How to Stop AI From Training on Your Data
If you have ever typed something into ChatGPT and then thought, “wait, where does that go?”, this article is for you. The worry is real and the fix is mostly simple. There is one setting in each tool that decides whether your conversations get used to improve the model. Most people never touch it because they never knew it was there.
I use these tools every day. I have written 14 books and made 216 songs with AI, and I am not an engineer. I learned this the same way you will, by clicking around until I understood what each switch actually did. So let me save you the clicking.
Quick answer
In most consumer AI tools, your chats can be used to train the model unless you turn that off. To stop it:
- ChatGPT: Settings, then Data Controls, then turn off “Improve the model for everyone”.
- Claude: On consumer plans it does not train on your chats by default. Check the privacy setting to confirm.
- Gemini: Go to your Google Account, find Gemini Apps Activity, and turn it off.
- Copilot: A personal Microsoft account and a work (Microsoft 365) account behave differently. Work accounts are usually protected already. For personal, look in the privacy settings.
One honest caveat, which I will come back to: turning off training does not make your chats private. Your words are still sent to the company and processed on their servers. Treat anything you type as if a careful stranger might one day read it.
What “training on your data” actually means
When a company trains an AI model, it feeds the model huge amounts of text so it gets better at predicting and responding. “Training on your data” means your conversations could be added to that pile and used to shape future versions of the model.
Here is what it does not mean. It does not mean a human is sitting there reading your chat live. It does not mean your exact words get repeated back to a stranger tomorrow. The risk is subtler and longer term: a model that has been trained on your text could, in rare cases, reproduce fragments of sensitive information, and your data sits inside the company’s systems either way.
So this setting is worth changing. It is not a panic button. It is good hygiene, like locking your car even in a quiet street.
ChatGPT (OpenAI)
This is the one most people use, so start here.
- Open ChatGPT and click your name or profile picture, usually bottom left.
- Go to Settings, then Data Controls.
- Find the option called “Improve the model for everyone” and switch it off.
When that is off, OpenAI says your new conversations will not be used to train its models. Older chats from before you changed it may already be in the system, so this protects you going forward, not backward.
There is also a Temporary Chat option, the little speech-bubble or ghost icon near the top of a new chat. A temporary chat is not saved to your history and is not used for training. I use it for anything I want to ask once and forget, like a quick health question or something I would not want sitting in my sidebar.
Claude (Anthropic)
Claude is a bit different, and in a good way for the cautious. On the standard consumer plans, Anthropic does not use your conversations to train its models by default. That is the starting position, not something you have to switch on.
Menus change and policies get updated, so do not just take my word for it. Open Settings, look for a Privacy section, and confirm the current state for your account. If there is ever an option to opt in to sharing your chats for improvement, you will see it there, and you can leave it off.
This is the calmest of the four to set up, but the honest limit below still applies: your messages are still sent to and processed by Anthropic.
Gemini (Google)
Gemini ties into your Google Account, which is both convenient and the thing to watch.
- Go to your Google Account (myaccount.google.com) while signed in.
- Look for Gemini Apps Activity. You can also reach it from inside the Gemini app under Activity or the settings menu.
- Turn it off.
With Gemini Apps Activity off, your future conversations are not saved into that activity log and are not used to improve Google’s models in the same way. You can also delete past activity from the same screen, which I would do at the same time. One thing to know: even with this off, Google may keep conversations for a short period for safety and to run the service, so it is not instant invisibility.
Copilot (Microsoft)
Copilot is the one where the type of account changes everything, so read this part twice.
- If you use Copilot through a work or school Microsoft 365 account, your organisation usually has data protection built in, and your prompts are generally not used to train the public models. This is often called commercial data protection. Your IT team controls the finer settings.
- If you use the free, personal Copilot with a regular Microsoft account, you are in consumer territory. Look in Copilot’s settings or your Microsoft account privacy dashboard for the option covering model training and personalisation, and turn it off.
If you are not sure which account you are on, check the email address Copilot is signed in with. A company or school address means work account. A personal Outlook, Hotmail or Gmail address means consumer.
A note that applies to all four: these companies redesign their menus often. If a label has moved or been renamed, do not give up. Look for the words data, privacy, activity, training, or improve the model. The control is almost always near one of those.
The never-share list
Changing a setting is the easy part. The bigger protection is what you choose not to type in the first place. Never paste these into any AI tool, no matter how the privacy settings are configured:
- Passwords, PINs or security codes.
- Bank account, credit card or other financial numbers.
- Passport, licence, tax file or other ID numbers.
- Other people’s private details. Your client’s address, your friend’s diagnosis, your child’s school routine. It is not yours to share.
- Full medical or legal documents that still carry names and identifying information.
Think of it like this: you are the Captain, and AI is the crew. The crew is brilliant and fast, but you do not hand the crew the keys to the safe.
The honest limit: off does not mean private
This is the part most articles skip, so I will not. Turning off training does not make your conversation private. Your text still travels to the company, gets processed on their servers, and may be stored for a while for safety, troubleshooting and legal reasons. Staff can review flagged content. None of that stops just because training is off.
The training switch lowers one specific risk. It does not turn the tool into a sealed diary. The right mindset is simple: treat anything you type as if a careful stranger might read it one day. If you would not be comfortable with that, do not type it.
A practical habit that actually works
Here is what I do, and it takes no real effort once it is a habit.
- For sensitive one-offs, use a temporary or incognito chat rather than your normal saved one.
- Strip the identifying details before you paste. Swap real names for “my colleague”, change the actual numbers, remove the address. The AI can still help you draft the email or understand the contract clause without knowing exactly who is involved.
- Do the privacy settings once per tool, then forget about them.
That combination gives you most of the safety with almost none of the fuss.
FAQ
If I turn off training, are my old chats safe? Mostly the change protects you from that point forward. Conversations from before you switched it off may already be in the system. Delete old chats and activity where the tool lets you, for extra peace of mind.
Is the paid version more private than the free one? Sometimes, yes. Paid and business tiers often come with stronger data protection by default, especially work accounts. But you should still check the actual setting rather than assume the money bought you privacy.
Can the company still see what I type if training is off? Yes, potentially. The data is still sent to and stored by them, and staff can review flagged content. “Not used for training” and “private” are two different things. Plan for the second, not just the first.
If you want a calm, step-by-step walkthrough of setting all of this up safely, the free Module 1 of Cleared For Take-Off Academy covers a private setup from scratch.