Azure OpenAI
Microsoft · Model API · US · azure.microsoft.com/en-us/products/ai-foundry/models/openai
services/azure-openai.yamlVendor data-handling terms
“Important Your prompts (inputs) and completions (outputs), your embeddings, and your training data: are NOT available to other customers. are NOT available to OpenAI or other providers of Models sold by Azure. are NOT used by providers of Models sold by Azure to improve their models or services. are NOT used to train any generative AI foundation models without your permission or instruction.”
Customers approved for modified abuse monitoring have no abuse-monitoring storage or human review.
“The models are stateless: no prompts or completions are stored in the model. / For automated review, customer's prompts and completions are not stored by the system or used to train the AI models or other systems. The abuse monitoring data store where prompts and completions are stored for human review is logically separated by customer resource (each request includes the resource ID of the customer's Foundry resource).”
“Prompts and responses are processed within the customer-specified geography (unless you are using a Global or DataZone deployment type), but may be processed between regions within the geography for operational purposes (including performance and capacity management). / For both Global and DataZone deployment types, any data stored at rest, such as uploaded data, and including the abuse monitoring data store created for Global and DataZone deployments, is stored in the customer-designated geography.”
Domains and endpoints
observed means seen in Unseen deployments; vendor-documented means listed by the vendor. Vendors do not publish complete lists.
| Host | Role | Source |
|---|---|---|
| openai.azure.com | app | observed |
Assessment
Reasoning: OpenAI models run inside the customer's Azure tenant under Microsoft's terms. No training, no access for OpenAI, geography-bound processing for standard deployments. Global deployment types trade residency for capacity, so the deployment type chosen matters. Traffic to this host is normally a company resource rather than a personal account.
Flags: Geography-bound for standard deployments · Global deployment type processes anywhere · Abuse monitoring unless modified · Assessed 2026-09-16. The assessment is Unseen's; the terms above are the vendor's.
Changelog
- 2026-09-16Documented. Training, storage and processing-location terms verified against the Microsoft Learn data privacy article for Azure OpenAI.
- 2026-09-15Listed from the Unseen catalogue with observed domains.
Corrections
Pull request on GitHub, or the form below. Changes are reviewed and recorded in the changelog.