How upstream AI providers may log your data, and what OpenDunes does to limit exposure.
When you send a request through OpenDunes, the prompt is forwarded to an upstream AI provider to generate the response. That provider operates under its own data policy — and in most cases, providers do retain some request data for safety, abuse detection, or model improvement purposes.
Each upstream provider's logging practices differ. Common patterns include:
OpenDunes does not have a contractual zero-retention arrangement with upstream providers by default. Treat prompt data as potentially viewable by upstream trust and safety teams.
Before any request leaves OpenDunes infrastructure, it passes through the PII redaction pipeline described in Data Collection. Sensitive Algerian identifiers — NINs, phone numbers, CCP and RIB account numbers — are replaced with [REDACTED] placeholders so they are never present in the payload that reaches the upstream provider.
This means:
[REDACTED], not the actual number.Even with redaction in place, the safest approach is to avoid including personal data in prompts at all. Practical steps:
Not yet available. OpenDunes plans to offer an enterprise tier with upstream zero-retention routing for organisations with strict data handling requirements. When live, requests on zero-retention keys will be routed exclusively to providers that offer contractual data deletion.
Model provider data policies evolve. For the current policy of a specific model's provider, refer to that provider's official documentation. OpenDunes does not represent or warrant the upstream provider's data practices.
If your organisation has specific data handling requirements under Law 18-07 or a sectoral regulation, contact us through your account dashboard to discuss available options.