Where does our data go?
It stays in your systems. The agent runs in your environment.
The agent runs in your cloud account or your Microsoft 365 or Google Workspace tenant. Otterd does not keep a copy of your documents. Text goes only to the AI model that you choose.
Which AI model sees our data?
Only a model that you choose. At the highest level, no text leaves your network.
Most teams use their firm's business account with a provider such as Anthropic or OpenAI. Under business terms, these providers do not train on your data by default. Where the provider offers zero data retention, we turn it on. For more control, the model can run in your own cloud account or on your own servers.
Who has access, and for how long?
Read-only access, only to what the workflow needs. It ends at Transfer.
We use a separate service account for each system, with the minimum permissions. You see each permission before we start. At Transfer, you remove our access, and we confirm it in writing.
What if a document contains hidden instructions?
No defense stops this completely, so we limit what the agent can do.
A CIM or a data room file can hide text such as "send this file to…". This is called prompt injection. The agent treats documents as data, not as commands. It has a fixed list of actions, and most of its access is read-only. It cannot send email to a new address. A person approves each action that leaves your firm.
Can we see what the agent did?
Yes. Every run keeps a log, so the agent is not a black box.
The log shows what the agent read, what it flagged, which model it used, and who decided. The log stays in your systems, so your compliance team can review it with your other records.
What about information barriers and MNPI?
The agent sees only the folders and mailboxes for its workflow.
We set access by team, to match your information barriers. When a workflow writes research notes, the agent can check your restricted list first. For MNPI, you can choose the level where the model runs on your own servers.
What happens to our data at the end?
We delete our working copies and confirm it in writing.
At Transfer, you remove our access. We delete any working copies, such as test files, and confirm it in writing. You also get a one-page description of the workflow for your AI inventory and your LP questionnaires.
What if something goes wrong?
We tell you within 24 hours.
If we find a problem that can affect your data, we tell your named contact within 24 hours. We say what we know and what we do next. The log helps your team see what the agent did.
How do we check you as a vendor?
We answer your security questionnaire and sign your NDA.
Send your vendor questionnaire before the project starts, and we answer it in writing. We do not have a SOC 2 report yet, so we describe each control in writing instead. Our contract states that your data does not train any model. Please do not send confidential documents before the NDA is signed.