Skip to content
SpeechToWork
100% local · GDPR-compliant without the cloud

Is Claude GDPR compliant? What Anthropic does with your data

Whether Claude is GDPR compliant depends mainly on your plan: since autumn 2025, Anthropic may use chats on Free, Pro and Max to train its models unless you switch that off, and then keep them for up to five years. This guide explains what happens to your data, the known incidents, what UK businesses need under UK GDPR and how to set Claude up.

Golden sound wave under a glass dome, symbolising protected data
  • 5 yearsis how long Anthropic keeps chats for training if model improvement is switched on.
  • 30 daysuntil deleted chats are removed from Anthropic’s systems, according to Anthropic.
  • 100%stays on your computer with SpeechToWork. Nothing goes to an AI provider.

Is Claude GDPR compliant? The short answer

In short: Claude can be used in line with UK GDPR, but not on every plan and not with every kind of data. Free, Pro and Max are consumer plans without a data processing agreement, and Anthropic uses chats there for training while the model improvement setting is on. Team, Enterprise and the API run under the commercial terms, with a data processing addendum and no training. In every case your data goes to a US-based company.

The most common mistake: a paid Pro or Max subscription is not a business plan. According to Anthropic, the consumer terms cover Free, Pro and Max alike, including Claude Code used with those accounts. If staff paste client data into Claude on a personal Pro account, your business has no processing agreement for it.

According to its privacy policy, the controller for users in the UK, the EEA and Switzerland is Anthropic Ireland, Limited in Dublin. For transfers to affiliates and service providers in countries without an adequacy decision, Anthropic relies on standard contractual clauses. Its data processing addendum for business customers includes the UK International Data Transfer Addendum.

What happens to your data in Claude

The rules differ sharply between consumer and business plans. This overview summarises Anthropic’s Privacy Center:

PlanTrainingRetentionProcessing agreement
Free, Pro, Max (incl. Claude Code on these)Yes, while the model improvement setting is onWith training, up to 5 years (de-identified). Deleted chats removed within 30 daysNo
Team, EnterpriseNo, not by default according to AnthropicUntil you delete, then removed within 30 days. Enterprise can set its own periodsYes, part of the commercial terms
API (direct with Anthropic)NoDeleted within 30 days according to Anthropic, zero data retention by agreementYes, part of the commercial terms

On every plan, if safety systems flag a chat as breaching the usage policy, Anthropic keeps inputs and outputs for up to two years and the classification scores for up to seven. Thumbs up or down feedback keeps the conversation for five years. According to the privacy policy, flagged chats and reported material are used for model improvement even if you have switched training off. Anthropic names its legitimate interests as the legal basis for training. Incognito chats are never used for training, Anthropic says.

Where the servers are: via the API you can only choose whether inference runs solely in the US or in any region (“global”), according to Anthropic’s documentation. The only storage location currently available is “us”. Anthropic does not offer UK-only or EU-only processing directly. If you use Claude through Amazon Bedrock or Google Cloud, you choose the region there, and the cloud provider is the processor.

New since 9 June 2026: for its most capable models, which Anthropic designates “Covered Models”, prompts and outputs are kept for 30 days on every platform, including for organisations that otherwise use zero data retention. Anthropic’s reason: spotting patterns of misuse. Consumer plans are not affected.

Known problems, cases and incidents

We found no fine or completed investigation by the ICO or a European data protection authority against Anthropic (as of September 2026). These points are on record:

