Claude Code

Data usage and privacy

Training policy, retention, local plaintext, telemetry, feedback, WebFetch checks, cloud execution and gateway boundaries.

This page describes local, cloud, account, provider and Passion8 data flows. Formal Anthropic, provider and Passion8 policies govern legal terms.

Any tool result, terminal output, MCP response, file excerpt, screenshot or log added to a session may enter model requests. Avoid raw secrets, bulk customer data and production logs.

#Training policy

User typeOfficial defaultConsideration
Free/Pro/MaxUsers choose model-improvement participationApplies to Code using those accounts
Team/EnterpriseNo generative-model training under commercial terms by defaultExplicit organizational opt-in exceptions
Anthropic APINo training by defaultExplicit programs can opt in
Bedrock/Vertex/FoundryProvider and commercial termsCheck cloud logs and encryption too
Passion8/custom gatewayDepends on gateway and upstream chainReview provider, gateway and your logging together

#Retention

DataOfficial explanationAction
Consumer improvement enabledMay be kept longer for improvement/safetyManage account privacy settings
Consumer improvement disabledGenerally shorter retentionDoes not clear local transcripts
Commercial/APIGenerally shorter commercial retentionAsk about ZDR eligibility
Feedback submissionsFeedback/transcripts may be retained longerSubmit only when needed and redact
Session ratingsRating alone is not transcript uploadTranscript sharing is a separate choice
Local transcriptsPlaintext under ~/.claude/projects/Configure cleanupPeriodDays; clean sensitive projects

Local and server retention are separate. Even strict server policy leaves recoverable sessions, logs, configuration and state locally.

#Local data flows

Code runs locally but sends model requests to the selected provider.

DataSent whenControl
User promptEach model requestAvoid sensitive raw input
Assistant outputIncluded as continuing historyClear or start a new session
Read excerptsTool results enter contextDeny rules, hooks and bounded reads
Bash outputAdded to contextFilter secrets and lengthy logs
MCP outputReturned into contextServer filtering and MAX_MCP_OUTPUT_TOKENS
Images/PDFsRequest inputsCrop/compress and avoid sensitive captures
WebFetch contentAfter retrievalPermissions and domain allowlists

Passion8 requests pass through the gateway to an upstream. Inspect client output, gateway console and provider status for costs, caches, logs and errors.

#Cloud execution

Web Code, Routines and cloud sessions run in hosted environments, not your local shell.

ItemLocalCloud
CodeLocal repositoryClone in an isolated VM
CredentialsLocal environment/filesCloud connectors and authorization proxies
NetworkLocal networkCloud proxy/allowlists
Local filesPermission-controlled accessNo automatic access to unuploaded files
Passion8 variablesAvailable in local shellNot automatically inherited

Use local Code for LAN services, private databases or uncommitted files unless cloud access is explicitly configured.

#Telemetry, Sentry and feedback

MechanismDefault behaviorDisable with
TelemetryOfficial paths collect reliability/usage signalsDISABLE_TELEMETRY=1
SentryError reporting may be enabledDISABLE_ERROR_REPORTING=1
/feedbackUser submission may include history/codeDISABLE_FEEDBACK_COMMAND=1
Quality surveyRating; transcript sharing separateCLAUDE_CODE_DISABLE_FEEDBACK_SURVEY=1
Nonessential trafficBroad optional-egress controlCLAUDE_CODE_DISABLE_NONESSENTIAL_TRAFFIC=1

Defaults can differ on cloud providers or proxies. Deliver enterprise variables/policy consistently rather than relying on individual memory.

#WebFetch domain checks

Preflight sends the hostname, not the complete URL, path or page content, and briefly caches the result by hostname.

NeedConfiguration
Default checksKeep defaults
Cannot reach api.anthropic.comAllow access or configure skipWebFetchPreflight
Restrict external domainsWebFetch(domain:...) permissions
Prevent shell bypassRestrict curl/wget or use hooks/sandbox

Disabling preflight causes direct URL access attempts; domain permissions become more important.

#Local plaintext data

Code stores resume, project and diagnostic state locally:

LocationContent
~/.claude/projects/Transcripts, state and resumable sessions
~/.claude.jsonApplication/project/login/MCP-related state
~/.claude/feedback-bundles/Local third-party-provider feedback bundles
Project .claude/Team settings, commands, skills, agents and styles

Cleanup recommendations:

claude project purge

Shorten cleanup periods for sensitive projects:

~/.claude/settings.json
{
  "cleanupPeriodDays": 7
}

Do not commit ~/.claude/ or settings.local.json.

#Passion8 recommendations

RiskRecommendation
Key exposureUser environment, not project settings
Gateway logsKeep secrets, customer originals and large logs out of requests
Cache fieldsVerify forwarding; see gateway
MCP dataRead-only databases with bounded fields/rows
Team governancePermissions/hooks for sensitive paths
External pagesExplicit WebFetch allowlist

#Caching and privacy

Cache TTL is a reuse window, not a privacy or transcript-retention boundary. Five minutes or one hour does not describe all server/local retention.

ConceptMeaning
Prompt cacheProvider prefix-reuse window
Local transcriptPlaintext resume history
Server retentionAccount/policy-dependent request retention
Gateway logsPassion8/custom gateway records

See prompt caching. For enterprise retention evaluation, see ZDR.

#Official references

Support

Need help?

For setup, billing, or model issues, email us. Check the status page for uptime.

WeChat / QQ support is available at the bottom right.