Can I paste a customer file or email into ChatGPT?
Depends on the account and settings. Free ChatGPT and a Team tenant behave very differently from what most people assume.
Try this first
- 1Check the account: free/Plus is a consumer account, prompts can be used for training by default. ChatGPT Team, Enterprise and API traffic are policy-excluded from training, but that is not the same as 'not stored'.
- 2Personal data and customer names are GDPR data. Pasting them into a private account is effectively a transfer to a third party without a DPA, so do not do it.
- 3Anonymise or generalise before pasting. Replace names, case numbers, and amounts with placeholders and ask for output against those placeholders.
- 4Prefer a business tier (ChatGPT Team, Copilot with data boundaries in your M365 tenant, or Claude for Work). You get a DPA and the traffic stays closer to your org context.
- 5Write down which tools are allowed and train people on anonymising. One page is enough.
When to bring us in
If sensitive data already went into a private account, or a customer asks for proof of what happened to their data: let us help with a clean response.
See also
- I want a one-page AI policy for my teamA real one-pager beats a thick document nobody reads. Four headers and concrete examples.
- How do I tell if an AI answer is made up?Models sound confident even when they are wrong. A few habits catch most mistakes.
- Copilot, Copilot Pro, M365 Copilot. What does each one do?Microsoft calls several products Copilot. Below is what each variant actually does, function-wise. For the price and licence question, see 'Is a Copilot licence worth it?' under SaaS and licences.
None of the above fits?
Describe your situation below. We pass your input plus the steps you already saw to our AI and return tailored next-step advice. If it's too risky to DIY, we'll say so.
Or skip the DIY entirely
Our Managed IT clients do not look these things up. One point of contact, a fixed monthly price, resolved within working hours.