Browse this section
Security & privacy

Data handling & retention

What we store, for how long, and how deletion works.

DataStoredDefault retentionConfigurable
Indexed content (chunks, embeddings, metadata)Yes, in the workspace regionWhile the source is connectedRemove source or document at any time
Original files from connectorsNot stored; fetched on sync and discarded after extraction (except API-uploaded files, which are stored)Delete document
Queries, answers, citationsYes12 months30 days – 7 years
Run tracesYes90 days30 days – 7 years
Audit logYes12 monthsUp to 7 years
Connector credentialsVaultWhile connectedRevoke at any time
BackupsEncrypted, EU35 days rolling

Deletion

Deleting a document, source, knowledge base or workspace removes data from live systems within minutes and from backups as they rotate (35 days). Deletion requests for individuals' data are honoured within 30 days; see the Privacy Policy.

Data residency

All processing and storage happen in the EU. Sub-processors outside the EU are listed in the DPA with transfer mechanisms.

No training on customer data

Customer content, queries and traces are never used to train models — ours or third parties'. Aggregated, de-identified usage metrics are used to operate and improve the service.

Access by our staff

Support staff access to workspace data requires a customer-initiated support case, is time-limited, and is recorded in the customer's audit log.