Using AI safely at work

Is there a private ChatGPT for business?

Short answerYes, in three forms. The simplest is a business plan of a public chatbot, such as ChatGPT Business, Claude Team, or Microsoft Copilot Chat with a work account, where the vendor keeps your content out of model training by default. The second is a chat app your company administers on top of model APIs, which adds your own retention, access rules, and guardrails. The third is an open-weights model you host yourself, which keeps every prompt on hardware you control and makes you responsible for running it.

"Private" gets used for three different setups. Each one answers a different question: who can read the prompts, who decides how long they are kept, and whose hardware runs the model. For a firm of 10 to 200 people, the right choice depends on which of those questions your clients, insurers, and regulators actually ask.

What does "private" mean for an AI chatbot?

In practice it means three separate things. No training: the vendor keeps your prompts and files out of the data it uses to improve its models. Retention control: someone at your company decides how long conversations are kept and can delete them. Containment: prompts are processed only by companies you have a contract with, or by no outside company at all. A business plan of a public chatbot gives you the first and part of the second. Self-hosting gives you all three, at a price.

How do the three kinds of private AI chat compare?

Sources: OpenAI's enterprise privacy page (updated January 8, 2026), business pricing page, and API data controls; Anthropic's commercial terms, privacy center, and pricing page; Microsoft Learn pages on Copilot Chat. Read October 8, 2026. Plans and prices change often, so re-check each vendor's page before you buy.
Business plan of a public chatbotCompany-administered chat app over model APIsSelf-hosted open-weights model
ExamplesChatGPT Business or Enterprise, Claude Team or Enterprise, Microsoft Copilot Chat with a work accountAn internal chat app, built or bought, that sends prompts to OpenAI, Anthropic, or another model APIAn open-weights model running on your servers or in your own cloud account
Training on your dataOff by default on business plansOff by default on the OpenAI and Anthropic APIsNothing leaves your environment
Who holds the promptsThe chatbot vendorThe app operator, plus the model provider for up to 30 days unless it approves zero data retentionYour company
Retention controlWorkspace admins on ChatGPT Business; custom periods on Claude Enterprise; your retention policies on Copilot ChatSet by whoever administers the appEntirely yours
Admin and SSOSAML SSO on ChatGPT Business and Claude TeamDepends on the appYour team installs and runs it
Shared documentsProjects, connectors, and workspace sharingUsually workspaces with their own document collectionsYour team installs and runs it
Model choiceChosen by the vendorAny model the app connects toOpen-weights models only
Typical cost$20 a seat a month billed annually ($25 monthly) for ChatGPT Business and Claude Team standard seats; Copilot Chat at no extra cost on eligible Microsoft 365 plansApp subscription plus model usageGPU servers, storage, and staff time
UpkeepThe vendor runs everythingThe app vendor or your IT team runs the appYour team patches, monitors, and upgrades it

What do ChatGPT Business, Claude Team, and Copilot Chat each promise?

ChatGPT. OpenAI says data from ChatGPT Business, Enterprise, and its API is excluded from model training by default, and that you own your inputs and outputs. Business workspace admins can view, export, and delete members' conversations and control how long data is kept. Deleted conversations leave OpenAI's systems within 30 days unless the law requires longer. Business includes SAML SSO and MFA, connectors to Google Workspace, Slack, and Microsoft 365, and is sold for teams of 2 to 200 people.

Claude. Anthropic's commercial terms state that Anthropic "may not train models on Customer Content from Services." The Team plan adds SSO, central billing, and project sharing. Enterprise adds audit logs, role-based access, SCIM, and custom retention periods with a 30-day minimum. Without a custom period, Enterprise conversations stay until someone deletes them, and deleted chats leave Anthropic's back-end storage within 30 days.

Microsoft Copilot Chat. Staff who sign in with a Microsoft Entra work account on an eligible Microsoft 365 plan, including Business Basic, Standard, and Premium, get Copilot Chat at no extra cost. Their prompts and responses fall under Microsoft's Data Protection Addendum, stay out of foundation model training, and follow your retention, audit, and sensitivity label settings, with the exact controls depending on your plan. Two details matter. Web search queries go to Bing under separate terms, and an admin can turn web search off. And staff signed in with a personal Microsoft account get none of these protections.

Is ChatGPT Business private enough for a small business?

For most office work, yes, as long as everyone uses the company workspace. The protections belong to the workspace, so a client file pasted into someone's personal account falls under personal-plan terms. A business plan also leaves two things to you: what staff paste in, and which rules apply to client data. Is ChatGPT safe to use at work? lays out what each ChatGPT and Claude plan does with your data.

What is a self-hosted or on-premise LLM, and what does it cost?

A self-hosted model is an open-weights model downloaded and run on hardware you control, in your office or in your own cloud account. Prompts never reach an outside AI company. OpenAI itself publishes two open-weights models, gpt-oss-120b and gpt-oss-20b, under the Apache 2.0 license, and says the larger one runs on a single 80 GB GPU. For what "open" covers, see What is the difference between open weights and open source?.

