← Research
Research · Question

Can my employer see what I put into AI?

On an account your employer administers, the vendors say the administrator can reach your prompts. On a personal account, the vendor pages say something different.

Last reviewed: 29 September 2026 · Next review due: 29 September 2027

What OpenAI and Microsoft document about administrator access to prompts, what the UK regulator expects employers to tell you, five limits on what those pages can establish, and what to ask before you type the next prompt.

Question this page answersAll 1060 questions this research covers

If you use an AI account your employer set up, the vendors' own documentation says the people who administer it can reach what you type. OpenAI states that administrators of a managed ChatGPT account may access the prompts, uploaded files and outputs, along with conversation history and usage metadata, and can export, audit, retain or delete them. Microsoft stores Microsoft 365 Copilot prompts and responses in a hidden folder in your mailbox, where compliance administrators can search them with eDiscovery tools. A personal account you opened yourself is a separate thing on OpenAI's pages, but the vendor pages cannot tell you what your employer's devices and network record around it. In the UK the ICO's guidance expects employers to tell workers about monitoring, and a policy you have never seen is a reason to ask.

The answer, in one line

If you use an account your employer administers, the vendors' own documentation says yes. OpenAI states that administrators of a managed ChatGPT account may access prompts, uploaded files and outputs, plus conversation history and usage metadata.

Share as a card

Definition#

Managed account: an AI account created and administered by an employer or school, in which an administrator, and not only the user, controls the workspace settings and can reach the content held in it. The term is OpenAI's, from its help documentation for a managed ChatGPT account. It is a contrast with a personal account, which the user opened and controls alone.

Share this definition as a card

Two accounts that look identical on screen#

The chat window on a work login and on a personal login is the same. What differs is who owns the account behind it. On a managed account the employer is the administrator; on a personal account you are. OpenAI's help article on data access for a managed account says that if you sign into a managed account and a personal account they remain separate, so the administrator's reach covers the managed workspace and nothing in the personal one. Everything else on this page depends on which of the two you were typing into.

What OpenAI says an administrator can reach#

OpenAI's help article on data access lists what an administrator may access: the content you submit, meaning prompts, files you upload and outputs, plus conversation history, usage metadata and security settings. Administrators can, in its words, export, audit, retain, delete and opt in to share data tied to the account. The article says users are given a Managed ChatGPT Account Notice when the account is set up.

OpenAI's enterprise privacy page describes the mechanism. Within an organisation end users can view their own conversations, and workspace administrators can access an audit log of conversations and custom GPTs through the Enterprise Compliance API. Administrators control how long data is kept. Deleted conversations are removed from OpenAI's systems within 30 days unless the company is legally required to keep them, and business data is not used to train models by default. The last two points are about OpenAI's own handling, and say nothing about what your employer keeps once it has exported the log.

What Microsoft says happens to a Copilot prompt#

Microsoft's retention documentation says data from generative AI messages is stored in a hidden folder in the mailbox of the user who runs the AI app. The folder is not designed to be directly accessible to users or administrators, but stores data that compliance administrators can search with eDiscovery tools. Messages in it remain searchable until permanently deleted, and the page adds that what you can see in an AI app is not an accurate reflection of whether messages are retained.

The separate audit log page describes a narrower record. An audit record typically holds a prompt and response pair, flags whether a message is a prompt, flags a detected jailbreak attempt, and lists the files, sites and other resources Copilot accessed to answer. That page does not say the audit record stores your wording, and this page does not claim it does. The retention page is the one that puts searchable text in a mailbox.

In the UK, the employer is meant to tell you#

The ICO's guidance on monitoring workers covers technologies such as tracking internet activity and keystrokes. It says employers must make workers aware of how and what personal information they collect during monitoring, must tell them in a way that is accessible and easy to understand, and apart from very exceptional cases of justified covert monitoring must inform workers about any monitoring. An employer needs a lawful basis, and a data protection impact assessment is required before processing likely to cause high risk to workers. Chat logs of AI use are personal information about a worker, so the guidance bears on them directly.

That is the UK position, and the guidance is the regulator's account of the law and no substitute for advice on a specific case. Other countries differ, and this page is not legal advice.

What these pages cannot tell you#

A work prompt is a work record#

This section is interpretation, kept apart from the evidence above.

Microsoft's own design makes the working rule easy to state: a prompt in a work Copilot is stored where your email is stored, in your mailbox, for a compliance team to search. Nobody would type an unguarded aside into a work email expecting it to vanish, and the same discipline fits the prompt box. It is a record made in the course of employment.

