Privacy in the age of AI
Practical guides, compliance references and fundamentals to harness generative AI without ever exposing your sensitive data.
- Guide6 min read
Does a fake name protect your data in AI?
“As long as they put a fake name, it should be fine?” The honest answer: no, almost never. Two concrete reasons, and the method that holds over time.
Read article - Compliance7 min read
Is it legal to put patient data into ChatGPT?
“100% a HIPAA violation,” “a great way to get destroyed in a GDPR audit”: professionals say it bluntly. The real legal framework, and how to use AI without breaking it.
Read article - Fundamentals6 min read
Does AI train on your data? Free, paid, and opt-out
“It's on by default, you can turn off training.” True — but opt-out only covers training. What changes between free, paid and API, and the robust rule.
Read article - Fundamentals6 min read
AI chatbot data leaks: what a breach means for your prompts
“OpenAI got hacked,” “the leak where chats ended up indexed on Google”: the incidents are real. You don't control a third party's security — but you control what leaks.
Read article - Guide6 min read
Self-hosted LLM or anonymizing before AI?
“Only to a self-hosted model,” say the most cautious. Ideal on paper, heavy in practice. The honest comparison with anonymizing before you send.
Read article - Compliance7 min read
How to write an AI usage policy for your team
Without a policy, everyone improvises — and it's often a client name, a salary or an API key that ends up in a prompt. The 6 sections of an AI usage policy that fits on two pages.
Read article - Guide7 min read
AI for law firms: protecting client confidentiality
Confidentiality doesn't stop at copy-paste. How to anonymize party names, amounts and case numbers before handing a matter to AI — without losing relevance.
Read article - Guide6 min read
Anonymize HR data before you hand it to AI
HR data sometimes falls under the GDPR's special categories. Which fields to mask first — identity, salary, social-security number, health — before asking AI to summarize or screen.
Read article - Guide7 min read
Anonymize health data before handing it to AI
Clinical notes, letters, patient files: health data is strictly protected. The method to have AI rephrase or summarize without ever exposing a patient.
Read article - Guide6 min read
Accountants: use AI without exposing your clients' financial data
An accounting firm concentrates bank details, amounts, tax IDs and salaries. The method to have AI analyze or summarize without exposing a client's books.
Read article - Fundamentals6 min read
Does AI store your data? What really happens to your prompts
A prompt leaves your machine, transits through third-party servers and may be retained. What happens to your data when you talk to an AI, and how to take back control.
Read article - Fundamentals6 min read
Prompt injection: how your data can leak
An instruction hidden in a document or web page can hijack an AI and make it reveal what it holds in context. Understand prompt injection and shrink the exposed surface.
Read article - Guide6 min read
Protecting trade secrets when you use AI
A trade secret is only protected as long as it stays secret. Disclosing a roadmap or an R&D process to a third-party AI can weaken that protection. The method to anonymize upstream.
Read article - Guide6 min read
Paste code into AI without leaking your API keys
A script pasted into AI often contains an API key, a token or an internal URL. The method to use AI on code without exposing your secrets.
Read article - Guide6 min read
Anonymize an Excel or CSV before analyzing it with AI
A spreadsheet export concentrates sensitive data across entire columns. The method to have AI analyze it while anonymizing at the source.
Read article - Fundamentals6 min read
Anonymization vs pseudonymization vs tokenization
Three confused terms, three different legal statuses. The clear guide to anonymization, pseudonymization and tokenization — and what it changes for AI.
Read article - Compliance6 min read
Shadow AI: the risk of ungoverned AI tools at work
Your teams already use AI, governed or not. “Shadow AI” leaks your data silently — here's how to bring it back into a safe framework.
Read article - Guide6 min read
ChatGPT for customer support without exposing customer data
A support ticket holds a name, email, order number, sometimes an IBAN. How to use AI to reply faster without exposing your customers.
Read article - Compliance7 min read
The EU AI Act: what companies must anticipate
The EU AI Act governs AI by risk level. The essentials for a company using AI assistants — and how to prepare today.
Read article - Fundamentals6 min read
Why in-browser processing protects your data
The best-protected data is the data that never leaves. How in-browser (client-side) processing cuts the risk surface at the source.
Read article - Fundamentals6 min read
Sensitive data: United States vs France, what changes
National identifiers don't look alike from one country to the next. A US vs France overview — and why good detection must be country-aware.
Read article - Fundamentals7 min read
What is sensitive data? A practical taxonomy
Sensitive data isn't just names and emails. Here is a 6-family taxonomy — from names to API keys — so you know exactly what to protect before sending it to an AI.
Read article - Compliance8 min read
GDPR and generative AI: what companies must know
Pasting personal data into an AI assistant is a transfer under the GDPR. Here's how to keep AI while staying compliant: data minimization and anonymization at the source.
Read article - Guide7 min read
How to use ChatGPT at work without leaking sensitive data
Anonymize the prompt before sending, then restore the answer: the concrete method to use an AI assistant at work without exposing names, emails, IBANs or API keys.
Read article