. No breach of Janitor appears in Have I Been Pwned as of July 26, 2026.

Does Janitor AI read your chats?

Its policy explicitly collects chat conversations as User Content, and standard clauses allow processing for security and legal compliance, so treat chats as readable in principle by the operator. Whether any human routinely reads them is not something the policy answers.

Is Janitor AI safe from hackers?

No Janitor AI breach appears in Have I Been Pwned as of July 26, 2026, and no credible breach report surfaced in my research. For contrast, Muah AI, another companion platform, has a confirmed 2024 breach of 1.9 million accounts in the same database. Absence of a recorded breach is a good sign, not a guarantee.

Who owns Janitor AI?

The privacy policy is issued by JanitorAI Inc., which operates the platform. Payments are processed through named third parties including Dulova Investments Limited, a Cyprus-registered company at 10-12 Florinis Street, Nicosia, registration HE 477877, per the policy's own payment section.

Keep reading

The AI companion apps I've paid for and tested

Research tells you what the documents say. The reviews below are where I put my own card on file and found out; the rest keeps you inside this app's file.

Hi, I'm Sam.

I test AI companion apps with my own subscriptions and read the policies nobody else finishes. Forget about love. I'm here for the data.

Stay up to date, once a week.