Rahim Hirji listed the reverse failure in AI Habits of 2025 That Will Get You Sued, Fired, or Embarrassed on 23 November 2025. Habit 10 is "Just Upload The Spreadsheet", where salary, health and customer records are dragged raw into assistants because anonymising takes time. Habit 13 is shadow AI: teams use personal accounts for work because approvals are slow, and, as he puts it, "Security finds out during an audit, not before." Read beside the vendor pages, the two habits pull in opposite directions. The managed account is visible to the employer, and the personal account escapes that visibility by moving the same client data outside anything the employer governs. Deloitte UK's 2026 survey of 25,000 workers found 31 per cent of users say they use generative AI without their employer's knowledge, so the move is common.

Escaping the log does not make the content private. It puts confidential material where neither your employer nor you can say what happens to it, which is the worse trade.

Before you type the next prompt#

Key sources

On whether to mention your AI use to a manager, should I tell my boss I used AI. On what to do when staff use personal tools, what to do when people work around the AI policy. On writing the rules down, how to write an AI use policy that works. On honest description of your own use, how to be honest about using AI in your work.

About this research#

Rahim Hirji is the author of SuperSkills (Kogan Page, 2026), keynote speaker on AI and human capability, and founder of The SuperSkills Intelligence Company. Every vendor and regulator statement on this page was read at source on 29 September 2026 and is graded in the evidence base. Managed account is OpenAI's term and not a SuperSkills coinage. This page is general information and not legal advice.

How this research works  ·  Reviewed quarterly  ·  Found an error? Tell me and it is corrected on the page.

Evidence review · SS-2026-370 · Graded against the published rubric

Cite this page

Hirji, R. (2026). Can my employer see what I put into AI?. The SuperSkills evidence base, SS-2026-370. https://thesuperskills.com/research/can-my-employer-see-what-i-put-into-ai. Last reviewed 29 September 2026.

An evidence review by Rahim Hirji, not peer-reviewed research. For a material claim, cite the underlying study as well; every study here carries its own permanent link.

How citations and IDs work
Questions answered on this page

Can my employer see what I type into ChatGPT or Copilot?

If you use an account your employer administers, the vendors' own documentation says yes. OpenAI states that administrators of a managed ChatGPT account may access prompts, uploaded files and outputs, plus conversation history and usage metadata. Microsoft says Microsoft 365 Copilot prompts and responses are stored in a hidden mailbox folder that compliance administrators can search with eDiscovery tools. Both describe what is possible. Neither says how any given employer uses it.

Can my employer see my personal ChatGPT account?

OpenAI's help article says a managed account and a personal account remain separate, so an administrator's access covers the managed workspace and not a personal one. That does not tell you what your employer's laptop, network or endpoint software records, which is set by the employer and is outside what the vendor pages cover.

Does Microsoft Copilot store my prompts?

Microsoft's retention documentation says data from generative AI messages is stored in a hidden folder in the mailbox of the user who runs the AI app, searchable by compliance administrators with eDiscovery tools until permanently deleted. It adds that what you see in an AI app is not an accurate reflection of whether messages are retained. The separate audit log records prompt and response pairs and the resources accessed, and the page does not say it stores your wording.

Does my employer have to tell me if they monitor my AI use?

In the UK, the ICO's guidance says employers must make workers aware of how and what personal information they collect during monitoring, and apart from very exceptional cases of justified covert monitoring must inform workers about any monitoring. It also requires a lawful basis and a data protection impact assessment before high-risk processing. Other countries differ, and this is general information, not legal advice.

What should I never put into a work AI tool?

The vendor pages do not give a list, so the rule is a judgement. Treat a work prompt as a work record. Keep client data, HR cases, and salary, health and customer records in the tool your organisation has approved, and ask IT what is logged and who can read it. Moving that material to a personal account takes it outside anything your employer governs, and does not make it private.

In this hub

Work, careers and the labour market

What happens to jobs, careers and the first rung.

Ask the evidence
What does the evidence actually show?What should our board be asking about this?Where does Rahim disagree with the consensus?
Bring this into your organisation

If this describes something happening in your teams, say so.

Keynotes, board sessions and advisory work, drawing on research across more than 200 organisations in 30 countries. Tell me the room, the date and the shift you need. A reply within 24 hours.

Start a conversation

Topics and audiences  ·  All research

Box of Amazing

Rahim’s free weekly letter on AI and human capability

If this was useful, the weekly letter is where the thinking happens first. Most of what ends up on this site starts there. Weekly essays on AI, capability and the future of work. Read by 25,000 people, every week since 2017. Free, and one click to stop.

Opens Substack to confirm. No pitch in it, unsubscribe in one click, and nobody follows up because you read something.

Running an event, or responsible for how AI arrives in your organisation? Keynotes  ·  Advisory  ·  Boards  ·  Enquire