38 Total
16 High severity
17 Medium severity
5 Low severity

Key Facts

Who has access to logs containing prompts and generations?
Cohere limits access to logs containing prompts and generations to authorized employees and service providers who are bound by confidentiality and security controls and require access for engineering support or legal compliance.
Does Cohere delete prompts or generations when a user deletes their account?
Cohere does not delete prompts or generations when a user deletes their account; those records are deleted automatically after 30 days unless exceptions apply.
When are those records deleted?
Cohere does not delete prompts or generations when a user deletes their account; those records are deleted automatically after 30 days unless exceptions apply.
Are logged prompts and generations automatically deleted after 30 days unless retention is needed to comply with a legal requirement or customer contract or unless the usage has been flagged as potentially violating Cohere's terms?
Cohere automatically deletes logged prompts and generations after 30 days, unless retention is needed to comply with a legal requirement or customer contract, or unless the usage has been flagged as potentially violating Cohere's terms.
On whom does Cohere place responsibility to comply with applicable privacy laws when personal information about end users is uploaded to the Cohere SaaS Platform?
Cohere places responsibility on customers to comply with applicable privacy laws when they upload personal information about their own end users to the Cohere SaaS Platform.
Who do Cohere's Enterprise Data Commitments apply to?
Cohere's Enterprise Data Commitments apply only to commercial, paying customers, and for the SaaS Platform specifically, this means customers who have a credit card on file in their account.
For the SaaS Platform specifically, what does it mean to be a customer with Enterprise Data Commitments?
Cohere's Enterprise Data Commitments apply only to commercial, paying customers, and for the SaaS Platform specifically, this means customers who have a credit card on file in their account.
When does Cohere retain logged prompts and generations beyond 30 days?
Cohere retains logged prompts and generations beyond 30 days when retention is needed to comply with a legal requirement or a customer contract.
Does Cohere receive customer prompts or generations when its services are deployed through third-party cloud AI/ML platforms or private deployment solutions?
Cohere does not receive any customer prompts or generations when its services are deployed through third-party cloud AI/ML platforms or private deployment solutions.
How can users opt out of having their prompts and generations used to train Cohere models?
Cohere allows users to opt out of having their prompts and generations used to train Cohere models by changing a setting in their dashboard at any time.
Stay ahead of the changes
Track Cohere and get the diff the day its terms change.
Summary

Cohere's Enterprise Data Commitments describe how Cohere handles the prompts and outputs generated by paying customers. By default, Cohere logs your activity, keeps prompts and generations for up to 30 days after you delete your account, and may retain them longer for legal or contractual reasons — but you can opt out of having your data used for model training at any time through your dashboard settings. These protections apply only to paying customers with a credit card on file; free-tier users are explicitly excluded.

Analysis

Cohere's Enterprise Data Commitments establish the data handling obligations and protections that apply exclusively to commercial, paying customers — defined for the SaaS Platform as customers with a credit card on file. The document sets out a default 30-day automatic deletion schedule for logged prompts and generations, subject to exceptions for legal requirements, customer contracts, or flagged potential policy violations, and provides that account deletion does not itself trigger immediate data removal. Access to prompt and generation logs is restricted to authorized employees and service providers bound by confidentiality and security controls, with a permissive right for safety and security teams to review content upon detection of possible misuse. Users retain self-service control over training use via a dashboard opt-out, and approved customers may obtain zero data retention status eliminating logging entirely; customers who deploy through third-party cloud or private environments receive structural data isolation because Cohere does not receive their prompt or generation data at all. Customers who upload personal information about their own end users bear responsibility for compliance with applicable privacy laws with respect to that data.

What this means for you

As a paying Cohere SaaS customer, your prompts and generated outputs are logged and monitored for compliance and security purposes, and they persist on Cohere's systems for up to 30 days after account deletion — potentially longer if legal requirements, a customer contract, or a flagged policy concern applies. Cohere's safety and security teams may review your prompt and generation content if possible misuse is detected. You can stop your prompts and generations from being used to train Cohere's models at any time by changing the relevant setting in your dashboard. If you qualify for and are approved for zero data retention, no prompts or generations are logged at all.

Institutional Analysis
Stay ahead of the changes

Institutional analysis available with Insight

Which mapped governance frameworks each document engages, tied to the specific provisions that engage them.

18 important changes detected

21 versions captured · Last updated: September 2026

What changed Cohere updated their Cohere Enterprise Data Commitments on September 18, 2026. Change detected: 1 sentence(s) removed, 1 sentence(s) modified. Document contained 97 sentences after update.
View full change record →
What changed Cohere updated their Cohere Enterprise Data Commitments on September 17, 2026. Change detected: 2 sentence(s) modified. Document contained 98 sentences after update.
View full change record →

September 15, 2026 unknown

Cohere updated their Cohere Enterprise Data Commitments on September 15, 2026. Change detected: 24 sentence(s) added, 23 sentence(s) removed, 2 sentence(s) modified. Document contained 98 sentences after update.

