OpenAI

Data sharing and privacy for apps in ChatGPT

Learn what connected apps can access, what information may be shared, and how account, workspace, and privacy controls apply.

Updated: 10 hours ago

Overview

When you use a connected app, some information may be shared between ChatGPT and the service you connected.

What an app can access depends on the individual account or administrator-managed source used, approved provider permissions, your request, source-system access, and applicable workspace settings.

For an introduction to connected apps, see: Connected apps in ChatGPT.

Understand what an app may receive

When ChatGPT uses an app, relevant conversation content may be shared with that app.

If Memory is enabled, relevant existing memories may also be shared when permitted.

Depending on the app and how you use it, information shared with the app may include:

  • Your IP address.

  • Device or browser information.

  • Language, region, or time-zone settings.

  • Approximate location information, which may include your country, region, city, approximate latitude and longitude, or an IP-derived postal code when available.

  • More precise device location only when you choose to enable a supported location-sharing feature.

Not every app receives the same information. The app provider handles information under its own terms and privacy policy.

Understand how ChatGPT uses connected information

ChatGPT can use information returned by an app to answer a question, complete a supported action, or provide relevant context in a conversation. Where available, ChatGPT can also use connected information to suggest prompts before you make a request.

If Memory is enabled, ChatGPT may use relevant existing Memory information and, when permitted, create new memories or other personalized context. Some app calls, sensitive sources, research workflows, or connected content can block new Memory writes.

For Memory settings, see: Memory FAQ.

When external web search is available and permitted for the relevant source, information in the conversation may help formulate a search. Some connected sources restrict external web access.

Review model-training settings

For ChatGPT Business, Enterprise, and Edu workspaces, OpenAI does not use workspace data to train its models by default.

For personal plans, the Improve the model for everyone setting applies to eligible conversation content. Some apps and connected sources have additional restrictions that can exclude connected information or particular tool responses.

For general account controls, see: Data Controls FAQ.

Administrator-managed sources and connected Google services have additional published data-use rules. Depending on your Memory settings, eligible connected information may help personalize ChatGPT; some sources, app calls, or research workflows prevent new memories from being saved.

For Google-specific rules and exceptions, see: Google app data controls FAQ.

For sync-specific training and retention rules, see: Administrator-managed apps with sync in ChatGPT.

Manage Memory and existing conversations

To manage Memory and your Memory summary:

  1. Open Settings.

  2. Select Personalization.

  3. Select Memory.

Some accounts may also show the older saved-memories experience.

Turning Memory off, deleting your Memory summary or a saved memory, or deleting a conversation does not disconnect an app account.

Disconnecting an app does not automatically delete existing or archived chats, saved files, your Memory summary, or other saved memories. Review every source where information appears and disconnect any app that can still provide it.

Some providers have separate data-use and deletion rules. For Google-specific data controls, see: Google app data controls FAQ. Separately administered workspace sync and other providers may follow different rules.

Control suggested prompts

Where available, ChatGPT can generate suggested prompts using information from connected apps. To turn off these suggestions:

  1. Go to Settings > Personalization.

  2. Turn off Suggested prompts, if the setting appears.

Turning off Suggested prompts does not disconnect apps, stop existing scheduled tasks, or delete chats, files, or memories. This setting is separate from Memory settings: turning Memory off may still leave generic suggestions.

Understand provider and workspace controls

App access is limited by the permissions of the individually connected account or administrator-managed source, the configured source scope, and applicable workspace policies.

Workspace administrators can manage plugin availability, app access, available actions, provider-account restrictions, and sync settings where supported.

Enterprise and Edu workspaces may also use role-based app access. Business administrators manage app availability for the workspace.

Direct-action controls and synced-content controls are separate. Restricting direct app actions does not necessarily limit information retrieved from synced data, and sync content selection does not necessarily restrict separate live app actions.

For workspace configuration, see: Admin controls, security, and compliance for plugins and apps.

Understand workspace visibility

Workspace visibility depends on your plan and the administrative permissions granted to your organization:

  • In ChatGPT Business, workspace administrators can manage workspace settings, membership, and app availability. A workspace administrator does not automatically gain access to members’ ordinary private conversations.

  • In eligible Enterprise and Edu workspaces, authorized administrators can use the Compliance Platform when it is available, configured, and permitted for their role. Available conversation, app-activity, and authentication records depend on the applicable product and permissions.

  • Eligible administrators may also see aggregate app-usage information where workspace analytics are available.

When available, app-activity records can include a request sent to an app and related response information. App-authentication records can show connection and disconnection events. Retention depends on the applicable Compliance Platform endpoint, workspace retention settings, and any records the organization exports.

For enterprise compliance information, see: OpenAI Compliance Platform for Enterprise and Edu Customers.

Understand sync and data residency

Supported administrator-managed sync can index selected source content in advance. Availability, source scope, retention, and data residency depend on the app, administrator-managed connection type, and workspace configuration.

Workspace-managed sync can continue for other authorized users after an individual user disconnects their account.

For current sync eligibility and workspace security requirements, see: Administrator-managed apps with sync in ChatGPT.

For general residency terms, see: Data residency and inference residency for ChatGPT.

Disconnect an app account

To stop future access through an individual connection, disconnect that app account. For step-by-step instructions, see: Connecting and managing app accounts in ChatGPT.

Other connected accounts or separately administered workspace sync connections can remain active. Disconnecting the last account can remove some associated plugins. A provider may also offer separate account-unlinking or authorization controls.

Deleting existing or archived chats, saved files, your Memory summary, other saved memories, or administrator-managed indexed content requires separate actions. Administrators should review any warning before disabling an app or removing a sync connection because indexed content may be permanently deleted.

Was this article helpful?