Gemini for Workspace — privacy & data policy

Provider: Google. PromptPrivacy score: 95/100. Last verified July 26, 2026.

What happens to your data?

Your data remains within your organization's secure boundary and is not used to train Google's AI models. Google processes your information only to provide the requested AI services, and you retain control over how long your interaction history is stored.

Does it train on your data?

User prompts and content are not used to train generative AI models without prior permission or instruction from the customer.

Can you opt out?

Yes, admins can disable Gemini features, and users can manually delete their conversation history or turn off specific smart features.

Data retention

Gemini in Workspace: 90 days to indefinite (admin determined); Gemini app: up to 36 months (admin determined); Gemini Notebook: not retained after session ends.

Encryption & security

The policy states Gemini brings enterprise-grade security and mentions Client-side encryption (CSE) as a way to restrict access. It also lists certifications including SOC 1/2/3, ISO 27001, 27701, 27017, 27018, and 42001.

Is it safe for work?

Yes, this service is designed for enterprise use with robust data protection, compliance certifications (SOC, ISO, HIPAA, FedRAMP), and administrative controls.

Source policy: https://support.google.com/a/answer/15706919