DNA privacy buyer’s guide
Private DNA analysis: how to compare raw-data services
The most private option is not simply the service with the shortest policy. Compare what leaves your device, what remains after the report is built, who else can use it, and whether deletion removes both the original file and derived data.
Sources and policies reviewed 26 August 2026Start with the data flow, not the slogan
A raw DNA export can contain hundreds of thousands of genotype calls. The Federal Trade Commission advises people to check who can access genetic information, how it is protected, and how a company may use it. NHGRI makes a second point that is easy to miss: after you download your data and send it elsewhere, the original testing company is no longer responsible for that copy.
Before uploading, get clear answers to these five questions:
- Upload: does the whole raw file leave your device, or is it filtered locally first?
- Retention: are the raw file, a report, derived markers, or all three kept?
- Secondary use: can data be sold, shared, used for research, or used to train a model?
- Access: can staff, app developers, laboratories, or other processors see it?
- Deletion: can you delete the account and every retained genetic artifact without contacting support?
“De-identified” is useful, but it is not the same as harmless
Removing a name and email lowers risk, but genetic information can still be unusually identifying. The UK Information Commissioner’s Office explains that a set of genetic markers may still identify a person even when the name is gone. Treat the privacy policy, retention design, and account controls as one system rather than accepting a single “anonymous” label.
How DNA Layer handles the file
DNA Layer reads the original consumer DNA file locally in the browser. The original file is not retained. Only supported marker derivatives needed for analysis cross the boundary, and the resulting derived findings are stored so the user can return to the layer. DNA Layer does not sell genetic data, and users can delete their stored results and account data.
That is a specific architecture, not a promise that analysis is anonymous or risk free. Derived findings are still sensitive. They are kept private and account-scoped, and the exact commitments are set out in the privacy policy.
Privacy does not prove medical validity
A service can have strong privacy controls and still overinterpret a consumer file. Raw genotyping data is not comprehensive clinical sequencing. NHGRI warns that third-party interpretation can produce false positives, so a result that could affect treatment, screening, medication, or reproductive planning needs suitable clinical confirmation.
For a broader product comparison, see the guide to the best 23andMe raw-data analysis tools for different goals.
Frequently asked questions
What makes a DNA analysis service private?
Look beyond a general privacy claim. Check whether the original file leaves your device, what derived data is retained, who can access it, whether it is sold or used for research or advertising, how deletion works, and what happens after an acquisition or closure.
Is de-identified DNA data anonymous?
Not necessarily. Genetic data can remain identifying because a genome contains many distinctive markers. The UK Information Commissioner’s Office treats genetic data used to identify a person as special-category data, including where a name has been removed but the markers remain sufficiently distinctive.
Does DNA Layer upload my original raw DNA file?
No. DNA Layer reads the original file locally in your browser and does not retain it. It sends only the supported marker derivatives needed to build your layer, then stores the resulting derived findings so you can return to them.
Can a private DNA report diagnose a condition?
No. Privacy and clinical validity are separate questions. Consumer raw-data interpretations can be incomplete or false positive, so important findings may require confirmation through an appropriate clinical laboratory and review by a qualified professional.