Where does this provider put your AI data — and who can compel its disclosure?
| Residency | Region-dependent — unresolved until an endpoint region is pinned (region scheme: azure) |
|---|---|
| Sovereignty | United States us |
| Endpoints | openai.azure.com, api.cognitive.microsoft.com, inference.ai.azure.com |
| Packages | @azure/openai (npm), @ai-sdk/azure (npm), com.azure.ai.openai (Java), Azure.AI.OpenAI (.NET) |
| KB note | regional hosts (<region>.api.cognitive.microsoft.com, *.<region>.inference.ai.azure.com) resolve; the standard openai.azure.com does not carry a region |
How does this provider treat the data you send it? Advisory statements about documented practices — not legal advice.
| Trains on customer API data by default | No source — 'prompts and completions are NOT used to train any generative AI foundation models without your permission or instruction'; 'The models are stateless: no prompts or completions are stored in the model' (retrieved 2026-08-21) |
|---|---|
| Retention (API inputs/outputs) | Models are stateless: no prompts or completions are stored in the model. Stateful features (Responses API, Assistants Threads, Stored completions, Files/vector stores) persist data in the resource's Azure geography until deleted. Abuse monitoring stores prompt/completion samples only when flagged, in logically separated per-resource stores; modified abuse monitoring turns this off for approved customers. source — Sections 'Generating completions...' (stateless models), 'Data storage for Models sold by Azure features', and 'Preventing abuse' (flagged-sample storage, logical separation, modified abuse monitoring) (retrieved 2026-08-21) |
| Subprocessor list | https://aka.ms/DPA — Microsoft Products and Services Data Protection Addendum, linked from the data-privacy article intro (retrieved 2026-08-21) |
| Enterprise tier | Modified abuse monitoring requires application and approval; customers can verify logging is off via the ContentLogging=false capability attribute in the Azure portal/CLI. source — 'How can a customer verify if data storage for abuse monitoring is off?' (ContentLogging=false); 'managed customers may apply to modify abuse monitoring' (retrieved 2026-08-21) |
| Entry last reviewed | 2026-08-21 |