GitHub Copilot Business and Enterprise
GitHub states it does not use Copilot Business or Copilot Enterprise customer data to train AI models, and names zero data retention agreements with its model providers. Copilot Chat on GitHub keeps up to 100 recent conversations with messages deleted after 28 days. Copilot falls under the GitHub data protection agreement. No residency commitment is printed.
The verdict
Verified
The document exists. The ledger fetched it at its publisher and quotes it.
Key facts
What the sources say
- Record ID
- AVD-2026-0025
- Kind
- Business tier
- Jurisdiction
- United States
- Last verified
- Added
- GitHub states it does not use Copilot Business or Copilot Enterprise customer data to train AI models.
- GitHub names a zero data retention agreement with OpenAI, and equivalent arrangements for generally available features with other model providers.
- Copilot Chat on GitHub stores up to 100 recent conversations, and messages within each conversation are kept for 28 days before being permanently deleted.
- Copilot memory entries are automatically deleted after 28 days when unused.
Dimension by dimension
10 dimensions, each one stated, silent or open
Used for training by default, Retention period, Deletion on request, Storage region and residency, Subprocessor list published, Human review of content, Opt out available, DPA available, Persistent memory across sessions, Last change to the terms. Stated means the document you can open below says it; silent means the ledger read the document and it does not.
- Used for training by defaultStated
- No for these tiers. GitHub states it does not use Copilot Business or Copilot Enterprise customer data to train AI models, and the restriction extends to third party models.GitHub docs, Copilot model hosting, primary source, 15 September 2026.
- Retention periodStated
- The terms acknowledge retention outside the editor. Copilot Chat on GitHub keeps up to 100 conversations and deletes messages after 28 days.GitHub docs, chat with Copilot on GitHub, primary source, 15 September 2026.
- Deletion on requestStated
- A conversation with no messages left is removed from history automatically, and memory entries can be deleted by the user, the repository owner or an administrator.GitHub docs, chat with Copilot on GitHub, primary source, 15 September 2026.
- Storage region and residencySilent
- No residency commitment is printed. Hosting is described per model provider and spans several clouds rather than a region the customer chooses.GitHub docs, Copilot model hosting, primary source, 15 September 2026.
- Subprocessor list publishedStated
- Model providers are named per model together with their data posture, including a zero data retention agreement with OpenAI.GitHub docs, Copilot model hosting, primary source, 15 September 2026.
- Human review of contentSilent
- No human review clause appears in the generative AI services terms or in the model hosting reference.GitHub generative AI services terms, primary source, 1 March 2026.
- Opt out availableStated
- Nothing to opt out of on these tiers because there is no training use. The opt out exists on individual subscriptions, through account settings.GitHub docs, Copilot model hosting, primary source, 15 September 2026.
- DPA availableStated
- Yes. Copilot falls under the GitHub data protection agreement, which is named in the approval resources and the generative AI services terms.GitHub generative AI services terms, primary source, 1 March 2026.
- Persistent memory across sessionsStated
- Copilot memory stores repository level facts and user level preferences, and entries are automatically deleted after 28 days when unused.GitHub docs, Copilot memory, primary source, 15 September 2026.
- Last change to the termsStated
- The generative AI services terms print Version March 2026 and the general privacy statement prints Effective date 27 April 2026. The documentation pages print no dates.GitHub generative AI services terms, primary source, 1 March 2026.
Figures
Every number, with who measured it and when
- 28 days
Retention of Copilot Chat messages on GitHub
GitHub docs, chat with Copilot on GitHub, primary source, as of .
- 100 conversations
Conversations kept in Copilot Chat history
GitHub docs, chat with Copilot on GitHub, primary source, as of .
- 28 days
Automatic deletion of unused Copilot memory entries
GitHub docs, Copilot memory, primary source, as of .
What it changes
For a buyer or a workplace AI policy
Two different 28 day figures circulate for this product and only one of them was readable at the publisher. The verified one is Copilot Chat message retention on GitHub. A separate figure for prompts and suggestions sits on a trust portal that renders client side and could not be read, so a questionnaire answer should cite the documentation figure and say which surface it describes rather than quoting a number for the editor that the vendor's readable pages do not carry.
Sources
What this record was verified against
- GitHub docs, Copilot model hostingPrimary · 15 September 2026
- GitHub docs, chat with Copilot on GitHubPrimary · 15 September 2026
- GitHub docs, Copilot memoryPrimary · 15 September 2026
- GitHub generative AI services termsPrimary · 1 March 2026
- GitHub general privacy statementPrimary · 27 April 2026
Related
Records that sit beside this one
Cursor and its privacy mode
United States · verified 15 September 2026
The terms of service state that Cursor will not use content to train any AI models unless you have explicitly agreed.
Microsoft 365 Copilot, now named Microsoft Copilot
United States · verified 15 September 2026
Prompts, responses and data accessed through Microsoft Graph are not used to train foundation large language models.
Who owns the memory record an assistant builds about you?
Global · verified 15 September 2026
OpenAI states that even if you delete a chat, any saved memories from it can still be used in future conversations.
Amazon Bedrock
United States · verified 15 September 2026
Amazon Bedrock uses a zero data retention security model, so by default it does not store model inputs or outputs.
Perplexity enterprise and the Sonar API
United States · verified 15 September 2026
The developer documentation states Perplexity does not use customer data to train its models or for any purpose beyond processing the immediate request.
Perplexity on the free and paid consumer plans
United States · verified 15 September 2026
The privacy notice lists improving or creating services and products, including its AI models, among the uses of data collected.
Cite this record
Free to reuse under CC BY 4.0, with attribution. The record ID AVD-2026-0025 is permanent and is never reused.
- In a sentence
- According to the GAGE AI Vendor Data Ledger (as of 15 September 2026), github copilot business and enterprise.
- APA
- GAGE (Global Academy of Generative-AI Education). (2026). GitHub Copilot Business and Enterprise. AI Vendor Data Ledger. Retrieved 15 September 2026, from https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0025-github-copilot-business-enterprise
- MLA
- "GitHub Copilot Business and Enterprise." AI Vendor Data Ledger, GAGE (Global Academy of Generative-AI Education), 15 September 2026, https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0025-github-copilot-business-enterprise.
- Chicago
- GAGE (Global Academy of Generative-AI Education). "GitHub Copilot Business and Enterprise." AI Vendor Data Ledger. Last modified 15 September 2026. https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0025-github-copilot-business-enterprise.
- Permalink
- https://www.gage.academy/tools/ai-vendor-data-ledger/records/AVD-2026-0025-github-copilot-business-enterprise
Last updated . Every record re verified . The ledger is checked weekly, every Monday, and the same day for any terms change a vendor announces.
Back to the full ledger, or every record for United States and every business tier record.
GAGE briefings tell you which AI regulation deadlines are coming, what they actually require of you, and when a program opens.