Quick Summary
  • On personal ChatGPT workspaces, new conversations may be used to improve models when “Improve the model for everyone” is enabled; you can switch it off in Data Controls.
  • Turning off training does not remove chats from your history. Temporary Chats are separate: they do not appear in history, do not create memories, are not used for training, and are automatically deleted from OpenAI systems within 30 days.
  • ChatGPT Business, Enterprise, Edu, Healthcare, and the API are covered by different business-data commitments, including no model training on customer content by default.
  • No privacy setting makes it sensible to paste passwords, authentication codes, private keys, unrestricted medical records, or confidential client data into a consumer AI chatbot.

What data can ChatGPT process?

Last verified: July 2026   |   Reading time: 6–10 min

ChatGPT necessarily processes the content you send so it can generate a response. That content can include prompts, uploaded files, images, voice or video input, feedback, and information supplied through connected features. Account details, device information, usage data, and approximate location may also be handled under OpenAI’s privacy policy.

The practical privacy question is therefore not whether data is processed—it must be—but how long it is retained, whether it can be used to improve models, which optional features remember information, and which account rules apply.

Does ChatGPT store your conversations?

Ordinary chats in a personal workspace can remain in your account history until you delete them. OpenAI’s retention documentation says deleted chats are scheduled for deletion from its systems within 30 days, unless the content has already been de-identified and disassociated from your account or must be retained for security or legal reasons.

Archiving is not deletion. It only removes a conversation from the main sidebar while keeping it in the account.

Are conversations used to train AI models?

For ChatGPT Free, Plus, and Pro users in a personal workspace, OpenAI says data sharing for model improvement can be enabled by default, depending on the relevant settings and region. You can opt out for new conversations through Settings → Data Controls → Improve the model for everyone. Chats can remain in history after this switch is disabled, but new conversations are not used to train models under that control.

Feedback is worth treating separately. When you explicitly rate a response, the associated conversation may be handled under the feedback terms shown by the service. Review the current interface before submitting sensitive examples with feedback.

Temporary Chat explained

Temporary Chat is designed for conversations that should not become part of your normal history or memory. OpenAI states that Temporary Chats do not appear in history, do not use or create memories, and are not used to improve models. They are automatically deleted from OpenAI systems within 30 days.

Temporary does not mean invisible or anonymous. OpenAI may retain a copy for up to 30 days for safety purposes, and network administrators, employers, device-management software, browser extensions, or third-party services involved in your workflow may still create their own records.

Memory is a separate privacy control

Memory can allow ChatGPT to carry useful details between conversations. It is distinct from chat history and model-training controls. Turning memory off does not automatically delete saved memories, and deleting a chat does not necessarily remove a memory created from it. To remove remembered information, review the memory-management screen as well as the relevant conversations.

This separation matters: a user may disable model training but still allow personalization, or delete a conversation while leaving a saved memory behind.

Personal plans versus business products

ContextDefault model-training positionMain privacy consideration
Personal ChatGPT workspaceControlled through Data Controls; users can opt out for new chatsCheck training, history, memory, connected apps, and retention separately
Temporary ChatNot used to improve modelsNot in history; deleted within 30 days, with limited safety retention
ChatGPT Business / Enterprise / Edu / HealthcareBusiness content is not used for model training by defaultWorkspace administrators may set access, retention, residency, and compliance rules
OpenAI APIAPI inputs and outputs are not used for training by defaultDevelopers must still secure logs, databases, prompts, and downstream integrations

A business product does not automatically make every workflow compliant. Organizations still need an approved use case, access controls, retention rules, vendor assessment, and a clear policy for regulated or confidential information.

What should you never paste into an AI chatbot?

  • Passwords, one-time codes, recovery phrases, private cryptographic keys, or complete payment-card details
  • Unredacted identity documents or highly sensitive medical records
  • Client secrets, unpublished financial results, merger plans, legal strategy, or protected source code without authorization
  • Personal data belonging to another person when you lack a valid reason or permission to process it
  • Information whose disclosure would cause serious harm even if the account or service were later compromised

When AI assistance is genuinely useful, minimize the input. Replace names with roles, remove identifiers, summarize instead of uploading a full document, and provide only the section needed for the task.

A practical privacy checklist

  1. Confirm the workspace. Personal and managed business accounts can follow different data rules.
  2. Review Data Controls. Decide whether new chats may be used to improve models.
  3. Use Temporary Chat deliberately. Choose it for one-off conversations that should not remain in normal history or memory.
  4. Inspect Memory. Delete saved memories separately when necessary.
  5. Reduce the prompt. Share the minimum information required.
  6. Check connected apps and custom GPTs. Third-party actions can send data outside OpenAI, where different privacy terms apply.
  7. Delete responsibly. Remove conversations and uploaded files when they are no longer needed, while understanding that deletion can take time.

Can other people see your chats?

Your chats are not public by default, but access can still occur through account compromise, a shared device, a shared link you created, organizational administration, connected services, or authorized safety and support processes. Use a unique password, enable multi-factor authentication where available, sign out of shared devices, and avoid installing untrusted browser extensions that can read page content.

Official Website

Official websiteOpen ChatGPT privacy settings

Review OpenAI’s consumer privacy overview and then verify the controls inside your own account.

View Privacy Settings →

Official Sources

VeilNorth Verdict

ChatGPT provides meaningful privacy controls, but they are split across training, history, Temporary Chat, memory, account type, and connected features. For ordinary brainstorming, the controls can offer a reasonable balance. For confidential or regulated work, use an approved business environment and minimize the information supplied rather than relying on a single toggle.

About VeilNorth

VeilNorth is an independent publication focused on privacy, cybersecurity, AI, and digital rights. Our guides rely on primary documentation and clearly distinguish verified facts, editorial analysis, and hands-on testing.

How we researched this article

This article was prepared using official documentation, publicly available technical information and, where appropriate, hands-on testing. We review our content whenever significant privacy, security or usability changes occur.