Le Chat's Memory feature stores details from your conversations to personalise future responses, and if you mention health or other sensitive information, this may be saved as a 'Memory' — requiring your explicit consent for that sensitive data.
This analysis describes what Mistral AI's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
The provision establishes a dual consent framework for Memory feature operation: general service personalization proceeds under legitimate interest, while storage of sensitive health information requires explicit user consent. This structure creates distinct legal bases for data retention depending on input classification.
The updated policy now explicitly includes data accessed through third-party services and integrations users connect to Mistral AI Products as 'Input' data subject to collection and use. The policy removed its prior statement that Input and Output data are not used to train AI models when using Le Chat Enterprise or paid versions of Mistral APIs. This creates operational ambiguity: users of paid services and Enterprise customers no longer have a documented commitment that their data will be excluded from model training, though the privacy policy does not affirmatively state that model training now occurs. The policy also changed language describing product improvement from 'aggregated and anonymous statistics' to 'aggregated or anonymous datasets or statistics,' broadening the stated scope of what can be collected for improvement purposes.
View change record →If you mention health conditions, medications, or other sensitive details in Le Chat conversations, this information may be stored as a personalised Memory that affects future AI responses, and you must actively manage or delete these Memories in settings to prevent ongoing retention.
Cross-platform context
See how other platforms handle Memory Feature and Sensitive Health Data Storage and similar clauses.
Compare across platforms →"To enhance your experience on Le Chat via the Memory feature by providing you more relevant and personalized answers based on your past interactions with Le Chat. [...] Your Input (prompts). If you include sensitive data in your Input, such as health details, this data may be stored as a Memory to provide you with more relevant and personalized answers. [...] Our legitimate interest to provide you with an enhanced and personalized service. Your explicit consent for any sensitive data explicitly included in your input and saved as a Memory.Excerpt from Mistral AI's Privacy Policy
(1) REGULATORY FRAMEWORK: This provision directly implicates GDPR Art.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
The provision establishes a dual consent framework for Memory feature operation: general service personalization proceeds under legitimate interest, while storage of sensitive health information requires explicit user consent. This structure creates distinct legal bases for data retention depending on input classification.
If you mention health conditions, medications, or other sensitive details in Le Chat conversations, this information may be stored as a personalised Memory that affects future AI responses, and you must actively manage or delete these Memories in settings to prevent ongoing retention.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Mistral AI.