90 Days Gen AI Risk Trial -Start Now
Book a demo
DLP for Generative AI

DLP for ChatGPT &Generative AI Tools

1 in 4 employees paste data into AI tools they should not. Aona stops it, in real time. Employees use ChatGPT daily for productivity. Without DLP controls, confidential data flows freely into AI systems outside your control. Aona detects, redacts, and blocks it, across every AI tool your team uses.

0 in 4
employees share sensitive data
Real-time
prompt inspection
0+
AI tools covered
0 days
free trial
46%
of employees have pasted confidential customer data into a public AI chatbot, where it can be retained by the provider and used to train models.
Cyberhaven AI Data Security Report, 2024

What Gets Leaked into AI Tools

These four data types appear most frequently in AI prompts, and create the most significant compliance and competitive risk.

Customer PII

Names, email addresses, phone numbers, account details, pasted into AI tools during customer service, sales, or data analysis tasks.

Financial Records

Revenue data, forecasts, earnings reports, payment card numbers, and budget documents shared with AI tools before public disclosure.

Source Code

Proprietary algorithms, API keys, database credentials, and internal codebases submitted to AI coding assistants without restriction.

Internal Strategy Docs

Board minutes, M&A information, competitive strategy, and legal correspondence used as AI context for drafting or summarisation.

How Aona DLP Works

Three-stage pipeline from prompt to protection, all in real time, before data leaves your environment.

1

Real-Time Prompt Inspection

Aona intercepts every prompt before it is submitted to an AI tool. The content is inspected in milliseconds, no latency impact on the employee experience.

2

Classification

Aona classifies the prompt content against your data policies, identifying PII, financial data, source code, and custom data types using AI-native pattern recognition.

3

Block, Redact, or Alert

Depending on your policy, Aona blocks the prompt, automatically redacts the sensitive portion, or alerts the employee and your security team, all in real time.

Supported AI Tools

Aona DLP works across every major AI tool your employees use, and the ones they're using without telling you.

ChatGPT logo

ChatGPT

OpenAI

Microsoft Copilot logo

Microsoft Copilot

Microsoft

Google Gemini logo

Google Gemini

Google

Claude logo

Claude

Anthropic

Perplexity logo

Perplexity

Search AI

Mistral logo

Mistral

Mistral AI

DeepSeek logo

DeepSeek

DeepSeek AI

+

+ 5,000 more

All AI tools

How Aona DLP for ChatGPT Works

Real-time prompt inspection, protecting data before it ever leaves your organisation.

01

Deploy in Minutes

The Aona browser extension rolls out via MDM in under 5 minutes. No endpoint agents, no VPN, no firewall changes. Works across ChatGPT, Copilot, Gemini, Claude, and 5,000+ other AI tools from day one.

02

Inspect Every Prompt

Aona intercepts prompts before they're sent to AI models. Every prompt is scanned for PII, financial data, source code, healthcare records, and custom data types, in real time, with zero latency impact.

03

Block, Redact, or Alert

Depending on your policy, Aona blocks sensitive prompts, automatically redacts the sensitive portion and lets the rest through, or alerts the employee and your security team. Full audit log captured for every event.

75%

of employees use AI tools not sanctioned by IT or security

Microsoft WorkLab, 2025

$4.88M

average cost of a data breach

IBM Cost of a Data Breach Report, 2024

Case Study

Australian Healthcare College

An Australian healthcare college had approved Microsoft Copilot, but staff kept pasting content into consumer AI tools with no visibility or audit trail. Aona's real-time guardrails steered staff back to the approved tool and cut Shadow AI prompts by 92.9% in three months, while keeping approved AI available for the people who needed it.

“Aona gave us visibility into which AI platforms were being accessed across the college and helped us proactively discourage use of unapproved tools while reinforcing Copilot as our approved option. It has been easy to deploy, lightweight for end users, and a valuable addition to our AI policy.”Senior Systems and Security Administrator, Australian healthcare college
92.9% fewer Shadow AI prompts7 to 2 platforms100% workforce visibility
Read the full case study →

ChatGPT Enterprise, Team, and free behave very differently with your data

Which ChatGPT plan an employee is signed into changes how their data is handled. Most organisations have all three in use at once, which is exactly where the exposure starts.

Free and Plus

Consumer accounts. By default, conversations can be used to train and improve models unless the user manually turns that off in settings. Nothing stops an employee signing in with a personal account on a work device and pasting client data into it.

ChatGPT Team

Business plan where, per OpenAI, conversations and content are not used to train models by default. Useful, but it only covers the workspace the company controls. It does nothing about employees using free or personal ChatGPT alongside it.

ChatGPT Enterprise

Adds SSO, longer context, and admin controls, with content excluded from training by default. Strong on governance inside the tenant, but it cannot see or stop what staff paste into ChatGPT accounts outside that tenant.

Aona enforces one consistent policy regardless of plan. Whether an employee is on Enterprise, Team, a personal Plus account, or free ChatGPT, the prompt is inspected on submit and sensitive data is blocked or redacted before it ever reaches OpenAI.

Custom GPTs and memory are the two settings most teams overlook

The risk in ChatGPT is not only the main chat box. Custom GPTs and the memory feature both create their own path for data to leave your organisation.

Custom GPTs

Employees build and share custom GPTs to automate repetitive work, and they routinely paste real customer records, spreadsheets, or internal documents in as instructions or knowledge files. That data sits inside the GPT and can be exposed to anyone the GPT is shared with. Aona inspects the content going into a custom GPT the same way it inspects a normal prompt, so sensitive data is caught before it is baked in.

Memory and training settings

ChatGPT memory can persist details across conversations, and on consumer plans chat history may feed model training unless an employee has switched it off. You cannot rely on every employee configuring those settings correctly. Aona removes that dependency by stopping sensitive data at the point of submission, so it is never stored, remembered, or used for training in the first place.

FAQ

Frequently Asked Questions

DLP for ChatGPT refers to Data Loss Prevention controls designed to monitor and protect sensitive data entered into ChatGPT and other generative AI tools. Unlike traditional DLP built for email and file storage, AI-native DLP inspects prompt content in real time, classifies sensitive data types, and blocks or redacts that data before it reaches the AI model.
Get started

Stop AI Data Leaks Today

Start your free 90-day trial. No VPN. No agents. Full DLP coverage for ChatGPT, Copilot, Gemini, and 5,000+ AI tools, in under 5 minutes.