Use AI without leaking your data
Plain-English guides to AI and data security: how data leaks through ChatGPT, Claude, Gemini and other large language models, and the controls that stop it, from AI data loss prevention (AI DLP) and PII redaction to policy and compliance.
Foundations
AI Data Loss Prevention (AI DLP): How to Stop Data Leaks to ChatGPT and Other AI
What AI data loss prevention is, why classic DLP misses data sent to ChatGPT, Claude and Gemini, and how to put AI DLP in place for yourself or a whole organization.
LLM Data Security: Risks, Controls and a Practical Checklist
How data moves through large language models, where it can leak (prompts, logs, training, outputs, integrations) and the controls that protect it, with a checklist you can use today.
AI Security Glossary: Key Terms Explained in Plain English
Short, plain-English definitions of AI and data security terms: AI firewall, AI DLP, PII, PHI, prompt injection, shadow AI, RAG, redaction, data residency and more.
Risks
Shadow AI: What It Is, Why It's Risky, and How to Manage It
Shadow AI is the use of AI tools without IT approval. Learn why it happens, what it costs when it goes wrong, and a five-step plan to bring it under control without banning AI.
Is ChatGPT Safe for Work Data? What Happens to What You Type
What happens to the text and files you send to ChatGPT, Claude and Gemini, which plans train on your data, and the simple rules that make AI safe to use at work.
Prompt Injection Explained: How It Works and How to Defend Against It
Prompt injection tricks an AI model into ignoring its instructions. See direct and indirect examples, why it can leak data, and the defenses that reduce the risk.
Controls
Policy & compliance
Generative AI Acceptable Use Policy: A Template for Your Company
A free, plain-English template for a generative AI acceptable use policy: approved tools, data that must never be shared, review rules and how to enforce it.
Using AI Under GDPR, HIPAA and PCI DSS: What Data You Can Send
How GDPR, HIPAA and PCI DSS apply when staff use ChatGPT and other AI tools, which data needs extra care, and the practical safeguards regulators expect.
More on AI firewalls
AI Firewall
How a check at the Send button stops secrets and personal data reaching AI.
Prevent ChatGPT data leaks
Settings, habits and tools that keep sensitive data out of ChatGPT.
AI prompt security
What should never go into a prompt, and how to check automatically.
API key protection
Keep keys and tokens out of AI chats, and what to do if one slips.
Put the guides into practice
EraseAI checks every message to ChatGPT, Claude and Gemini before it is sent. Free in Chrome.
Add to Chrome — it's free