The cost is mostly GPU memory. Hugging Face's rule of thumb is about 2 GB of GPU memory per billion parameters at standard 16-bit precision, so a 70-billion-parameter model needs about 140 GB just to load. Compressing the model to 8 or 4 bits cuts that, with some change in answer quality. On AWS, a g6e.12xlarge instance with four GPUs and 192 GB of GPU memory was listed at $10.49 an hour on demand in US East on October 7, 2026. Running it around the clock comes to about $7,660 a month by our arithmetic, before storage, backups, and the staff time to patch, monitor, and upgrade the model. Smaller models need less memory and cost less to run.

For most firms of 10 to 200 people, that arithmetic settles it. Self-hosting earns its cost when a contract or regulator requires prompts to stay on infrastructure you control.

How should a 10 to 200 person firm choose?

  • Start from your client contracts. If a contract or regulator names where data may be processed, that requirement picks the option for you.
  • Count what you already pay for. A firm on Microsoft 365 Business Standard already has Copilot Chat with enterprise data protection for staff who sign in with work accounts.
  • Decide who sets retention. If clients ask how long their information sits in an AI tool, choose a plan where your own admin sets that period.
  • Look for checks before the model. A company-administered app can check each prompt against your rules before it leaves and log who sent what, which a vendor's privacy terms alone leave to you.
  • Price the upkeep. A self-hosted model needs someone to run it every week, and that salary belongs in the comparison.

To follow a prompt from the keyboard to the model and back, read Where does your data go when people use AI?.

Frequently asked questions

Is there a private version of ChatGPT?
Yes. ChatGPT Business and Enterprise keep workspace data out of OpenAI's model training by default, let admins control retention and manage members' conversations, and support SAML SSO. Conversations still sit on OpenAI's servers.
What is a private LLM?
A private LLM is a language model run so that only your organization sends it prompts and sees its answers. Most often it is an open-weights model hosted on your own servers or in your own cloud account.
Can I run ChatGPT on my own servers?
ChatGPT itself runs as OpenAI's hosted service. OpenAI does publish open-weights models, gpt-oss-120b and gpt-oss-20b, that you can download and run on your own hardware, and the larger one fits on a single 80 GB GPU.
Is Microsoft Copilot Chat private?
With a Microsoft Entra work account on an eligible Microsoft 365 plan, prompts and responses are covered by Microsoft's Data Protection Addendum and stay out of foundation model training. Web search queries sent to Bing follow separate terms, and admins can turn web search off.
Does Claude Team train on company data?
No. Anthropic's commercial terms bar it from training models on customer content, and its pricing page lists no model training by default on Team and Enterprise. Enterprise also lets owners set custom retention periods of 30 days or more.
How much does a self-hosted LLM cost?
Mostly GPU hardware and staff time. A cloud server with 192 GB of GPU memory, enough for a 70-billion-parameter model at 16-bit precision, lists at about $10.49 an hour on AWS, or roughly $7,660 a month running continuously.
What is the most secure AI chat for a small business?
The one your staff use inside a company account, with retention set by your own admin and clear rules on client data. A private tool that people bypass for their personal accounts protects nothing.

Sources

  1. OpenAI, Enterprise privacy at OpenAI (updated January 8, 2026), including the ChatGPT Business, API Platform, and model training FAQs. Read October 8, 2026.
  2. OpenAI, Business pricing. Read October 8, 2026.
  3. OpenAI API documentation, Data controls in the OpenAI platform. Read October 8, 2026.
  4. OpenAI, Introducing gpt-oss (August 5, 2025). Read October 8, 2026.
  5. Anthropic, Commercial Terms of Service (effective June 17, 2025). Read October 8, 2026.
  6. Anthropic Privacy Center, How long do you store my organization's data? Read October 8, 2026.
  7. Claude Help Center, Custom data retention controls for Claude Enterprise. Read October 8, 2026.
  8. Anthropic, Claude plans and pricing (Team and Enterprise). Read October 8, 2026.
  9. Microsoft Learn, Enterprise data protection in Microsoft Copilot and Microsoft Copilot Chat (updated May 29, 2026). Read October 8, 2026.
  10. Microsoft Learn, Manage Microsoft Copilot Chat (updated October 1, 2026). Read October 8, 2026.
  11. Hugging Face, Optimizing LLMs for speed and memory (Transformers documentation). Read October 8, 2026.
  12. Amazon Web Services, Amazon EC2 G6e instances. Read October 8, 2026.
  13. Amazon Web Services, Amazon EC2 On-Demand pricing, Linux, US East (N. Virginia), price list published October 7, 2026. Read October 8, 2026.

Reviewed

Free practical kit

Ask the five questions of every tool you approve

Five questions to ask about any AI tool. A one-page worksheet to copy for each tool, a written request to send the vendor, the published training, retention, audit-log, and BAA terms for eight ChatGPT, Claude, Copilot, and Gemini plans as of October 6, 2026, and the five questions run against ChatGPT Free, Microsoft 365 Copilot, and Clio Manage AI. Ten pages, PDF.