Security and Privacy FAQ

This FAQ explains how Guide handles identity, communications security, privacy, data retention, model-provider policies, and hosting-provider requirements. Use the general sections first, then review the provider-specific sections for the model or hosting location being used.

Security

Q: Do I need a Google Account to access Guide?
A: Yes. For security, Guide uses Google Accounts to securely manage identity, credentials, and multi-factor authentication.

Q: Are all communications encrypted between you, Guide, and Anthropic?
A: Yes. Guide uses TLS 1.3 for all communications.  

Guide Privacy and Data Retention

Q: What information does Guide process?
A: Please refer to the privacy policy.

Q: Which LLMs does Guide use?
A: Guide users can use LLMs from Anthropic, OpenAI, and Moonshot. This list will be updated as new models become available.

Q: Does Guide use LLMs on first-party and third-party clouds?
A: Yes. Guide uses LLMs on first-party clouds, such as Anthropic and OpenAI, and on third-party clouds, such as AWS Bedrock and Google Vertex AI, that host the same LLM models.

Q: Are privacy, zero data retention, and acceptable use policies different for each LLM and hosting location?
A: Yes. When users select a specific model, they consent to the third party policies from those vendors. The public information below is subject to change by each vendor, so users should check vendor sites directly for the latest policies.  

Provider Policy Summary

Anthropic cloud

  • Primary policy area - Anthropic privacy and zero data retention terms

  • Data retention/processing note - Guide has a zero data retention agreement with Anthropic.

  • Acceptable use policy - Anthropic Usage Policy

OpenAI cloud

  • Primary policy area - OpenAI privacy and zero data retention terms

  • Data retention/processing note - Guide zero data retention with OpenAI is in progress.

  • Acceptable use policy - OpenAI Usage Policy

AWS Bedrock

  • Primary policy area - AWS privacy, service terms, Bedrock security, and third-party model terms

  • Data retention/processing note - AWS documents configurable data retention modes for Bedrock, including zero data retention for supported configurations.

  • Acceptable use policy - AWS Acceptable Use Policy

Google Vertex AI

  • Primary policy area - Google privacy, Vertex AI governance, and Google Cloud terms

  • Data retention/processing note - Google Cloud provides data processing and security terms, with Vertex AI-specific data governance guidance.

  • Acceptable use policy - Google Cloud Acceptable Use Policy

Kimi / Moonshot AI

  • Primary policy area - Kimi privacy, API security, service terms, and model-use terms

  • Data retention/processing note - Kimi documents privacy, data processing, and model-use requirements through its platform policies.

  • Acceptable use policy - Kimi usage restrictions and service terms

Anthropic Cloud

Q: What information does Anthropic process?
A: Please refer to Anthropic's Privacy Policy:
·         https://www.anthropic.com/legal/privacy

Q: Does Guide have a zero data retention agreement with Anthropic?
A: Yes. For more information on Anthropic's zero data retention capabilities and enterprise privacy commitments, see:
·         Anthropic Commercial Terms: https://www.anthropic.com/legal/commercial-terms
·         Anthropic Privacy Policy: https://www.anthropic.com/legal/privacy
·         Anthropic Trust Center: https://trust.anthropic.com/ .

Q: Does Anthropic have an acceptable use policy?
A: Yes. See Anthropic's Usage Policy:
·         https://www.anthropic.com/legal/aup

OpenAI Cloud

Q: What information does OpenAI process?
A: Please refer to OpenAI's Privacy Policy:
·         https://openai.com/policies/privacy-policy/

Q: Does Guide have a zero data retention agreement with OpenAI?
A: This is in progress. For more information on OpenAI's zero data retention and enterprise data controls, see:
·         OpenAI Enterprise Privacy: https://openai.com/enterprise-privacy/
·         OpenAI API Data Usage Policies: https://platform.openai.com/docs/guides/your-data
·         OpenAI Privacy Policy: https://openai.com/policies/privacy-policy/

