Microsoft · Microsoft Responsible AI Principles

Privacy and Security by Design Principle

Medium severity
Share 𝕏 Share in Share

What it is

Privacy and security. We work to build AI systems that protect people's private information and are resistant to attacks.

Why it matters

This commitment, if not operationalised in actual product design, could be characterised as a deceptive practice by regulators, and does not specify what data Microsoft collects through its AI systems or how it is used.

Consumer impact

This document describes Microsoft's internal ethical framework for AI development but does not grant consumers any enforceable rights, data deletion options, or complaint procedures in relation to AI-driven decisions that may affect them. Consumers who use Microsoft AI products like Copilot or Azure OpenAI Service are subject to separate terms of service and privacy policies that govern actual data handling, and this page does not modify or supplement those agreements. You can review Microsoft's Privacy Statement at microsoft.com/en-us/privacy and submit data rights requests through Microsoft's Privacy Dashboard if you are concerned about how your personal data is used by Microsoft AI systems.

What you can do

⚠️ These actions may provide transparency or partial mitigation but may not fully address the underlying issue. Effectiveness varies by jurisdiction and individual circumstances.
  • Export Your Data
    Visit the Microsoft Privacy Dashboard at account.microsoft.com/privacy, sign in with your Microsoft account, and use the 'Download your data' tool to export personal data Microsoft holds about you including AI interaction data.

Applicable agencies

  • FTC
    FTC Act Section 5 applies to security representations made by technology companies; the FTC has enforcement jurisdiction over Microsoft's privacy and security practices in the US.
    File a complaint →

Provision details

Document information
Document
Microsoft Responsible AI Principles
Entity
Microsoft
Document last updated
March 24, 2026
Tracking information
First tracked
March 15, 2026
Last verified
April 4, 2026
Record ID
CA-P-002086
Document ID
CA-D-00019
Evidence Provenance
Source URL
Wayback Machine
SHA-256
23a6ca38df3168c404a699491ed0c3613a9ae7c2bd3913347338d808de2ae94a
Verified
✓ Snapshot stored   ✓ Change verified
How to Cite
ConductAtlas Policy Archive
Entity: Microsoft | Document: Microsoft Responsible AI Principles | Record: CA-P-002086
Captured: 2026-03-15 11:24:32 UTC | SHA-256: 23a6ca38df3168c4…
URL: https://conductatlas.com/platform/microsoft/microsoft-responsible-ai-principles/privacy-and-security-by-design-principle/
Accessed: April 4, 2026
Classification
Severity
Medium
Categories

Other provisions in this document