OpenAI launches private safety checks that watch for abuse without storing your data

A new system called Private Safety Processing scans conversations for misuse across multiple sessions, then deletes everything. It is a direct shot at Anthropic, which keeps customer data for 30 days under its newest policy.

AI2Day Newsdesk4 min read
Photoreal news-editorial style, 16:9 framing, edge-to-edge
Share

Key points

  • OpenAI is previewing Private Safety Processing, a new automated safety system that monitors for misuse without retaining any customer data.
  • Anthropic announced a policy in July 2025 to hold user conversation data for 30 days on what it calls "covered models," a move that has unsettled some enterprise customers.
  • Anthropic's annualised revenue run rate is reportedly $65 billion, ahead of OpenAI's growth pace in Q2 2025.
  • If OpenAI's system flags suspicious behaviour, it sends a narrow warning signal to the company, but no human reads your conversations unless you choose to share them.
  • Both companies are heading toward IPOs, making the race for enterprise trust a financial priority, not just a technical one.

OpenAI wants enterprise customers, the big companies that pay serious money to plug AI into their products, to know this: it can watch for bad behaviour without ever reading what those customers type.

The company is previewing a new service called Private Safety Processing to a select group of customers. Think of it as a security camera that records suspicious movement but automatically wipes the footage every session, unless it spots something genuinely alarming.

What does this actually mean for businesses using AI?

For any company worried about sensitive data landing in an AI lab's hands, this matters. Private Safety Processing extends what is already standard practice at OpenAI.

That existing practice is called Zero Data Retention, or ZDR, a policy where AI software agents (automated programs, not human staff) scan each conversation for abuse in real time and then discard it. No storage, no human eyes.

Private Safety Processing goes further. It can watch patterns across multiple conversations over time, not just a single session, using an automated agent to look for signs that someone is slowly building toward something harmful. Spreading out requests to avoid detection is a known tactic for bad actors, such as someone quietly asking an AI to help design malicious software one step at a time. This system is designed to catch that.

If the agent spots a problem, it sends a "narrowly defined signal" to OpenAI, flagging the type of concern without forwarding the actual conversation. OpenAI then decides whether to act, and if it does, it reaches out to the customer for context. You choose whether to hand over any data at that point.

Why is OpenAI doing this now?

It is a direct response to Anthropic, its closest competitor. As first reported by TechCrunch AI, the timing lines up neatly with customer friction over Anthropic's newer data policy.

In July 2025, Anthropic announced it would retain customer conversation data for 30 days on what it calls "covered models," which include its most capable AI systems. The company says a small team of approved reviewers can access that data through a controlled process, with every review logged in a tamper-proof record. Anthropic's stated reason is safety: having those conversations lets it investigate potential abuse.

Some enterprise customers, particularly those in healthcare, law or finance, handle information so sensitive that even a 30-day retention window at a third-party AI lab is a hard no.

Feature OpenAI (Private Safety Processing) Anthropic (Covered Models Policy)
Data retained after session No Yes, 30 days
Multi-session monitoring Yes Yes
Human review of data No (unless customer shares) Yes, via approved reviewers
Tamper-proof audit log Not specified Yes
Currently available Preview only Active since July 2025

The business stakes behind all of this are real. Anthropic's annualised revenue run rate sits at roughly $65 billion, and investors have floated a $2 trillion valuation ahead of a possible public listing. OpenAI is also working toward an IPO. Winning over privacy-conscious enterprise clients could move those numbers meaningfully.

What should businesses do right now?

If your company uses an AI API (a technical connection that lets your product talk to an AI model) to process sensitive data, ask your provider two direct questions: do you retain my data, and under what conditions can a human at your company read it?

OpenAI's Private Safety Processing is still in preview, meaning it is not yet available to everyone. But the direction of travel is clear: privacy is becoming a competitive selling point, not just a compliance checkbox.

A word of caution, though. We hear about the enterprises that feel protected by these policies. We hear far less about the ones where a privacy promise failed to hold. Read the terms, not just the press release.

© 2026 AI2Day