Azure OpenAI Service — privacy & data policy

Provider: Microsoft. PromptPrivacy score: 91/100. Last verified August 26, 2026.

What happens to your data?

Your data is processed within your designated Azure cloud boundary and is never shared with OpenAI or other third parties. Prompts and completions are stateless and not used to train foundation models. Unless modified abuse monitoring is approved, automated classifiers and authorized Microsoft personnel may review flagged requests to detect policy violations.

Does it train on your data?

Customer data, prompts, completions, embeddings, and uploaded training datasets are never used to train, retrain, or improve Microsoft or third-party base foundation models without explicit customer instruction or permission.

Can you opt out?

Base model training is disabled by default for all users. Managed customers can also apply to opt out of abuse monitoring data storage and human review.

Data retention

Inferencing is stateless and does not store prompts or completions in the model. Stateful features (such as Assistants threads, batch data, and custom fine-tuned models) retain data in the customer's Azure resource until deleted by the user. Unless an exemption for modified abuse monitoring is approved, potential abuse monitoring logs are stored within the customer's designated geography.

Encryption & security

Stored data is encrypted at rest with AES-256 encryption by default, and customer-managed keys (CMK) are supported for most features. Personnel accessing flagged abuse data must use Secure Access Workstations (SAWs) and Just-In-Time (JIT) manager approval.

Is it safe for work?

Yes. Azure OpenAI provides enterprise-grade privacy controls, AES-256 encryption, zero training on customer data by default, and compliance governance under the Microsoft Products and Services Data Protection Addendum.

Source policy: https://learn.microsoft.com/en-us/legal/cognitive-services/openai/data-privacy