Frequently asked questions
IseoDiscover is a continuous monitoring and governance platform that provides permanent insight into documents and process data—structured or unstructured—across file systems, databases, business apps (ERP, HR, CRM), and DMS. It ensures compliance, visibility, and cost control through classification, dashboards, and automated risk detection.
IseoDiscover provides continuous insight by leveraging leading enterprise AI platforms that are fundamentally built on the principle of data separation. Your data is processed in a secure, isolated tenant and is never used to train the provider's public models—the same privacy commitment that underpins tools like Microsoft 365 Copilot.
Our tool sends document metadata and content for analysis through encrypted channels (TLS 1.3+). Your data is not visible to other customers, and you retain full ownership of all the insights generated. This allows you to get permanent, real-time visibility into your documents while adhering to the highest standards of data security.
Compliance is at the core of IseoDiscover. The tool’s AI is enhanced with pre-packaged privacy grammars and linguistic models designed specifically for global regulations, ensuring accurate detection of sensitive data across 50+ languages and 95+ countries.
This allows the AI to accurately detect PII, PHI, and PCI data and flag policy violations without ever putting the data at risk. The entire process operates within a secure framework that supports compliance with GDPR, HIPAA, and ISO 270019. For ultimate security, analysis can be performed using private network endpoints, ensuring your sensitive data never traverses the public internet.
Zero Data Retention (ZDR) means:
No long-term storage of prompts, documents, or outputs beyond immediate processing
No use for model training or fine-tuning
No sharing with other customers
Typically implemented for compliance-sensitive environments (GDPR, HIPAA, SOC 2)
Why It Matters for Business
Protects confidential business data
Ensures compliance with privacy regulations
Reduces risk of data leakage or cross-customer exposure
Key Principles
Data is processed ephemerally (deleted after response generation)
Providers may retain minimal metadata for abuse monitoring unless ZDR is explicitly enabled
ZDR is usually available only in enterprise-grade offerings or via API configuration
Aspect | OpenAI (GPT) | Google (Gemini) |
​Default Training Policy | ​Enterprise/API: No training on your data unless opt-in. Consumer tiers: data may be used for training. | Enterprise: No training on your data. Consumer tiers: data may be retained and reviewed. |
Default Retention | API: up to 30 days for abuse monitoring. Enterprise can configure retention. | Logs retained for reliability/security. Consumer apps: up to 3 years unless disabled. |
Zero Data Retention Option | Yes – available for Enterprise/API customers. Prompts deleted immediately after processing. | Yes – available for Enterprise customers. Requires disabling prompt logging and caching. |
Encryption | AES-256 at rest; TLS 1.2+ in transit. | TLS 1.3 in transit, enterprise-grade controls. |
Compliance | SOC 2, ISO 27001, GDPR alignment. | SOC 2, ISO 27001, GDPR alignment. |
Business Assurance:
Both providers guarantee no training on enterprise data by default.
ZDR ensures prompts and outputs are deleted immediately after processing.
Consumer/free tiers do not guarantee ZDR and may retain data for training or quality review.
Experience our products in a live 1-on-1 demo with our expert.
Advice and insights for your unique use case
Personalized walkthrough of our main features
Additional resources specific to your needs

Joachim Freitag, Principal Consultant
%201.png)