So the questions is about the threat model - how likely or possible it is to use that data against you?
(2) They have a privacy policy, so it boils down to (a) do you like it? and (b) do you trust them to follow it?