Glossary term
Glossary term
Governance and Compliance
The practice of limiting data collection, processing, retention, and exposure to what is necessary for the AI purpose. It reduces privacy, security, and compliance risk. In AI programs, minimization influences prompt design, retrieval scope, logging, retention, fine-tuning decisions, and vendor data-sharing terms.
GDPR Article 5(1)(c) establishes data minimization as a core principle of lawful processing.
Anthropic, OpenAI, and Microsoft enterprise tiers commit not to train on customer prompts and to support zero data retention modes.
The CNIL AI How-to Sheet (2024) on Determining the Legal Basis emphasizes data minimization for AI training and inference.