  1. 28 Aug 2025
    Training on consumer chats, five-year retention. Anthropic announced it would use chats and coding sessions from Free, Pro and Max for training unless users opted out, and keep that data for five years instead of 30 days. Existing users had until 8 October 2025 to choose. According to TechCrunch, the pop-up showed a large “Accept” button with a much smaller training toggle below it, set to “On”. Sources: Anthropic, TechCrunch.
  2. Ongoing
    Risk when creating files. In its help article on creating and editing files, Anthropic itself warns that with network access switched on, Claude could be tricked through prompt injection, hidden instructions in files or web pages, into sending data to external servers. Source: Claude Help Center.
  3. 31 Mar 2026
    Claude Code source code exposed. A packaging error in a public npm release made the source code of the Claude Code tool readable. According to Anthropic, no customer data or credentials were exposed. Source: heise online.
  4. 8 Jul 2026
    ID checks for some users. Since the privacy policy of 8 July 2026, Anthropic may ask for photo ID in certain cases, handled by the provider Persona. According to heise, Anthropic now stores this identity data rather than deleting it straight away; mainly accounts suspected of fraud are affected. Sources: Anthropic, heise online.
  5. 30 Jul 2026
    Models broke into third-party systems during tests. Anthropic reported that, because of a misconfiguration, Claude models had internet access during security evaluations and gained access to systems of three organisations, including credentials and several hundred rows of production data. Those affected were notified on 27 July 2026. Source: Anthropic.

The pattern applies to every cloud service, not just Anthropic: terms for the same app change, retention periods get longer, and security depends on features you do not control. For OpenAI, see our guide Is ChatGPT GDPR compliant?

Claude at work: what UK GDPR requires

As soon as staff enter client, patient or employee data, your business is the controller under UK GDPR. That means:

  • A processing agreement (Article 28 UK GDPR): only on Team, Enterprise or the API. Anthropic’s DPA becomes part of the commercial terms automatically and commits Anthropic to report security breaches without undue delay, and in any event within 48 hours.
  • International transfers: data goes to the US. Document the transfer mechanism and, where you rely on the UK Addendum to the standard contractual clauses, a transfer risk assessment. The ICO’s guidance on international transfers explains the steps.
  • A data protection impact assessment: likely needed once you process special category data such as health data, or large volumes of client data. The ICO’s guidance on AI and data protection covers what regulators expect.
  • A staff AI policy: which plan, which accounts, which data must never be entered, which settings are mandatory. Ban personal Free, Pro and Max accounts for business data explicitly.
  • Professional confidentiality: solicitors, accountants and medical practices owe duties of confidentiality that go beyond data protection law. A consumer account does not meet them; check business plans with your regulator’s guidance and your data protection officer.
  • EU customers: if you offer AI systems or their output in the EU, the EU AI Act may apply, including the AI literacy duty. See our guide to the EU AI Act.

Anthropic publishes its list of sub-processors at anthropic.com/subprocessors.

Claude privacy settings step by step

To switch off training on a Free, Pro or Max account, according to Anthropic’s help:

  1. Open claude.ai and click your name in the bottom left.
  2. Select Settings.
  3. Open Privacy, or go straight to claude.ai/settings/data-privacy-controls.
  4. Switch off the model improvement toggle. Anthropic has called it “Help improve Claude”; the current help calls it “Help improve our AI models”.
  5. In the mobile app: your name, Settings, Privacy, same toggle.

Note: switching it off only affects future chats. According to Anthropic, your data stays in training runs that have already started and in models already trained. For one-off confidential questions, use an incognito chat, which is not used for training. Delete individual chats in the sidebar; Anthropic says they disappear from your history at once and from its systems within 30 days.

On Team and Enterprise, your organisation sets the rules. Enterprise admins can configure custom retention periods.

Why a local assistant is the safer choice for your office

Every agreement, toggle and retention period on this page has one cause: your input leaves your computer and ends up with Anthropic in the US. A local assistant turns that around. Speech recognition and the language model are files on your PC and run there.

  • No recipient: dictations, emails, documents and recordings go to no provider, so there is no processing agreement and no international transfer for that content.
  • No training, no reviewers: there is no toggle anyone can forget and no retention period at a third party.
  • No terms that change overnight: what the software does does not depend on a new version of someone’s privacy policy.
  • Confidential matters stay in-house: client, patient and customer data need no redacting, because they are not transferred anywhere.

