Every term in this hub.
This hub collects the data privacy terms in the Prefactor glossary. The PII group is the operational core: detection, redaction, and the handling of sensitive data inside agent inputs, outputs, and logs. These are the controls that run on every span, and the entries cover both what they catch and what each method misses.
The regulation group covers the frameworks that make privacy a requirement rather than a preference: GDPR and its DPIA obligations, HIPAA for health data, CCPA for California consumers. The entries define what each framework demands, not how to feel about it; they are subject-matter definitions, and the applied guidance lives in the learn section they link to.
The data controls group covers the lifecycle questions: retention periods, data residency, sovereignty, and encryption. These are the terms that turn up in enterprise procurement long before they turn up in an incident, and having precise definitions saves the third clarifying email.
One honest scope note: this is the smallest hub in the glossary, and deliberately so. Privacy vocabulary that is not agent-specific belongs to the wider privacy field and its own references; the entries kept here are the ones that change meaning once an autonomous system is the thing doing the processing.
PII & sensitive data
Regulation
Data controls
More ai data privacy terms
Common questions.
What is PII detection for AI agents?
The automated identification of personally identifiable information in agent inputs, outputs, and logs, so it can be redacted, blocked, or escalated before it spreads.
Which privacy regulations apply to AI agents?
The same ones that apply to any system processing personal data: GDPR (including DPIA obligations), HIPAA for health data, and CCPA for California consumers, among others. The regulation group defines each.