Trust & Security

The bar practitioners set is "the same protections as data that already exists in our tenant." Here is, in plain terms, what happens to a document you upload, what we keep, where it is processed, and what we will put in a contract.

No training on your documents
Identifiers redacted before analysis
Text purged after 90 days
Every finding cited

Data handling, in the terms a firm needs before it can adopt a tool

Answers to "will you train on my data?", "how long do you keep it?", "where is it processed?", and "what about privilege?"

Your documents are safe

Built from the ground up for sensitive HR data.

When you upload a document, it is reviewed against our rule library and the original file is never stored on our servers. Structured personal identifiers — Social Security numbers, phone numbers, email addresses, dates of birth, driver's licence, bank account, card, EIN and passport numbers — are automatically redacted before analysis. Names, job titles and narrative text are not redacted and are included in the text sent for analysis, so review what you upload. Extracted text is purged 90 days after the scan, and you can delete any document and its data at any time; a client workspace can also be set to delete text as each scan finishes.

AI-powered, not AI-trained

Your documents are never used to train AI models.

Our AI analysis is powered by an enterprise-grade API with strict contractual data protections. This is fundamentally different from consumer AI tools like ChatGPT:

Enterprise-grade security

Defense-in-depth protections at every layer.

✓ Encryption for all data in transit
✓ Secure authentication with encrypted password storage
✓ Session protection against cross-site attacks
✓ Injection prevention via content security policies
✓ Abuse prevention with rate limiting on all endpoints
✓ Organization isolation — users see only their own data
✓ Append-only activity record of security-relevant actions, exportable by account admins
✓ File validation to prevent malicious uploads
✓ Multi-factor authentication (authenticator app plus recovery codes) and login lockout
✓ Bot protection on contact and demo forms via Cloudflare Turnstile

Data retention policy

We keep data only as long as it's needed.

DefensibleHR vs. general-purpose AI

Why pasting documents into ChatGPT puts your organization at risk.

Privacy factor
DefensibleHR.ai
ChatGPT (free/Plus)
Data used for AI training
No
Yes by default
PII redacted before AI
Automatic
No
Visible to other users
No — org-isolated
Possible
Record of what was reviewed
Scan record plus append-only supervision record
None
Data retention control
Text purged after 90 days
Indefinite
HR-specific compliance scan
Purpose-built
Generic advice
Consistent output format
Structured results
Varies
Jurisdiction-specific rules
Federal + 8 states, each rule cited and versioned
No

Working on behalf of clients

For consultants and firms that upload documents belonging to their clients.

Keeping the rule library current

How rules change, who approves a change, and where changes are published.

Our rule library is versioned. A monitoring process checks public sources such as the Federal Register and the Department of Labor each day and drafts proposed rule edits into a review queue. Nothing in the library changes without a person reviewing and approving it. Approval bumps the rule's version and last-reviewed date.

Website forms, lead capture and analytics

What the public pages collect before you sign in.

Compliance readiness

Designed with regulatory frameworks in mind.

Questions?

If you have questions about our security practices, need a Data Processing Addendum (DPA), or require additional documentation for your procurement process, contact us at [email protected].

For our complete privacy practices, see our Privacy Policy. For terms governing use of the platform, see our Terms of Service.