Q: Does OpenAI have an acceptable use policy?
A: Yes. See OpenAI's Usage Policies:
·         https://openai.com/policies/usage-policies/

AWS Bedrock Hosting

Q: What information does AWS Bedrock process?
A:  Please refer to the AWS Privacy Notice and Amazon Bedrock Security and Privacy documentation:
·         AWS Privacy Notice: https://aws.amazon.com/privacy/
·         Amazon Bedrock Security and Privacy: https://docs.aws.amazon.com/bedrock/latest/userguide/data-protection.html

Q: Does AWS detail its processing of data?
A: Yes. For more information, see:
·         Serverless Third-Party Models on Amazon Bedrock: https://docs.aws.amazon.com/bedrock/latest/userguide/model-parameters.html
·         Amazon Bedrock Service-Specific Terms: https://aws.amazon.com/service-terms/#Amazon_Bedrock

Q: Does AWS provide additional EULA terms for third-party models?
A: Yes. For more information, see:
·         AWS Service Terms: https://aws.amazon.com/service-terms/
·         AWS Data Processing Addendum (DPA): https://aws.amazon.com/service-terms/data-processing-addendum/

Q: Does AWS have an acceptable use policy?
A: Yes. See the AWS Acceptable Use Policy:
·         https://aws.amazon.com/aup/

Google Vertex AI Hosting

Q: What information does Google Vertex AI process?
A: Please refer to Google's Privacy Policy and Vertex AI data governance and privacy documentation:
·         Google Privacy Policy: https://policies.google.com/privacy
·         Vertex AI Data Governance, Privacy, and Security: https://cloud.google.com/vertex-ai/docs/general/data-governance

Q: Does Google detail its processing of data?
A: Yes. For more information, see:
·         Google Cloud Data Processing and Security Terms: https://cloud.google.com/terms/data-processing-terms
·         Google Cloud Terms of Service: https://cloud.google.com/terms‍ ‍

Q: Does Google provide additional terms for its third-party or partner models?
A: Yes. For more information, see:
·         Google Cloud Generative AI Service Specific Terms: https://cloud.google.com/terms/service-terms
·         Vertex AI Model Garden documentation (including publisher-specific models and terms): https://cloud.google.com/vertex-ai/docs/model-garden/overview‍ ‍

Q: Does Google have an acceptable use policy?
A: Yes. See the Google Cloud Acceptable Use Policy.
·         https://cloud.google.com/terms/aup‍ ‍

Kimi / Moonshot AI

Q: What information does Kimi (Moonshot AI) process?
A: Please refer to Kimi's Privacy Policy and Data Processing & Security documentation:
·         Kimi Open Platform Privacy Policy: https://platform.kimi.ai/docs/agreement/userprivacy
·         Kimi API Data Processing & Security FAQ: https://www.kimi.com/help/kimi-api/api-data-security‍ ‍

Q: Does Kimi (Moonshot AI) detail its processing of data?
A: Yes. For more information, see:
·         Kimi Open Platform Terms of Service: https://platform.kimi.ai/docs/agreement/modeluse
·         Kimi Open Platform Privacy Policy: https://platform.kimi.ai/docs/agreement/userprivacy‍ ‍

Q: Does Kimi (Moonshot AI) provide additional terms for its models and services?
A: Yes. For more information, see:
·         Kimi Open Platform Terms of Service: https://platform.kimi.ai/docs/agreement/modeluse
·         Kimi Service Terms and Usage Policies: https://www.kimi.com/user/agreement/modelUse?version=v2‍ ‍

Q: Does Kimi (Moonshot AI) have an Acceptable Use Policy (AUP)?
A: Yes. Kimi's usage restrictions and acceptable use requirements are incorporated into its Terms of Service and Usage Policy:
·         https://platform.kimi.ai/docs/agreement/modeluse
·         https://www.kimi.com/user/agreement/modelUse?version=v2‍ ‍

Try GUIDE