Zendesk AI
medium riskEmbedded SaaS AIzendesk.comverified 2026-06-27
Data-handling profile
- Trains on input
- Yes, on the consumer tier (enterprise tier excluded)
- Retention
- Zendesk builds account-specific models trained only on that account's data, plus generic cross-account models trained on aggregated/sanitized (PII-scrubbed) service data; third parties do not use customer inputs to train their own models; sanitization/anonymization applied before any cross-account use, with Advanced Data Privacy add-on offering BYOK and stricter retention controls.
- Data region
- Global
- Certifications
- SOC 2 Type IIISO 27001ISO 27017ISO 27018ISO 27701ISO 42001FedRAMP LI-SaaS
- DPA available
- Yes
- Breach history
- none known
- EU AI Act
- Embedded customer-service AI; ISO 42001 AI management certification directly supports EU AI Act governance-documentation expectations.
Sources
- https://support.zendesk.com/hc/en-us/articles/5729714731290-Zendesk-AI-Data-Use-Information
- https://www.zendesk.com/trust-center/
- https://support.zendesk.com/hc/en-us/articles/4408828745626-Zendesk-s-Commitment-to-International-Standards-for-Information-Security-Privacy-and-AI-Governance-ISO-27001-ISO-27018-ISO-27701-and-ISO-42001
Every fact above is drawn from the vendor's public documentation, reviewed by a human, and version-stamped. Monitored daily for changes.
Change history
No material changes recorded since monitoring began.