How to control employee ChatGPT use
Last reviewed: 28 September 2026
Short answer
Control employee ChatGPT use with three layers: a written AI policy that every employee accepts, a decision for each tool (approve, restrict or block), and a browser-level control that stops sensitive files and secrets before they are sent. Offer an approved company account so staff are not pushed to personal accounts or phones.
This guide explains regulation and good practice. It is not legal advice; have your own legal counsel review your policy and any monitoring before you roll them out.
Why isn't blocking ChatGPT enough?
A blanket block removes the approved route but not the demand. People who find ChatGPT useful keep using it on personal accounts or phones, where the company has no account controls, no data terms and no records.
Blocking has a place: it is the right decision for tools you have assessed and rejected. For ChatGPT itself, most companies get better control by approving one company workspace, setting rules for what may go into it, and blocking the routes around those rules. VAHTOR's own guide on pasting data into ChatGPT makes the same point: a full block can push use to personal phones and accounts.
Which controls exist, and what does each one stop?
No single control covers every risk. The table shows what each layer actually stops and where it stops working, so you can combine them deliberately.
| Control | What it stops | What it does not stop |
|---|---|---|
| Approved company account (ChatGPT Business or Enterprise) | Business data being used to train OpenAI models by default; leavers keeping access once removed from the workspace; unmanaged logins where SAML SSO is enforced | Use of personal accounts, other AI tools, or data that should not go into any AI tool |
| Written AI policy with recorded acceptance | Unclear rules: it names the data that never goes into AI and records who accepted which version | Nothing technically; it relies on people following it |
| Per-tool decision: approve, restrict or block | Use of AI tools you have assessed and rejected | Tools nobody has reviewed yet, unless discovery keeps the list current |
| Browser rules for files and secrets (DLP) | PDFs, spreadsheets and office files attached to AI sites; credentials and secrets pasted into prompts | Desktop apps, phones and browsers the control does not cover |
| Workspace restriction on the corporate network (ChatGPT Enterprise) | Personal ChatGPT accounts and logged-out use on managed traffic | Traffic outside your proxy or secure web gateway, such as a personal phone on mobile data |
| AI literacy training with records | Avoidable mistakes such as trusting invented facts or pasting client data; it also documents your Article 4 measures | Deliberate misuse |
| SSO and offboarding | Former employees and unmanaged identities using the company workspace | Personal accounts the person created on their own |
Sources for each row are listed at the end of the page.
How do you set it up, step by step?
Start with what people already use, decide per tool, then add the account, the policy, the technical controls and the training. Most companies with 25 to 100 employees can do steps 1 to 5 within a few weeks.
- 1Find out which AI tools are already in use. Check SSO logs, expense claims, browser extensions and web proxy logs, or use a discovery tool. Record each tool, how many people use it and for what. Our guide on seeing which AI tools employees use covers the options.
- 2Decide per tool: approve, restrict or block. Approve tools with a company account and acceptable data terms. Restrict tools that are fine for some tasks, for example "public information only" or "no file uploads". Block tools you have assessed and rejected. Write the decision and the reason into an AI tool register.
- 3Offer an approved company account. ChatGPT Business starts at two users; see OpenAI's pricing page for current prices, which vary by country. OpenAI states it does not train on Business or Enterprise workspace data by default, supports SAML SSO and offers a data processing addendum. Enterprise adds SCIM provisioning, role-based access control and user-level analytics.
- 4Publish the policy and collect acceptance. Name the data that never goes into AI tools: personal data about customers or staff, confidential client material, credentials and unreleased financials. Record who accepted which version. In ChatGPT Enterprise, admins can also show a workspace AI policy notice, which OpenAI says appears every 30 days and whenever its content changes.
- 5Enforce data rules in the browser. Add a control that stops sensitive files and secrets at the point of use, before they reach the AI tool. The options range from Microsoft Purview DLP in Edge and Chrome Enterprise Premium DLP rules to a lighter browser extension; our guide to blocking file uploads to ChatGPT compares them.