SpeechToWork is such an assistant for Windows: dictate, write emails, ask questions about documents, take meeting minutes, transcribe audio and read receipts, all on your own computer. It has limits: the local language model is smaller than the big cloud models, knows less about the world and does not search the web. It runs on Windows 10 and 11 only and needs a reasonably recent PC, with 16 GB of memory recommended. For office work where all the information is already in the text, it is enough.

More on our pages about GDPR-compliant AI and local AI.

An example

What you say. What appears.

You sayClient email selected, then spoken: “Reply that we’ll review the documents by Friday and ask for the missing signed authority.”
In your programDear Ms Collins, Thank you for sending the documents. We will review them by Friday and get back to you. To proceed, we still need the signed letter of authority. Could you please send it to us? Kind regards
Your advantage

Why SpeechToWork fits this job.

No toggle to forget

Training is not a setting in SpeechToWork. Your text goes to no one, so it goes into no training.

No processing agreement for your content

Dictations, emails and documents are processed on your PC. No provider receives them.

No retention at a third party

Not five years, not 30 days: what you delete exists only on your own computer.

Privacy

Local means local. No compromises.

Speech recognition and the language model are installed on your PC and run there. What you dictate ends up in your program and nowhere else. How the data flow works.

No upload

Audio and text stay on your computer. There is no server listening in and no AI provider in the background.

GDPR made simple

No third party processes your dictations. So there is no data processing agreement to sign and no international transfer to assess.

Works without internet

Once installed, SpeechToWork works offline. Only the licence check needs a connection.

Good to know

Frequently asked questions

Is Claude GDPR compliant?

Only on business plans without further ado. Team, Enterprise and the API come with a data processing addendum, standard contractual clauses plus the UK Addendum, and no training. Free, Pro and Max are consumer plans without that agreement, and Anthropic trains on chats while the setting is on. They are not suitable for client data at work.

Does Anthropic use my Claude chats for training?

On Free, Pro and Max, yes, while the model improvement toggle is on; Anthropic then keeps those chats for up to five years. Switch it off under Settings, Privacy, but that only applies to future chats. On Team, Enterprise and the API, Anthropic says it does not train on your data.

How long does Claude keep my data?

It depends on plan and setting. Deleted chats are removed within 30 days. With training on, chats stay in training data for up to five years. Chats flagged for policy breaches are kept for up to two years, feedback for five years. Anthropic says API data is deleted within 30 days.

Where are Claude’s servers?

Anthropic is a US company. According to its documentation, the API only lets you choose between inference in the US or in any region, and storage is currently in the US. There is no UK-only or EU-only option directly from Anthropic. Through Amazon Bedrock or Google Cloud, you pick the region with the cloud provider.

Is Claude Pro safe for business use?

Not for personal data about clients or customers. Despite the subscription, Pro and Max are consumer plans: there is no processing agreement, and Anthropic trains on chats while the toggle is on. Businesses should use Team, Enterprise or the API, or a local assistant where data never leaves the computer.

Who regulates Claude’s use of personal data in the UK?

The Information Commissioner’s Office. According to Anthropic’s privacy policy, Anthropic Ireland, Limited is the controller for UK users, and it lists the ICO as the UK authority for complaints. If your business uses Claude with personal data, you are accountable to the ICO for that processing yourself.

Coming soon

Coming soon. Then try it for 14 days.

SpeechToWork is about to launch. As soon as the first version is ready, you can download it here: one click, one file, no form.

Coming soon

For Windows 10/11 (64-bit). The download will be available here as soon as it is ready.

  • All features, no payment details
  • Ends automatically, nothing to cancel
  • Your dictations never leave your computer, not even in the trial
  1. Download

    One installer for Windows, straight from our server.

  2. Install

    A double click is all it takes. No administrator rights needed.

  3. Choose “Try for 14 days”

    On first start: enter your name and business email, no payment method.

On first start, SpeechToWork downloads the language models once (4 to 6 GB). Already have a licence key? Enter it on first start. What is transferred in the process is explained in our privacy policy.

Coming soon