View change record →
September 13, 2026 unknown

Cohere updated their Cohere Enterprise Data Commitments on September 13, 2026. Change detected: 23 sentence(s) added, 23 sentence(s) removed, 1 sentence(s) modified. Document contained 97 sentences after update.

View change record →
September 11, 2026 unknown

Cohere updated their Cohere Enterprise Data Commitments on September 11, 2026. Change detected: 1 sentence(s) modified. Document contained 97 sentences after update.

View change record →
September 10, 2026 low

Cohere restructured its Enterprise Data Commitments document in an update detected on September 10, 2026. The revised version reorganizes and expands existing data governance disclosures including opt-out controls for training …

View change record →
September 9, 2026 low

In an update detected on September 9, 2026, Cohere restructured its Enterprise Data Commitments document. The revised language reorders and reframes existing data protection provisions, adding an introductory statement that …

View change record →
August 30, 2026 low

Cohere restructured its Enterprise Data Commitments document detected on August 30, 2026. The company removed and re-added substantially identical language describing its data handling practices across deployment options, logging and …

View change record →
August 28, 2026 low

Cohere revised its product lineup descriptions in the Enterprise Data Commitments document detected on August 28, 2026. The updated text removes the 'New' label from several existing models (Command, Transcribe, …

View change record →
August 27, 2026 low

In an update detected on August 27, 2026, Cohere reorganized and expanded its Enterprise Data Commitments documentation. The change appears to restructure existing content around data control options, opt-out mechanisms …

View change record →
August 26, 2026 low

The detected change appears to involve restructuring of Cohere's website navigation and featured content sections. The diff shows modifications to header navigation, research initiatives, and blog featured content, with additions …

View change record →
August 25, 2026 low

Cohere's Enterprise Data Commitments document was restructured in an update detected on August 25, 2026. The substantive provisions regarding data control, opt-out mechanisms, logging, monitoring, data retention, and privacy compliance …

View change record →
August 19, 2026 low

Cohere updated marketing descriptions for two products on its website. The Command product description was expanded to state 'High-performance generative AI models for real-world applications', and the Model Vault description …

View change record →
August 18, 2026 medium

In an update detected on August 18, 2026, Cohere revised its Enterprise Data Commitments to explicitly describe data handling controls across its deployment options. The updated terms state that in …

View change record →
August 16, 2026 low

Cohere's Enterprise Data Commitments document was restructured in an update detected on August 16, 2026, but the substantive content describing data controls, opt-out mechanisms, logging practices, retention policies, and compliance …

View change record →
August 14, 2026 low

Cohere's website navigation and footer structure were reorganized in an update detected on August 14, 2026. The changes involved restructuring product pages, consolidating navigation menus, and removing email subscription language …

View change record →
August 12, 2026 low

The detected change to Cohere's Enterprise Data Commitments document on August 12, 2026 appears to be a minor navigation or formatting adjustment. The specific modification involved adding a 'Skip to …

View change record →
August 8, 2026 low

Cohere's Enterprise Data Commitments page was restructured in an update detected on August 8, 2026. The opening statement, 'Cohere maintains robust controls to protect enterprise data and respect our enterprise …

View change record →
Featured, High severity

Complete Provision Index

Every distinct legal provision identified in this document. Featured provisions appear above with analysis.

38 provisions
12 featured
11 clause types
16 high severity
Acceptable Use Restrictions 1
Stay ahead of the changes

Monitoring

Cohere has updated this document before. Monitor includes same-day alerts, structured change summaries, and monitoring for up to 20 platforms.

Stay ahead of the changes

Governance Intelligence

Need provision-level monitoring and regulatory mapping? Insight includes governance timelines, drift analysis, and full provision tracking.

Cross-platform context

See how other platforms handle Access to prompts limited to authorized personnel and similar clauses.

Compare across platforms →
Archival ProvenanceSource & Archival Record
Last Captured September 18, 2026 00:53 UTC
Capture Method Automated scheduled archival capture
Document ID CA-D-000767
Version ID CA-V-007027
SHA-256 d110e737b4c34f4eacd1f57947e6af8b056deb682307a509dd290f6908b27431
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Hash verified

Governance Monitoring

Monitor governance changes across the platforms you rely on.

Structured alerts for policy changes, governance events, and provision updates across 352+ platforms.

Start monitoring → Compare plans