- 6Close the personal-account route where it matters. On ChatGPT Enterprise, a secure web gateway or proxy can insert a
ChatGPT-Allowed-Workspace-Idheader so only your workspace works on managed traffic, and block the logged-out endpoint. OpenAI's documentation says this needs SSL inspection, and the desktop and mobile apps need your certificates added through device management because they use certificate pinning. - 7Train people and keep the record. Since 2 February 2025, providers and deployers of AI systems must take measures for their staff's AI literacy (EU AI Act Article 4). The Commission's example for a company using ChatGPT to write advertising text is to inform staff about risks such as hallucination. An internal record of training is enough; no certificate is required.
- 8Connect identity and review monthly. Enforce SSO for the company workspace, remove leavers on their last day (automatically via SCIM on Enterprise), and review the tool register, alerts and new tool requests once a month.
What can an employer see about employees' ChatGPT use?
It depends on the account and the tools in place. An employer sees nothing through OpenAI about a personal ChatGPT account, while ChatGPT Enterprise lets workspace owners export conversations through OpenAI's Compliance Platform.
| Setup | What the employer can see | Source |
|---|---|---|
| Personal ChatGPT account | Nothing through OpenAI. Network tools may still show that chatgpt.com was visited. | OpenAI plan documentation |
| ChatGPT Business | Members, roles and basic workspace analytics | OpenAI business data page |
| ChatGPT Enterprise | User analytics, and through the Compliance Platform, time-stamped conversations, uploaded files, GPT configurations and memories. Only a workspace owner can grant access to conversation messages. | OpenAI Help Center |
| Microsoft Purview DLP in Edge | Policy matches and blocked text or file uploads to AI apps on managed Windows devices | Microsoft Learn |
| VAHTOR | Tool name, time, detection type, risk level, and policy and training records. Prompt and chat text are not sent. Data is aggregated by default; names appear only if the owner turns identifiers on. | vahtor.com/security |
Whatever you choose, tell employees in the policy what is monitored and what is not. Hidden monitoring erodes trust and is hard to justify under data protection rules.
What do EU rules say about controlling and monitoring AI use at work?
The EU AI Act asks deployers to support AI literacy and bans some workplace uses, such as emotion recognition. GDPR limits how much employee data your monitoring may collect.
- AI literacy (Article 4). Applies since 2 February 2025. The Digital Omnibus on AI, in force since 27 July 2026, keeps the obligation but no longer requires a specific level; national market surveillance authorities supervise it from 2 August 2026.
- Emotion recognition at work is prohibited (Article 5(1)(f)), except for medical or safety reasons. Do not use monitoring tools that infer employees' emotions from their typing, voice or faces.
- Data minimisation (GDPR Article 5(1)(c)). Collect only what the purpose needs. Recording tool use and detection types is easier to justify than storing every prompt.
- Employee data (GDPR Article 88) allows national rules on processing in employment. In Finland, for example, the Act on the Protection of Privacy in Working Life (759/2004, section 21) puts technical monitoring and the use of email and networks into the co-operation procedure, after which the employer must define the purpose and methods and inform employees.
- High-risk AI at work (Article 26(7)). Deployers must inform workers' representatives and affected workers before putting a high-risk AI system into use in the workplace. ChatGPT used for drafting is not high-risk by default, but AI used for recruitment or evaluating staff can be (Annex III, point 4).
Involve your data protection officer or employee representatives before you switch on monitoring.
What are the most common mistakes?
Most failures come from relying on one layer. The frequent ones:
- Blocking everything. Use moves to phones and personal accounts, where you have no controls.
- A policy with no technical control. People forget rules under deadline pressure; a browser rule catches the file they did not mean to upload.
- A technical control with no policy. Employees see a blocked upload but do not know what is allowed instead.
- Buying company seats but leaving personal accounts open. The company workspace only protects the data that goes into it.
- Collecting prompts "just in case". Storing full conversations creates a sensitive dataset you must justify, secure and delete.
- Forgetting leavers. Without SSO and offboarding, former staff can keep access to the workspace and its shared projects.
