AI is worth adopting — we've made that case honestly, including when to start and how. But there's a real risk that gets glossed over in the hype: what happens to your data when your team starts using these tools. The good news is that keeping data safe doesn't require a security department. It requires a handful of unglamorous habits, set up once.
The real risk isn't the AI — it's how your team uses it
Most owners picture the threat as an AI company getting breached. The far more common leak is quieter: an employee pastes a customer list, a contract, or payroll details into a free chatbot to "just get a quick summary." Industry research suggests this is widespread — around 38% of employees admit sharing sensitive work information with AI tools without their employer's permission, and sensitive material now makes up roughly a third of what employees paste into consumer AI chatbots, up from about 11% in 2023. Security researchers call this "shadow AI": tools your team uses that you don't know about, with data you can't get back.
You won't stop this by banning AI — people just hide it, and you lose the productivity anyway. You stop it by giving people a safe, approved way to use AI, and clear lines about what stays out.
Step 1: business accounts, not personal ones
Industry surveys suggest over 60% of employees access AI tools through personal accounts. That matters because consumer tiers of many AI tools may use your conversations to improve their models, and you have no visibility into what was shared or how long it's retained. Business and API tiers typically don't train on your data, offer retention controls, and give you an admin view of who's using what.
So the first fix costs a few pounds per seat: put everyone who uses AI on a company-managed business plan, and make "work data only goes into company accounts" the rule. This one change removes the biggest leak in most small businesses.
Step 2: write a one-page AI use policy
Not a 20-page legal document — one page, in plain English:
Approved tools: name the two or three AI tools your business uses, on company accounts.
Never paste: customer personal details, payment or bank data, passwords and API keys, unreleased financials, anything under an NDA.
Fine to use: drafting, summarising public information, brainstorming, rewriting your own text.
When unsure: ask a named person before pasting, not after.
A short policy people actually read beats a thorough one nobody does. Revisit it twice a year — the tools change fast.
Step 3: ask every AI vendor these four questions
Before you connect an AI tool to your inbox, CRM, or documents, get written answers to:
1. Do you train your models on our data? The answer for a business tier should be no.
2. How long do you retain our data, and can we delete it? Look for configurable retention.
3. Where is it stored and who can access it? Relevant for UK/EU customer data especially.
4. Can we limit what the tool can see? A tool that only needs your product catalogue shouldn't read your accounts.
A serious vendor answers these in one email. A vendor who can't is telling you something.
Step 4: basic access hygiene still does the heavy lifting
Industry reporting found over 225,000 stolen AI chatbot logins for sale on dark-web markets in a single year — not from the AI companies being hacked, but from malware on employees' own devices harvesting saved passwords. Whoever buys those credentials can read the full chat history, including anything sensitive ever pasted in.
The defences are the ones you already know: turn on multi-factor authentication for every AI account, use a password manager instead of reused passwords, give each tool the minimum access it needs, and remove accounts the day someone leaves. None of this is AI-specific — AI just raises the stakes, because one account now holds months of pasted context.
Not sure where your gaps are?
Take our free 2-minute AI Readiness Scorecard — it covers data readiness alongside where automation would pay off first.
Take the 2-minute check →What a well-built AI assistant does differently
Everything above covers your team using off-the-shelf AI tools. When you go a step further — a custom AI assistant answering your customers or working inside your systems — data safety should be designed in, not bolted on. That means the assistant is grounded on the documents you choose (not your whole drive), talks to your systems through narrow, scoped connections rather than blanket access, logs every conversation so you can audit what it said, and runs on business-tier AI that doesn't train on your customers' messages.
This is a case where honest advice cuts both ways: plenty of businesses only need off-the-shelf tools plus the habits above. But if an assistant will touch customer data, how it's built is the security decision — which is why it's worth building it deliberately instead of wiring a consumer chatbot to your inbox.
The bottom line
You don't have to choose between adopting AI and protecting your data — but you do have to choose deliberate adoption over letting it happen to you. Business accounts, one page of rules, four vendor questions, and MFA cover the large majority of the risk, for roughly a morning's effort. Do that, and AI becomes what it should be: a tool that saves you time without quietly costing you your customers' trust.