Where does your data go when staff use free AI tools?
Into a system your business does not control. With free consumer AI tools, information typed in leaves your governance entirely: it sits under the vendor's consumer terms, in an account you cannot administer, and on some free tiers it may be used to improve the vendor's models. For business use, that is the risk to manage.
Assume this is already happening. Staff use these tools because they help, and the help is real: a stuck email, a summary of a long document, a plain-English explanation of something confusing. Treating that as misconduct misreads it, and misreads the people: this is initiative wearing an inconvenient hat. What has happened is that a useful capability arrived faster than any business's policy, and the gap is now yours to close deliberately.
What actually happens to the text is worth understanding without drama. It travels to the vendor, is processed, and is typically retained in that account's history. On consumer tiers, vendors have commonly reserved the right to use conversations to improve their models, sometimes with an opt-out buried in settings; business tiers usually carry different commitments, including undertakings not to train on customer content and administrative controls the business rather than the individual holds. Both facts are moving targets, which is precisely the problem: your business's data handling should not depend on a setting an individual staff member may or may not have found, on terms that may have changed since they signed up.
The practical exposure for a small business is specific, so name it in the terms your team will recognise. Client details pasted for a rewrite. A patient scenario described for advice. Financials dropped in for analysis. A contract uploaded to be explained. Login details or system information shared while troubleshooting. Each is an ordinary attempt to work faster, and each moves information you are responsible for into a place you cannot reach, delete from, or account for later. Notice that none of these requires bad intent, a rogue employee or a technical failure; they are all just someone trying to get a job done before lunch.
That last word matters, because the obligations do not care how helpful the tool was. If the information includes personal information and something goes wrong, the Privacy Act applies, and the Notifiable Data Breaches scheme expects assessment and, where serious harm is likely, notification. Client confidentiality terms and professional obligations sit on top of that, and none of them contain an exception for it was just a chatbot. The awkward feature of this kind of disclosure is that it leaves no trace in your systems, so the business may not learn about it until a client does.
So the fix, and it is not a ban. Bans fail here for the same reason they fail everywhere useful: staff keep using the tool on their phones and stop telling you. The approach that works has three parts. First, give people a sanctioned option, for most Microsoft 365 businesses that is the included Copilot Chat, signed in with a work account, so the useful thing has an approved home, under your business terms and your admin controls. Second, write the rules in three sentences, not three pages: what is sanctioned, what never goes into any AI tool, and who to ask when unsure. Third, tell people why, because staff who understand the exposure make better judgement calls than staff who memorised a rule, especially in the situations no rule anticipated.
Two additions make it stick. Cover AI in induction alongside everything else new starters are told, because habits form in week one. And build a reporting habit with no blame attached: if someone realises they pasted something they should not have, the business needs to know that day, and the only way to get that is a culture where saying so is easy. A punished disclosure is the last one you will hear about, and silence is the condition in which small mistakes become large ones.
The honest caveat: none of this makes AI use risk-free, and no policy survives contact with a busy Tuesday if the sanctioned tool is worse than the unsanctioned one. That is the real work, making the approved path the easy path. If you want help setting up governed AI access and writing rules people will actually follow, call 1800 456 567.
Give staff a sanctioned option
We set up governed AI access, signed-in tools with business terms and clear rules, so staff get the help without the data leaving your control.
Frequently asked questions
Questions? Let's talk.
Call 1800 456 567 or fill out the form.
- 30-minute discovery — no jargon, no pressure
- Plain-English Essential Eight Cyber Security Scorecard
- A clear plan tailored to your business