Justin McKelvey

Justin McKelvey

Fractional CTO · 15 years, 50+ products shipped

AI for Business 5 min read

Is DeepSeek Safe? (2026): What Its Privacy Policy Actually Says, Where Your Data Goes, and the Two Ways to Use It Anyway

Is DeepSeek safe? The answer is in its own policy

As of September 2026: DeepSeek is safe for anything you would post in public and unsafe for anything you would not, and you do not have to take my word for it, because DeepSeek's privacy policy says so in plain English. The service is provided by Hangzhou DeepSeek Artificial Intelligence Co., Ltd., registered in China; it collects your prompts, account data, device model, operating system, IP address, and approximate location; it stores that data in the People's Republic of China; and it uses it to train its models unless you opt out. The model is excellent and the price is close to zero, which is exactly why this question gets asked after the team has already been using it for a month.

Everything below about DeepSeek's data handling is quoted from the English privacy policy published at deepseek.com, last updated February 10, 2026, and read today. The API prices are from DeepSeek's developer pricing page, also today. Government restrictions are carried over from my is DeepSeek free page and marked as reported. I am a fractional CTO, not a lawyer; this is a technology read of a vendor's terms.

What DeepSeek collects, in its own words

The policy sorts what it collects into three buckets. Data you provide: your account details, "User Input" (the prompts, uploads, and chat history), and anything you send when you contact them. Data collected automatically: "Device and Network Personal Data" including "your device model, operating system, IP address," plus log data, cookies, and "your approximate location based on IP address." Data from other sources, which includes publicly available data used "to train our models." It then states the services "are not designed or intended to process sensitive Personal Data" and that "you should not provide sensitive Personal Data to the Services, whether about yourself or other individuals." That last sentence is the vendor telling you not to paste the client file. Believe them.

Where the data goes: the People's Republic of China

The storage line is unambiguous: "To provide you with our services, we directly collect, process and store your Personal Data in People's Republic of China." The policy adds that your data "may be stored on a server located outside of the country where you live," which for a US business is the same statement from the other direction. Retention is "for as long as necessary to provide our Services and for the other purposes set out in this Privacy Policy," with no fixed period. If your customer contract, your cyber-insurance questionnaire, or your industry regulator asks where customer data is processed, this is the answer you would have to give.

What the data is used for: training, unless you opt out

Under "How We Use Your Personal Data," the policy lists "To improve and develop the Services and to train and improve our technology, such as our machine learning models and algorithms," and describes doing it "by monitoring interactions and usage across your devices." It also lists sharing with service providers for "foundation model training and optimization." Then, under your rights, it grants "the right to opt-out of using your Personal Data for training our models or optimizing our technologies." So the mechanism is: training is on by default, you can turn it off, and turning it off changes the use, not the location. Compare that with a workspace plan whose default is the other way around, which is the whole point of the Claude Team plan for a company that handles other people's information.

Is DeepSeek banned? What governments have done, as reported

Several have restricted it, and I list this as reported rather than as a current legal fact: Italy blocked the app, Australia and Taiwan barred it on government devices, South Korea paused new downloads pending privacy changes, and several US federal agencies prohibited it on work systems. None of those decisions apply to a private business in Texas. What they tell you is that data-protection professionals read the same policy quoted above and reached the conclusion this page reaches, for their own devices.

The two ways to use DeepSeek anyway

One: use the hosted version for public material only. Drafting a blog post, summarizing a public filing, translating a product description, exploring a coding idea on a throwaway repo: none of that is sensitive, and DeepSeek's chat is free with no paid tier at all. The API is nearly free too: as of today, deepseek-flash costs $0.15 per million input tokens and $0.60 per million output during off-peak hours, $0.30 and $1.20 during weekday peak (01:00 to 04:00 and 06:00 to 10:00 UTC), with cache hits at $0.003 per million; the older V4 Pro model retires on September 14, 2026 and routes to Flash at the Flash price. For a batch job on data you would happily publish, it is the cheapest capable model on the market.

Two: run the weights yourself. DeepSeek releases its models under the MIT license, which permits commercial use and self-hosting. A model running on infrastructure you or a US cloud provider control never contacts Hangzhou; the privacy policy above governs DeepSeek's services, not a copy of the weights on your server. The safety question then moves to your host's terms and your own operations, which is a question you can actually answer. This is a technical-team option, not a checkbox, and it is the only way to get DeepSeek's quality and price without DeepSeek's terms.

The rule for a business, and the vendor comparison

The rule I install with clients: an AI tool is allowed to see the data its terms allow you to show it. DeepSeek's hosted terms allow public material. Claude Team, Enterprise, and the API do not train on your inputs by default, and Enterprise carries a HIPAA-ready offering on Anthropic's plan table, which is why regulated work lands there; the walkthrough is on is Claude HIPAA compliant. The other Chinese-built assistant your team will ask about next is Kimi, and the same three questions (who is the controller, where is it stored, is training on by default) are the ones to ask before it touches a client file; my read of Kimi against Claude is on Kimi vs Claude.

The business-owner answer

Is DeepSeek safe? Read the policy, then decide, and the policy says: stored in China, trained on unless you opt out, not designed for sensitive data. Let your team use it for public material, run the MIT-licensed weights yourself if you have the engineers, and put the people who handle customer information on a plan whose default is no training. If you want that set up rather than adjudicated, the Claude for Small Business install configures the workspace, the no-training seats, and the first three workflows in about two weeks from $4,500; the $397 Playbook is the do-it-yourself version.

