27th August 2026·The Grizzlyware team

Can you put customer data into an AI tool?

padlock

For AI to be truly useful, it will usually need to work with your customer data. Simple tasks such as reading your inbox, summarising client calls or searching customer records all count as processing personal data – and depending on the tool you use, that processing often happens through a company based outside the UK.

This isn’t a reason not to use AI for these tasks. It is, however, a reason to make sure the way your customer data is handled complies with UK GDPR.

You are responsible

The most important thing to understand is that bringing in a third party does not move the responsibility off your desk. Under UK GDPR, if it is your customers’ data, you are the controller. The ICO’s position on this is clear: using AI does not reduce your obligations, and any errors it produces are yours to deal with.

The controller decides why and how personal data gets used, and holds the legal responsibility for it. A processor only handles that data on the controller’s instructions. Most businesses assume they are the controller and the AI vendor is their processor. That is often the case, but the ICO warns against treating it as a universal rule. If a provider uses the data you give it for anything beyond what you have instructed – including using it to train its own models – it is no longer simply following instructions, and becomes a controller in its own right. Your settings and the terms of your plan are what determine this, so both are worth checking.

Four questions to ask about any AI tool

All of these should be answerable from the vendor’s documentation and your own admin settings.

1. What does it do with what you put in?

You are looking for what happens to your prompts and any documents you upload: whether they are stored, how long for, and whether any staff at the provider can access them.

2. Where is that data stored?

Many of these companies are American. Sending personal data outside the UK is allowed, but only with appropriate safeguards in place. The major providers have mechanisms for this, so what you need to ask is whether you are on a plan that includes them.

3. Does it train on your content?

This varies between providers, and often between plans too. Business and enterprise tiers usually exclude your data from training by default, although you still need to check. Consumer and free tiers frequently do the opposite. On a personal ChatGPT account, for example, OpenAI turns data sharing on by default, and you have to switch it off yourself under Settings, Data Controls, ‘Improve the model for everyone’.

4. Who on your team can see what?

This is often overlooked, and it can cause you the most problems. An assistant built into your office suite can see whatever the person using it can see. If your shared drive has been accumulating permissions for a decade, AI will not create a new problem, but it can very easily expose one. Somebody who has always had access to the payroll folder, without anyone noticing, is now one question away from being shown what is in it.

Two things that catch people out

The first is personal accounts. A team member signs into their own account by accident, or because they are fed up waiting for a license. It is the same assistant, so they see no harm in it. But the moment they put customer data in, every safeguard you put in place when setting up your business account counts for nothing. This is a problem you solve through training rather than through settings.

The second is assuming that being on a business plan takes care of everything. A business plan usually means your data is not used for training, and that the provider is contractually acting as your processor. It does not configure your permissions, decide what data your team should be putting in, or teach anyone to use the tool responsibly.

Limitations of settings

For straightforward tasks like the ones above, configuring your AI assistant properly deals with most of what you need to get right. But if you branch into uses that significantly affect people – screening job applicants or monitoring staff, for example – you are heading into higher-risk territory. In those cases a Data Protection Impact Assessment is likely to be required. The ICO publishes a DPIA screening checklist and an AI and data protection risk toolkit, both free, and they are a good starting point.

Data sovereignty

Should you be handling especially sensitive data, such as medical data, self-hosted AI is also an option – albeit not the most cost effective for a standard user. We can advise on this if required.

If you are using our setup service, we will tell you if your use case calls for additional measures, and can point you towards legal advice if you need it.

Checking your setup

We help businesses choose, set up and manage AI tools, and we are vendor-neutral. We take no commission from Microsoft, Google, OpenAI or Anthropic.

If you have already connected something and are not sure what it can see, or you want it checked before you go any further, we do a free 20-30 minute call as part of our managed AI service.

Send us a message and tell us what you are using.