All insights

Sovereignty, Data & AI

Can You Trust AI With Your Family's Private Information?

You can use AI with private family data safely — but only under the right terms. Consumer tools often train on inputs; enterprise ones typically don't. The safe rules.

Published 5 min read Essay

Overview

You can use AI with a family's private information safely, but only under the right terms. Consumer AI tools often use what you type to improve their models; enterprise arrangements with proper contracts typically do not. The safe rule is to treat any public tool as non-private unless its terms say otherwise, and to keep the family's core data inside systems the family controls.

The question is not whether AI is trustworthy in the abstract. It is which arrangement you are using, and whether you read the terms before you pasted in the balance sheet.

Is it safe to use AI with private family data?

It is safe to use AI with private family data under the right conditions, and risky under the wrong ones. The safety depends almost entirely on the arrangement: a consumer chatbot on default settings and an enterprise deployment under a data-processing agreement handle your data very differently, even if the underlying model is the same.

The mistake families make is treating "AI" as one thing. It is not. The same question typed into a free consumer tool and into a properly contracted enterprise system produces different privacy outcomes. Knowing which you are using is the whole of the safety question.

"Is AI safe?" is the wrong question. "Under which terms am I using it?" is the right one.

What happens to what you type into AI tools?

What happens depends on the tier. A 2025 Stanford HAI study of leading AI developers' privacy policies found that major consumer chatbots commonly feed user inputs back into their models to improve them, with some offering an opt-out and some not. Enterprise and business tiers, by contrast, typically do not train on customer data and carry contractual and technical protections that consumer tiers lack.

Researchers have summarised the split bluntly: in the consumer model, your data is effectively the product; in the enterprise model, privacy is the product being sold. There are further wrinkles — data may be retained for a period even after deletion, and providers have at times been ordered to preserve logs — but the core distinction is tier, and it is knowable before you type.

What's the real risk for a family?

The real risk for a family is that its most sensitive information — entity structures, balances, beneficiaries, family circumstances — becomes training data, retained data, or exposed data, simply because it was pasted into the wrong tier. Once sensitive detail enters a system on consumer terms, the family has lost control over it in a way that is hard to reverse.

The exposure is rarely dramatic and almost always avoidable. It comes from convenience: a quick question typed into whatever tool was open, with the family's private picture in the prompt. The harm is not that the tool is malicious. It is that the family gave up control it did not need to give up.

How do you use AI safely with sensitive wealth data?

You use AI safely by setting simple rules and following them. Treat any public tool as non-private by default. Never paste the family's core sensitive data — identifiers, structures, balances — into a consumer tier. Use enterprise arrangements with proper terms for anything sensitive. And keep the family's master record inside a system the family controls, so the crown jewels never leave home in the first place.

Situation Safe approach
Quick general question Consumer tool fine — no family data in the prompt
Anything with family specifics Enterprise arrangement with proper terms, or don't
The family's core record Kept in a family-controlled system, not pasted anywhere

The sovereign approach: AI over data you own

The durable answer is to run AI over data the family owns rather than sending the family's data out to AI. That is the logic of sovereign AI for family wealth: keep the single source of truth in the family's control, and bring tools to it on the family's terms, rather than dispersing the picture into systems the family does not govern. Trust becomes a matter of design, not hope.

Frequently asked questions

Do AI tools use your data for training?

Many consumer AI tools do use inputs to improve their models, sometimes by default with an opt-out and sometimes without one — a 2025 Stanford HAI study found this across several leading developers. Enterprise and business tiers typically do not train on customer data and carry stronger contractual protections. Whether your data is used depends on the tier and its terms, which is why reading them before entering sensitive information matters.

How can a family use AI without compromising privacy?

A family can use AI safely by keeping its core sensitive data out of consumer tools, using properly contracted enterprise arrangements for anything sensitive, and holding its master record in a system the family controls. The strongest approach is to run AI over data the family owns rather than sending the family's data out — keeping the picture sovereign and bringing tools to it. --- *This article discusses data privacy in general terms and is not legal advice; a family's obligations depend on its jurisdiction and the specific tools it uses.* **See the Operating System →**

Share this essay
Share

The Coordinator

Our newsletter on the craft of running complex wealth.

Registers, decision rights, compliance calendars, and the work only a person can do. Twice a month, and no pitch.

Subscribe to The Coordinator