Privacy and Data Security at Shortcut
How Shortcut handles your data: the Pro-only "Help improve Shortcut" setting decides whether individual Pro conversations help train our models, and you can turn it off at any time

Posted by
Nico Christie
Financial models contain your most sensitive business information: M&A targets, valuation assumptions, strategic plans, proprietary methodologies. Trusting an AI tool with this data requires absolute certainty about how it's handled.
Shortcut is built with privacy at its core. Your files and workbooks are never shared with other users. For individual Pro accounts only, one setting, “Help improve Shortcut”, decides whether your conversations are also retained to test, debug and improve our models and products and shared with partners working with us on those improvements. It is on by default and you can turn it off at any time under Settings → Security & Privacy.
Pro Accounts: One Setting Decides
“Help improve Shortcut” on (the default)
- • Conversations with the agent may be retained to improve and train our models
- • Data may be shared with partners working with us on those improvements
- • Your models are never shared with anyone else
- • Teams and Enterprise data is never used for training
“Help improve Shortcut” off
- • Conversations you start afterwards are processed only to deliver your task
- • A conversation in which any part ran while it was on stays retained in full, including later messages
- • Turn it off any time under Settings → Security & Privacy
- • Same control on web, Excel, and desktop; Google Sheets add-in conversations are never retained for training
How We Improve Our Models
Ex-Banker Benchmark Team
We employ former analysts from Goldman Sachs, Morgan Stanley, KKR, Blackstone, and other top firms who create realistic financial modeling tasks and manually build "gold standard" solutions to every level of detail.
Proprietary Agentic Verification
Specialized AI systems assess Shortcut's performance at scale: formula validators, formatting verifiers, completeness checkers, and accuracy auditors run on every output.
Security Measures
Encryption
- • All data encrypted in transit (TLS 1.3)
- • All data encrypted at rest (AES-256)
- • Encryption keys via AWS KMS with rotation
Compliance
- • SOC 2 Type II compliant
- • GDPR compliant for European users
- • CCPA compliant for California users
- • Regular third-party security audits
Full Privacy Policy
For complete details on data handling, retention, and your rights, see our full privacy policy at: https://shortcut.ai/privacy
Questions about privacy or security?
Contact Security Team