Cohere states that it will not use the data you send through its platform (such as prompts and documents) to train its AI models unless you specifically agree to allow it.
This analysis describes what Cohere's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This provision directly addresses a common concern for enterprise customers deploying AI: whether proprietary business data submitted as prompts or documents could be incorporated into shared model training. The document states this requires explicit opt-in rather than an opt-out.
Interpretive note: The document is a commitments page rather than a binding contract; enforceability depends on whether these commitments are incorporated into the executed master service agreement.
The updated terms establish specific data handling practices for Cohere's SaaS Platform: customer prompts and generations are automatically deleted after 30 days unless flagged for potential policy violations or required by law or contract; Cohere logs and monitors usage for compliance and security; and safety teams may review flagged content to enforce policies. The terms state that data intended for training purposes may be retained separately according to your agreement, and that you can opt out of training data use by toggling 'Data Controls' off in your dashboard settings. You can verify and adjust these settings at any time under Settings > Data Controls in the Cohere Platform.
View change record →Enterprise customers can submit prompts, completions, and documents to Cohere's platform with the assurance, per this document, that such data will not be used to train Cohere's models unless the customer has expressly opted in. The practical protection depends on whether this commitment is enforceable under the executed service agreement.
How other platforms handle this
to request that your data be transferred to a third party (data portability)
Your organization may allow you to access and export your data in order to back it up or transfer it to a service outside of Google.
Further, you may take legal actions in relation to any potential breach of your rights regarding the processing of your Personal Information, as well as to lodge complaints before the competent data prot...
"Cohere does not use customer data to train its models. Enterprise customers must explicitly opt in for their data to be used for any model training purposes.Excerpt from Cohere's Enterprise Data Commitments
(1) REGULATORY LANDSCAPE: This provision engages GDPR Article 28 processor obligations, which require that a data processor act only on documented instructions from the controller.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Ad personalization controls removed. Contact scanning added. Advertiser data partnerships quietly dropped. A timeline of every change.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
This provision directly addresses a common concern for enterprise customers deploying AI: whether proprietary business data submitted as prompts or documents could be incorporated into shared model training. The document states this requires explicit opt-in rather than an opt-out.
Enterprise customers can submit prompts, completions, and documents to Cohere's platform with the assurance, per this document, that such data will not be used to train Cohere's models unless the customer has expressly opted in. The practical protection depends on whether this commitment is enforceable under the executed service agreement.
ConductAtlas has identified this type of provision across 290 platforms. See the full comparison.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Cohere.