7 Total
2 High severity
4 Medium severity
1 Low severity
Summary

This document establishes Cohere's data handling commitments for enterprise customers using its API and platform services. The agreement specifies that Cohere will not use enterprise data—including prompts, documents, and outputs—to train its models absent explicit customer opt-in authorization, and that customers retain ownership of submitted data. The document further establishes logical data isolation per customer and provides mechanisms for customers to request details about data processing practices.

Technical / Legal Breakdown

This document is Cohere's Enterprise Data Commitments page, a publicly disclosed policy statement governing how Cohere handles data submitted by enterprise customers through its API and platform services, operating alongside Cohere's master service agreements. The document states that Cohere does not use customer data to train its models without explicit permission, that enterprise customer data is logically isolated, and that customers retain ownership of their data including inputs, outputs, and any fine-tuning data. The document's commitment that customer prompts and completions are not used for model training without opt-in consent is operationally significant for enterprise procurement, as it addresses a provision that varies across AI platform providers; however, the document is a commitments page rather than a binding contract, and its enforceability depends on the terms of any executed master service agreement. This document engages GDPR and CCPA given its references to data residency, data subject rights, and enterprise customer data controls; organizations in regulated industries such as financial services, healthcare, and public sector should evaluate whether these commitments satisfy sector-specific data processing obligations, as applicability depends on jurisdiction and the contractual instruments in place.

Institutional Analysis

Institutional analysis available with Compliance

Regulatory exposure by statute, material risk assessment, vendor due diligence action items, and enforcement precedent. Available on Compliance.

Start Compliance free trial
High — 2 provisions
Medium — 4 provisions
Low — 1 provision

Monitoring

Cohere has updated this document before.

Monitor includes same-day alerts, structured change summaries, and monitoring for up to 25 platforms.

Start Monitor free trial Or create a free account →

Compliance Governance Intelligence

Need provision-level monitoring and regulatory mapping?

Compliance includes governance timelines, compliance memos, audit-ready analysis, and full provision tracking.

Start Compliance free trial

Cross-platform context

See how other platforms handle Data Residency Options and similar clauses.

Compare across platforms →
Archival ProvenanceSource & Archival Record
Last Captured May 11, 2026 10:28 UTC
Capture Method Automated scheduled archival capture
Document ID CA-D-000767
Version ID CA-V-002385
SHA-256 ccfd58691702098bdd8bc49a5f80b21fa3344fd10ad25017f69cd2223a67a712
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Hash verified

Governance Monitoring

Monitor governance changes across the platforms you rely on.

Structured alerts for policy changes, governance events, and provision updates across 318+ platforms.

Create free account Compare plans