Free Resource Justin McKelvey

Get the Free AI Content Toolkit

The exact system I use to turn one idea into a month of content — atomization framework, voice template, prompt library, weekly system.

Frequently Asked Questions

Is DeepSeek safe to use?
For public material, yes; for anything private, no. As of September 2026 DeepSeek's own privacy policy, last updated February 10, 2026, says the service is provided by Hangzhou DeepSeek Artificial Intelligence Co., Ltd., a company registered in China, that it collects your prompts, account details, device model, operating system, IP address, and approximate location, that it stores that data in the People's Republic of China, and that it uses it to train and improve its models unless you exercise the opt-out. The chat is capable and free. The terms are the problem, and they are the vendor's own words, not a rumor.
Does DeepSeek store your data in China?
Yes, per the policy. The exact line is: "we directly collect, process and store your Personal Data in People's Republic of China." The policy also notes that your data may be stored on a server located outside the country where you live. That covers the hosted products: the chat at chat.deepseek.com, the mobile apps, and the API. It does not cover the open-weight models you run yourself, which never contact DeepSeek's servers at all.
Does DeepSeek train on your conversations?
By default, yes. The policy lists "to train and improve our technology, such as our machine learning models and algorithms" as a purpose, says it monitors interactions and usage across your devices to do it, and says it may share data with service providers for "foundation model training and optimization." It also grants "the right to opt-out of using your Personal Data for training our models." So the honest description is: training is on unless you turn it off, and opting out does not change where the data is stored.
Is the DeepSeek API safe for a business?
Same terms, so same answer. The API is cheap (deepseek-flash is $0.15 per million input tokens and $0.60 per million output off-peak as of September 2026, double that during weekday peak hours, and even offers an Anthropic-format endpoint), but it runs on the same hosted service under the same privacy policy: data stored in China, used for training unless opted out. For a workflow that touches customer records, financials, or anything under a contract, that is disqualifying regardless of price. For a batch job on public data, it is a bargain.
Is DeepSeek banned?
In places, as reported. As of my last verification, Italy blocked the app, Australia and Taiwan barred it on government devices, South Korea suspended new downloads pending privacy changes, and several US federal agencies prohibited it on work systems. None of that binds a private company in the US, and I state it as reported rather than as legal advice. The useful reading is not "it is banned" but "the people whose job is data protection looked at the same policy you can read and said no on their own devices."
What is a safer alternative to DeepSeek for client data?
Either run DeepSeek's open weights on a host whose terms you control, or use a vendor whose terms already say no training. The weights ship under the MIT license, so a technical team can run them on infrastructure that never talks to Hangzhou; the model is then as safe as the host. For a non-technical business the practical answer is a workspace plan with the no-training default built in: Claude Team is $20 a seat billed annually, does not train on your data by default, and has a HIPAA-ready Enterprise tier for regulated work. You give up free. You get terms you can put in front of a client.

More on AI for Business

Kimi vs Claude (2026): The $0 Chat, the $3 Flagship API, and the Terms That Decide It for a Business

Kimi vs Claude for a business, as of September 2026: Kimi's free tier is the most generous chat in the category and its K3 flagship carries a 1M-token window at $3 in / $15 out per million tokens; Claude's Sonnet 5 is $2 / $10 with a 200k window, and its Team plan ships no-training terms and admin controls at $20 a seat. On price the two are closer than the hype says. The decision is the terms, the workspace, and what you put in the box.

7 min

Is Copilot Free? (2026): Which of the Five Copilots Costs Nothing, Which Costs $21 to $30 a Seat, and Which One Your Business Actually Wants

Is Copilot free? Two of them are. The Copilot in Windows, Edge, and the Copilot app costs nothing, and GitHub Copilot has a free tier. The one a business is usually asking about, Microsoft 365 Copilot inside Word, Excel, Outlook, and Teams, is a paid add-on: $30 a user a month on enterprise plans and, as reported, $21 on the small-business plans with an $18 promotion through September 2026. Here is the whole map, what the free one can and cannot touch, and when the $20 Claude seat is the better buy.

6 min

Claude vs Gemini (2026): Which Is Better for a Small Business, What Each Actually Costs, and the Price Change Google Has Already Scheduled

Claude vs Gemini for a business, as of September 2026: Claude if your work is documents, writing, and agents (Cowork, Claude Code) and you want a $20 Team seat with no-training terms; Gemini if your company lives in Gmail, Docs, and Sheets, where it is already inside the Workspace plan you pay for, or if $4.99 a month is the budget. Every price from the vendors' own pages, including the API increase Google has scheduled for January 1, 2027.

6 min

AI for Lawyers (2026): The Four Jobs It Does, the One It Never Does, and Which Plan Keeps Client Data Out of a Training Set

Most "AI for lawyers" advice is written by a company selling an AI lawyer. Here is the small-firm version from someone who installs this for owner-led businesses: the four jobs a general assistant does every day for an attorney, the citation job it must never do unsupervised, the plan choice that decides whether client material is training data, and when a legal-specific tool is worth its sales call.

7 min
Justin McKelvey, Fractional CTO and AI consultant in Austin, TX

Written by

Justin McKelvey

Fractional CTO & AI consultant in Austin, TX. 15 years building software, 50+ products shipped, $53M+ in client revenue generated. I help $1M–$50M founders ship production software and automate operations with AI — without hiring a full-time executive team.

Work with me

If this was useful, here are two ways I can help: