Security Issues — Products Ranked

Which products have the most security concerns? Privacy and data handling issues ranked.

79 complaints across 69 products

#1
Google Drive

Google Drive

45/100

No zero-knowledge encryption - Google scans and accesses your files

Gemini AI caught scanning private files without user permission

2 issuesView
#2
Zoom

Zoom

55/100

History of security issues and misleading encryption claims

Data sharing with Facebook and third parties

2 issuesView
#3
Discord

Discord

40/100

Privacy concerns - PC scanning and data collection

Data breaches and security incidents

2 issuesView
#4
Deel

Deel

35/100

Deel card fraud with slow refund process

Corporate espionage lawsuit and regulatory investigations

2 issuesView
#5
CapCut

CapCut

25/100

Serious privacy and data collection concerns

US ban risk due to ByteDance ownership

2 issuesView
#6
VS Code

VS Code

60/100

Telemetry sends data to Microsoft by default

Not truly open source in distributed form

2 issuesView
#7
Cursor

Cursor

45/100

Remote code execution vulnerabilities documented

Enterprise data privacy concerns

2 issuesView
#8
Cohere

Cohere

50/100

Copyright lawsuits create legal uncertainty

Safety issues with long conversations

2 issuesView
#9
Perplexity

Perplexity

40/100

Multiple copyright lawsuits from major publishers

Ignores robots.txt and scraping restrictions

2 issuesView
#10
Stable Diffusion

Stable Diffusion

80/100

Copyright lawsuits create commercial uncertainty

Misuse for problematic content generation

2 issuesView
#11
Notion

Notion

45/100

No end-to-end encryption - Notion can read your notes

1 issueView
#12
Slack

Slack

50/100

No end-to-end encryption - data breaches have exposed sensitive messages

1 issueView
#13
Trello

Trello

45/100

Insufficient permission controls for teams

1 issueView
#14
ClickUp

ClickUp

50/100

Attachments and forms publicly accessible without authentication

1 issueView
#15
Todoist

Todoist

65/100

Account deletion and spam email issues

1 issueView
#16
Evernote

Evernote

35/100

Data export is extremely difficult - notes held hostage

1 issueView
#17
Roam Research

Roam Research

55/100

Proprietary format makes data export problematic

1 issueView
#18
Craft

Craft

65/100

No iCloud sync option - data on company servers

1 issueView
#19
Dropbox

Dropbox

55/100

No zero-knowledge encryption - Dropbox can access your files

1 issueView
#20
Box

Box

90/100

Zero-knowledge encryption requires expensive KeySafe add-on

1 issueView
#21
Mailchimp

Mailchimp

60/100

Accounts suspended without clear explanation

1 issueView
#22
ConvertKit

ConvertKit

50/100

GDPR compliance concerns with data deletion delays

1 issueView
#23
Klaviyo

Klaviyo

55/100

Accounts suspended without warning or explanation

1 issueView
#24
Brevo

Brevo

45/100

Accounts blocked without explanation or warning

1 issueView
#25
MailerLite

MailerLite

55/100

Accounts suspended without warning for vague policy violations

1 issueView
#26
GetResponse

GetResponse

45/100

SSL certificate issues causing Google Ads suspension

1 issueView
#27
Shopify

Shopify

60/100

No due diligence on merchants - fraud concerns

1 issueView
#28
Squarespace

Squarespace

70/100

Personal info exposed in page source code

1 issueView
#29
Webflow

Webflow

65/100

GDPR compliance concerns

1 issueView
#30
WordPress

WordPress

45/100

92% of breaches come from plugins and themes

1 issueView
#31
Substack

Substack

60/100

Content moderation controversy eroded trust

1 issueView
#32
beehiiv

beehiiv

55/100

Spam and abuse reports go unaddressed

1 issueView
#33
Gumroad

Gumroad

40/100

No real protection for sellers against fraud

1 issueView
#34
PayPal

PayPal

70/100

Scammers exploit buyer protection loopholes

1 issueView
#35
Braintree

Braintree

70/100

Fraud prevention tools cause payment failures

1 issueView
#36
BambooHR

BambooHR

65/100

Emails appear as external - phishing vulnerability

1 issueView
#37
Miro

Miro

70/100

Complex permission management for teams

1 issueView
#38
Postman

Postman

45/100

Privacy concerns - API data synced to cloud by default

1 issueView
#39
Mixpanel

Mixpanel

50/100

November 2025 data breach affected multiple companies

1 issueView
#40
Lattice

Lattice

50/100

1:1 meeting notes visible to HR despite privacy claims

1 issueView
#41
Netlify

Netlify

55/100

No built-in DDoS protection on lower tiers

1 issueView
#42
Auth0

Auth0

80/100

MFA costs extra - ~1000% increase for basic security

1 issueView
#43
Cloudflare

Cloudflare

85/100

IP and DNS blocking causes access issues

1 issueView
#44
Workday

Workday

55/100

August 2025 data breach exposed 70 million records

1 issueView
#45
Zenefits

Zenefits

50/100

State compliance issues with incorrect implementation

1 issueView
#46
Culture Amp

Culture Amp

75/100

360 feedback anonymity concerns

1 issueView
#47
Ashby

Ashby

80/100

Privacy concerns with email scraping practices

1 issueView
#48
Adobe Photoshop

Adobe Photoshop

55/100

Terms of service controversy over content access

1 issueView
#49
InShot

InShot

40/100

Requires access to ALL photos - privacy concerns

1 issueView
#50
Adobe Lightroom

Adobe Lightroom

55/100

Photos used for AI training by default

1 issueView
#51
Affinity Designer

Affinity Designer

70/100

Concerns about Canva ownership and AI data usage

1 issueView
#52
Affinity Photo

Affinity Photo

70/100

Forum shutdown and Discord migration concerns

1 issueView
#53
Atom

Atom

10/100

Contains unpatched security vulnerabilities

1 issueView
#54
GitHub

GitHub

85/100

Microsoft ownership concerns

1 issueView
#55
GitHub Copilot

GitHub Copilot

55/100

Copyright and license concerns unresolved

1 issueView
#56
Replit

Replit

25/100

No meaningful AI guardrails or access controls

1 issueView
#57
GitHub Codespaces

GitHub Codespaces

55/100

RoguePilot security vulnerability exposed tokens

1 issueView
#58
Railway

Railway

55/100

No built-in edge protection or WAF

1 issueView
#59
Vultr

Vultr

45/100

2024 ToS controversy over data rights

1 issueView
#60
AWS

AWS

85/100

Unauthorized charges from compromised credentials

1 issueView
#61
Firebase

Firebase

70/100

Security rules have a steep learning curve

1 issueView
#62
Typesense

Typesense

65/100

GPL license limits commercial flexibility

1 issueView
#63
OpenAI

OpenAI

75/100

Data privacy concerns - training on user data

1 issueView
#64
Anthropic Claude

Anthropic Claude

75/100

Account bans for 'suspicious activity' without review

1 issueView
#65
Google Gemini

Google Gemini

35/100

Aggressive data collection and privacy concerns

1 issueView
#66
Mistral AI

Mistral AI

55/100

Vision models failed critical safety tests

1 issueView
#67
ChatGPT

ChatGPT

45/100

Conversations used for training by default

1 issueView
#68
Midjourney

Midjourney

50/100

Copyright lawsuits create uncertainty for commercial use

1 issueView
#69
Leonardo.ai

Leonardo.ai

60/100

Free tier generations are public

1 issueView