Genspark
MainFunc Inc. (Genspark) · genspark.ai
Genspark's Super Agent runs entirely on Genspark's cloud (hosted on Microsoft Azure) with a proprietary multi-model orchestration layer, and it documents no agent export, audit log or verifiable runtime. Owners do get some controls: custom MCP servers, saved skills and custom agents, disconnectable integrations, an explicit confirmation before AI phone calls, and self-serve deletion with a 30-day window. Overall the agent is rented, not owned.
- Custom MCP servers can be added from the Tools menu
- Reusable skills and custom Super Agents
- Explicit 'Place Call' confirmation for Call For Me
- Self-serve deletion; account data removed within 30 days
- Policy states no sale of data or targeted advertising
- No documented bulk or agent export; portable copy only on request
- Closed, cloud-only runtime and model routing
- System instructions not disclosed; no complete action record
- No local or open-weight model option for the Super Agent
- Prompts and outputs used to improve services, with no documented opt-in
All 34 findings
Genspark AI Workspace 6.0 (Super Agent, SecondBrain, AI Drive, Call For Me) as documented in September 2026 under the privacy policy of July 24, 2026. Free and paid individual plans.
Portable · Can you leave, and take the whole agent with you?
0%- P1Round-trip portability
Incomplete, delayed and not restorable: no self-serve export of the agent is documented, a copy of personal data comes only by email request, and there is nothing to import; only individual outputs can be downloaded.
Fail - P2Complete export
No export containing the agent's configuration, instructions, memory, history, credentials or logic is documented; only individual deliverables and some SecondBrain recordings can be downloaded.
Fail - P3Independent execution
The Super Agent runs only in Genspark's cloud sandbox. No runtime is distributed for independent execution.
Fail - P4Identity continuity
Agent identity is the Genspark account, and nothing lets others verify it is the same agent without Genspark.
Fail - P5No kill switch
The agent depends on Genspark's servers, account and credits, so the provider can suspend or degrade it.
Fail - P6Capability independence
Tools (80+ in-house), the sandbox, SecondBrain memory, integrations and scheduling are Genspark platform features, and none of them survive a move to an owner-chosen model or runtime.
Fail
Transparent · Can you see everything the agent is, with ordinary tools?
8%- T1Open storage format
Agent state is stored on Genspark's Azure-hosted servers in an undocumented format, and no open-format export of that state is documented.
Fail - T2No hidden instructions
Genspark does not disclose the system instructions and orchestration prompts its Mixture-of-Agents layer places in model context.
Fail - T3No shadow memory
The privacy policy says Genspark automatically collects prompts and outputs and uses information for data analysis and service improvement, and it shares usage data with analytics vendors such as Google Analytics.
Fail - T4Complete action history
Conversation and task history and Call For Me transcripts are visible in the product, but no complete record of tool calls is documented as available to the owner or exportable.
Partial - T5Readable logic
The orchestration logic is proprietary, and the storage format of saved skills and custom agents is not documented as readable source.
Fail - T6No third-party influence channel
The policy states that Genspark does not sell personal data or use it for targeted advertising. It does not say whether partners or merchants can influence agent context or rankings.
Unverified
Auditable · Can you reconstruct exactly what the agent did?
0%- A1No unrecorded actions
No durable record of every consequential action is documented, nor that an action which cannot be recorded does not proceed.
Fail - A2Tamper evidence
No action record is documented whose edits or deletions would be detectable.
Fail - A3Separation from the audited
Genspark does not document whether the agent can alter or delete records of its own actions.
Unverified - A4Readable with ordinary tools
No audit trail is available outside the Genspark UI.
Fail - A5Corroborated interactions
No record of the agent's exchanges with other agents or services is documented that could be matched against a counterpart's record.
Fail
Verifiable · Can you prove the agent runs what it claims?
0%- V1Open, reproducible runtime
The Super Agent runtime is proprietary. Genspark's open-source GenOffice project (Apache-2.0) is a separate office suite, not the agent runtime.
Fail - V2Active config is inspectable config
Model routing and agent configuration are chosen automatically server-side and are not visible to the owner.
Fail - V3Attributable messages
Outbound actions (email, calls, integrations) go through Genspark-held accounts and tokens; recipients have no way to verify they came from this agent under the owner's authority.
Fail - V4Independently checkable record
No action record with checkable integrity exists, so nothing can be verified with open tools.
Fail - V5Comparable state
State is held server-side and not exposed, so the owner cannot verify whether it changed between two points in time.
Fail
Modifiable · Can you change anything, without asking?
33%- M1Instructions
Owners can describe and refine custom Super Agents and skills in natural language. Genspark auto-configures their architecture, and platform instructions are not editable.
Partial - M2Memory
SecondBrain recordings can be reviewed, edited, downloaded or deleted, and integrations can be disconnected. Item-level editing of all derived memory is not documented.
Partial - M3Logic
Owners can save workflows as reusable skills and build custom Super Agents. The core agent logic cannot be modified.
Partial - M4Tools and permissions
Owners can add custom MCP servers (Streamable HTTP, with custom headers) from the Tools menu and can connect or disconnect integrations. Fine-grained scoping or removal of built-in tools is not documented.
Partial - M5Model choice
The Super Agent routes tasks automatically across Genspark-selected hosted models, with model-tier options in some areas. Local or open-weight models cannot be used.
Fail - M6No gatekeeping
Use is metered by credits, and limits such as file size (500 MB free versus 1 GB paid) and higher model tiers depend on the paid plan.
Fail
Controllable · Is your word final?
25%- C1Communication boundaries
Integrations require explicit authorization and can be disconnected, but owners have no documented way to decide which recipients or channels the agent may use, enforced outside the model.
Unverified - C2Approval gates
Call For Me requires the owner to press 'Place Call', and scheduled calls can be cancelled. Owner-configurable approval gates for other Super Agent actions are not documented.
Partial - C3Immediate halt
Scheduled calls can be cancelled beforehand. The desk review found no documentation of an immediate halt for running Super Agent tasks.
Unverified - C4Data sovereignty
Prompts and outputs are collected automatically and used to evaluate and improve the service, and usage data goes to analytics vendors. The policy documents no opt-in for use in model improvement, though it excludes Google Workspace data from model training.
Fail - C5Credential custody
Integrations need explicit OAuth authorization and can be disconnected at any time. Tokens are held by Genspark and cannot be inspected or exported by the owner.
Partial - C6Full deletion
Self-serve 'Delete User' permanently removes history, content, settings and files, and the policy commits to deleting account data within 30 days. Other personal data may be kept for undefined 'legitimate business purposes'.
Partial
Vendors and the public can dispute any finding with evidence. Disputes and their resolutions are published.