Data privacy is protected through several key measures:
No LLM training on your data - Customer data is not used for model training by third-party LLM providers. Any data submitted to Sweo becomes an Input used to generate an Output, but it's not used to train external models.
Encryption - All data sent to or from Intercom is encrypted in transit using 256-bit encryption. API and application endpoints are TLS/SSL only with an "A+" rating on Qualys SSL Labs' tests. Data is also encrypted at rest using industry-standard AES-256 encryption.
GDPR compliance - Intercom requires all third-party vendors to enter into data processing agreements that ensure customer data remains protected in accordance with GDPR.
Intercom's own AI models - Intercom does fine-tune its own customer support-specific AI models using anonymized customer data to improve Sweo's performance. However, customers can opt out of having their anonymized data used for this purpose at any time.
Full details are available in Intercom's legal and security guide for AI Products, and there's a dedicated Data Protection Officer available for any questions.