The paid Gemini API and Vertex AI
On the paid tier Google does not use prompts or responses to improve its products, and logs them for a limited period solely to detect violations of the prohibited use policy. On the cloud platform Google states it will not train or fine tune models on customer data without prior permission. Abuse monitoring logs are held up to 90 days in the selected region.
The verdict
Verified
The document exists. The ledger fetched it at its publisher and quotes it.
Key facts
What the sources say
- Record ID
- AVD-2026-0011
- Kind
- API and platform
- Jurisdiction
- United States
- Last verified
- Added
- On paid services Google states it does not use prompts, system instructions, cached content or files, or responses to improve its products.
- The cloud data governance page states Google will not use customer data to train or fine tune AI models without prior permission or instruction.
- Abuse monitoring prompt logs are stored securely for up to 90 days in the same region or multi region the customer selected.
- Customers on a Google Cloud Master Agreement are exempt from prompt logging for abuse monitoring by default.
Dimension by dimension
10 dimensions, each one stated, silent or open
Used for training by default, Retention period, Deletion on request, Storage region and residency, Subprocessor list published, Human review of content, Opt out available, DPA available, Persistent memory across sessions, Last change to the terms. Stated means the document you can open below says it; silent means the ledger read the document and it does not.
- Used for training by defaultStated
- No. Paid Gemini API prompts and responses are not used to improve Google products, and the cloud page says Google will not train or fine tune on customer data without permission.Google, Gemini API additional terms of service, primary source, 23 March 2026.
- Retention periodStated
- Conditional rather than single valued. Abuse logs up to 90 days, advanced models up to 30 days, grounding with Search three days, and caches with a 24 hour lifetime.Google Cloud, abuse monitoring, primary source, 14 September 2026.
- Deletion on requestStated
- Zero retention is reached by configuration: decline request and response logging, set the store parameter to false, and request the abuse logging exception.Google Cloud, generative AI data governance, primary source, 9 September 2026.
- Storage region and residencyStated
- Abuse logs stay in the region or multi region the customer selected, and the in memory cache is described as adhering to data residency requirements.Google Cloud, generative AI data governance, primary source, 9 September 2026.
- Subprocessor list publishedStated
- The Google Cloud Platform subprocessors register is published and dated, though its entity tables sit behind collapsed sections that did not render.Google Cloud Platform subprocessors, primary source, 20 August 2026.
- Human review of contentStated
- Authorised Google employees may assess flagged prompts and may contact the customer for clarification.Google Cloud, abuse monitoring, primary source, 14 September 2026.
- Opt out availableStated
- Customers on the Cloud Platform terms may request an abuse logging exception, and customers on a Google Cloud Master Agreement are exempt from that logging by default.Google Cloud, abuse monitoring, primary source, 14 September 2026.
- DPA availableStated
- The Cloud Data Processing Addendum governs, and the paid Gemini API terms name the data processing addendum for products where Google is a data processor.Google Cloud, generative AI data governance, primary source, 9 September 2026.
- Persistent memory across sessionsStated
- No memory product. The nearest features are the conversation state of the interactions API and a live session resumption cache with a 24 hour lifetime.Google Cloud, generative AI data governance, primary source, 9 September 2026.
- Last change to the termsStated
- The paid terms print Effective 23 March 2026, the cloud data governance page prints Last updated 9 September 2026 and the abuse monitoring page 14 September 2026.Google, Gemini API additional terms of service, primary source, 23 March 2026.
Figures
Every number, with who measured it and when
- 90 days
Abuse monitoring prompt log retention
Google Cloud, abuse monitoring, primary source, as of .
- 30 days
Advanced model prompt and response logging
Google Cloud, abuse monitoring, primary source, as of .
- 24 hours
Default in memory cache lifetime
Google Cloud, generative AI data governance, primary source, as of .
What it changes
For a buyer or a workplace AI policy
Zero retention on this platform is a configuration you assemble, not a plan you buy. Three separate switches have to line up, one of which is a request to Google for an abuse logging exception, and the exception is automatic only for customers on the master agreement. If a customer questionnaire asks whether you retain nothing, the honest answer names the contract you hold and the switches you actually set.
Sources
What this record was verified against
- Google, Gemini API additional terms of servicePrimary · 23 March 2026
- Google Cloud, generative AI data governancePrimary · 9 September 2026
- Google Cloud, abuse monitoringPrimary · 14 September 2026
- Google Cloud Platform subprocessorsPrimary · 20 August 2026
Related
Records that sit beside this one
The Gemini API on the unpaid tier
United States · verified 15 September 2026
On unpaid services Google uses submitted content and generated responses to provide, improve and develop Google products and services.
Gemini for Google Workspace
United States · verified 15 September 2026
Google states Workspace does not use customer data for training models without the customer's prior permission or instruction.
Does zero data retention survive an abuse investigation?
Global · verified 15 September 2026
OpenAI states a flagged image is retained for manual review even where zero data retention, modified abuse monitoring or eyes off is enabled.
Amazon Bedrock
United States · verified 15 September 2026
Amazon Bedrock uses a zero data retention security model, so by default it does not store model inputs or outputs.
GitHub Copilot Business and Enterprise
United States · verified 15 September 2026
GitHub states it does not use Copilot Business or Copilot Enterprise customer data to train AI models.
Cursor and its privacy mode
United States · verified 15 September 2026
The terms of service state that Cursor will not use content to train any AI models unless you have explicitly agreed.
Cite this record
Free to reuse under CC BY 4.0, with attribution. The record ID AVD-2026-0011 is permanent and is never reused.
- In a sentence
- According to the GAGE AI Vendor Data Ledger (as of 15 September 2026), the paid gemini api and vertex ai.
- APA
- GAGE (Global Academy of Generative-AI Education). (2026). The paid Gemini API and Vertex AI. AI Vendor Data Ledger. Retrieved 15 September 2026, from https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0011-google-gemini-api-paid-and-vertex
- MLA
- "The paid Gemini API and Vertex AI." AI Vendor Data Ledger, GAGE (Global Academy of Generative-AI Education), 15 September 2026, https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0011-google-gemini-api-paid-and-vertex.
- Chicago
- GAGE (Global Academy of Generative-AI Education). "The paid Gemini API and Vertex AI." AI Vendor Data Ledger. Last modified 15 September 2026. https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0011-google-gemini-api-paid-and-vertex.
- Permalink
- https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0011-google-gemini-api-paid-and-vertex
Last updated . Every record re verified . The ledger is checked weekly, every Monday, and the same day for any terms change a vendor announces.
Back to the full ledger, or every record for United States and every api and platform record.
GAGE briefings tell you which AI regulation deadlines are coming, what they actually require of you, and when a program opens.