Current maximum retention period for Azure OpenAI abuse-monitoring human-review storage

Laurent Bouhnik 0 Reputation points
2026-10-01T17:49:44.5433333+00:00

Hi,

We use Azure OpenAI for a Spain-based application processing property/legal documents that may contain names, tax identifiers and financial information.

Our Azure OpenAI resource is in France Central and the relevant deployment uses Data Zone Standard (EUR). ContentLogging:false is not present, so we understand that the resource is operating under the standard Azure OpenAI abuse-monitoring process rather than Modified Abuse Monitoring.

Microsoft documentation confirms that flagged prompts/completions may be stored for human review, and that EEA resources use EEA reviewers.

Could a Microsoft representative please confirm the current maximum retention period for prompts/completions stored for human review under the standard Azure OpenAI abuse-monitoring process?

Some Microsoft Q&A material refers to up to 30 days, but we would like confirmation that this remains the current maximum applicable to the service in 2026.

If relevant, could you also confirm whether Modified Abuse Monitoring remains limited to managed customers / eligible programs?

Thanks, Laurent Creselio

Azure OpenAI in Foundry Models
0 comments No comments

2 answers

Sort by: Newest
  1. SHOUMIK CHAKRAVARTY 990 Reputation points
    2026-10-02T02:06:16.04+00:00

    Hi @Laurent Bouhnik - No retention maximum is published as far as I can find. For your deployment though, three things in the same two pages narrow that question considerably, and none of them are in the AI answer.

    Data Zone Standard does not move the abuse monitoring store out of your geography. Worth pinning down, since Data Zone is where people expect a residency exception. From Data, privacy, and security:

    For both Global and DataZone deployment types, any data stored at rest, such as uploaded data, and including the abuse monitoring data store created for Global and DataZone deployments, is stored in the customer-designated geography.

    For your France Central resource, inference may be processed in any EU Member Nation, while the store itself stays in your designated geography. Only processing location varies.

    Storage is the exception, not the default. The automated review that runs first stores nothing:

    For automated review, customer's prompts and completions are not stored by the system or used to train the AI models or other systems.

    Human review, and so the data store, only applies "when automated review doesn't meet applicable confidence thresholds in complex contexts or if automated review systems aren't available." Retention therefore covers a subset of a subset: content already flagged, that automated review could not resolve.

    The access controls are documented even though the duration is not, which for a record of processing is usually the more useful half:

    The human reviewers are authorized Microsoft employees who access the data via point wise queries using request IDs, Secure Access Workstations (SAWs), and Just-In-Time (JIT) request approval granted by team managers.

    Point-wise query by request ID is the operative detail: retrieval of an already-flagged item, not browsing.

    On your second question, the documentation does state the eligibility criteria. From Limited access for Foundry Models sold by Azure:

    At this time, modified Guardrails (previously content filters) and/or modified abuse monitoring for Models sold by Azure are available only to customers and partners managed by a Microsoft account team or under an eligible program, and are subject to additional requirements.

    Still restricted to managed customers or an eligible program, and "Some advanced Models sold by Azure may have more stringent criteria for turning off abuse monitoring." If you are not account-team managed, the linked form is not a route in on its own.

    On the 30 day figure, it appears on neither Abuse monitoring nor the data privacy page, so I would not carry it into your assessment.

    Help make this community better for everyone: if this answer resolved your issue, please accept it or leave an upvote. If not, share more details in a comment so we can continue the discussion and find the right solution.

    Was this answer helpful?

    0 comments No comments

  2. AI answer

    2026-10-01T17:50:04.05+00:00

    The current maximum retention period for prompts and completions stored for abuse monitoring human review is not stated in the provided current product documentation.

    What the current documentation does confirm:

    • Under standard abuse monitoring, prompts and completions can be selected for additional review when abuse indicators are detected.
    • Review is automated by default, with human review used when necessary.
    • For resources deployed in the European Economic Area, authorized human reviewers are located in the European Economic Area.
    • If approved for Modified Abuse Monitoring, the data storage and human review process described for abuse monitoring is not performed.

    What the provided material shows about the older 30-day statement:

    • A Microsoft support FAQ for Ask Microsoft says Azure OpenAI stores prompts and completions for up to 30 days to monitor content and behaviors.
    • Similar Microsoft Q&A answers also reference up to 30 days, but those are not the current authoritative product documentation for Azure OpenAI in Foundry Models.
    • The change log shows abuse-monitoring documentation was clarified in late 2024 and expanded in 2025, but it does not provide a current retention maximum.

    On Modified Abuse Monitoring eligibility, the provided official documentation confirms only that if a customer has been approved for Modified Abuse Monitoring, the abuse-monitoring data storage and human review process is not performed. The provided official documentation does not state current eligibility criteria such as managed-customer-only or specific program requirements.


    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.