- Training once. Tools change monthly; repeat short training when you approve a new tool or change the policy.
Checklist
- AI tool register with approve, restrict or block decision and reason for each tool
- Approved company AI account in place, with SSO enforced
- AI policy published; acceptance recorded per version
- Never-share data classes named in the policy
- Browser control for files and secrets on managed devices
- Decision taken on personal accounts on the corporate network
- AI literacy training delivered; records kept per person
- Monitoring described to employees; DPO or employee representatives consulted
- Leavers removed from AI tools on their last day
- Monthly review of register, alerts and requests
How does VAHTOR help?
VAHTOR covers the policy, per-tool and browser layers in Chrome and Edge without collecting prompts or conversations. It does not replace a company ChatGPT account, and it does not make a company compliant on its own.
- Discovery and per-tool decisions. VAHTOR shows which AI tools people use and lets you approve, restrict or block them; devices pick up the decision on the next sync.
- Policy and training records. Publish a company AI policy from a template, track who accepted the current version, and keep literacy quizzes and pass marks for the team.
- File and secret rules. Rules can block PDFs, Excel and office files attached to AI tools, and credentials and secrets are flagged on the device. Chat text is not stored.
- Limits. VAHTOR works in Chrome and Edge on devices with the extension installed. Desktop AI apps, mobile devices and other browsers are outside its reach.
Starter (EUR 199 per month + VAT, up to 25 employees) includes discovery, policy setup, acceptance tracking and approve, restrict or block. Browser DLP rules and AI literacy training tracking are in Business (EUR 499 per month + VAT, up to 100 employees). See pricing.
Frequently asked questions
How do you control employee ChatGPT use?
Use layers rather than one tool. Give staff an approved company account, publish a written AI policy that everyone accepts, and decide per tool whether to approve, restrict or block it. Add a browser control that stops sensitive files and secrets, train people on the risks, and remove leavers from AI tools on their last day.
Can my employer see what I search on ChatGPT?
It depends on the account. Your employer cannot see a personal ChatGPT account through OpenAI. In a ChatGPT Enterprise workspace, owners can export conversations and uploaded files through OpenAI's Compliance Platform. Security tools on company devices may record which AI sites you visit or block uploads. Your employer's AI policy should say what is monitored.
How can you tell if an employee is using AI?
Look at signals the company already owns: SSO sign-ins, expense claims for AI subscriptions, browser extensions on managed devices and web proxy or DNS logs. A discovery tool can show which AI sites are used across the team. Guessing from writing style is unreliable, so ask openly and offer an approved tool instead.
Can I refuse to use AI at work?
The EU AI Act does not create a general right to refuse AI tools at work. Whether you can decline depends on your employment contract, national employment law and any collective agreement, so raise concerns with your manager or HR. The Act does require employers to support AI literacy and to inform workers before high-risk AI is used in the workplace.
How can I track ChatGPT usage in my company?
In a company workspace, use the admin analytics: ChatGPT Business offers basic analytics and Enterprise adds user-level analytics. Usage outside the workspace needs a discovery tool or network logs. Track tool names, active users and policy events rather than message text, and tell employees what you record.
Can I block file uploads to ChatGPT without blocking ChatGPT?
Yes. Browser data loss prevention rules can block files attached to ChatGPT while still allowing typed prompts. Microsoft Purview in Edge for Business, Chrome Enterprise Premium and browser extensions such as VAHTOR can do this on managed devices. Network tools with TLS inspection are another option. None of them covers personal phones.
Related
- How can I see which AI tools my employees use?
- How to block file uploads to ChatGPT: 3 methods compared
- How can I govern employee AI use without reading their chats?
- What does the EU AI Act require for AI literacy (Article 4)?
- How do I stop employees pasting company data into ChatGPT?
- Browser DLP for ChatGPT and other AI tools
- Shadow AI monitoring: see every AI tool your team uses
- Pricing
- Security
- AI acceptable use policy template
- Guides: governing workplace AI