OpenAI Reaffirms Zero Data Retention for API Customers, Previews Private Safety Processing
OpenAI has reaffirmed its Zero Data Retention (ZDR) policy for eligible API customers using frontier models and previewed a new feature called Private Safety Processing, which the company claims allows safety monitoring without retaining customer data.
OpenAI has reaffirmed its commitment to Zero Data Retention (ZDR) for eligible API customers accessing its frontier models, and previewed a new capability called Private Safety Processing designed to let the company run safety checks without storing customer inputs or outputs.
Zero Data Retention is an existing OpenAI API policy that lets qualifying enterprise customers process requests without OpenAI storing prompts or completions after the response is returned. Eligibility has historically been limited to organizations that meet specific usage and compliance criteria, determined on a case-by-case basis through OpenAI's sales team.
What's new
According to OpenAI, the reaffirmation clarifies that ZDR remains available for its most capable models — the frontier tier — as those models are updated and deployed. The company also previewed Private Safety Processing, which it describes as a method for detecting policy violations and safety issues in API traffic without OpenAI retaining the underlying customer data used to make that determination.
OpenAI has not disclosed technical details on how Private Safety Processing works — whether it relies on on-device or client-side classification, ephemeral in-memory processing, cryptographic techniques, or some other architecture. No benchmark data, false-positive rates, or latency figures were provided in the announcement.
Pricing for ZDR-eligible API access is not disclosed publicly; access has typically required direct negotiation with OpenAI's enterprise sales organization rather than standard self-serve API pricing.
Why this matters for enterprises
Data retention policies are a recurring blocker for regulated industries — finance, healthcare, legal, and government — considering deployment of frontier LLMs via API. Standard OpenAI API usage, outside of ZDR agreements, has historically involved temporary retention of inputs and outputs for abuse monitoring, typically up to 30 days, before deletion.
The tension OpenAI is attempting to address here is real: safety and abuse monitoring generally requires some visibility into content, which conflicts with strict no-retention requirements from privacy-sensitive customers. Private Safety Processing is OpenAI's proposed answer to that tension, though as a preview, it is not yet generally available and its actual guarantees remain unverified by outside auditors.
Competitors including Anthropic and Google DeepMind have offered their own enterprise data handling commitments, including no-training-on-customer-data guarantees and regional data residency options, so OpenAI's move is best read as a competitive parity play in the enterprise sales cycle rather than a novel technical breakthrough.
What this means
This is a policy and trust-and-safety announcement, not a model release — no new weights, benchmarks, or pricing tiers accompany it. The practical impact will depend entirely on details OpenAI has not yet published: how Private Safety Processing is implemented, whether it can be independently audited, and how broadly ZDR eligibility will actually extend beyond OpenAI's existing enterprise contracts. Until OpenAI publishes technical documentation or third-party audits, enterprise buyers should treat these as commitments to evaluate during contract negotiation rather than settled guarantees.
Related Articles
OpenAI Reaffirms Zero Data Retention for API Customers, Previews New Private Safety Processing
OpenAI has reaffirmed its Zero Data Retention (ZDR) policy for eligible API customers using frontier models and previewed a new capability called Private Safety Processing. The company says the new approach aims to preserve safety monitoring capabilities without requiring data storage.
OpenAI Patches Codex Bug That Let AI Agent Delete Real User Files
OpenAI has shipped a security update for Codex after users reported that GPT-5.6 Sol was autonomously deleting real files instead of temporary ones. The bug stemmed from misused system variables like $HOME pointing cleanup commands at actual home directories.
OpenAI Launches ChatGPT for Teens With Age-Detection Safeguards and Study Mode Defaults
OpenAI has launched ChatGPT for Teens, a version of its chatbot that activates automatically when systems estimate a user is 13-17, applying default safety guardrails and study-focused features. The rollout includes homework shortcut detection, quizzes, learning visualizations, and expanded parental notifications covering eating disorder risk signals.
Google Workspace Grants Gemini Default Access to Gmail, Docs, Calendar, and Chat Data
Google Workspace ships with Gemini's access to Gmail, Docs, Calendar, Chat, Drive, and Meet turned on by default, using real-time retrieval-augmented generation rather than stored training data. Admins can disable these 'Workspace Intelligence Sources' organization-wide through the admin.google.com console, though per-user controls remain limited.
Comments
Loading...