Skip to main content
Procore

How are data security and validation handled with Procore AI products?

Answer

Visit the sections below to learn how Procore permissions affect Procore AI responses, how data is handled, and guidelines that users of Assist and Agent Builder should follow for responsible use of the tools. 

Permissions

Procore AI products strictly adhere to existing permissions set in Procore. Actions and responses (output) from Procore AI products are based only on data that the user can access based on these set permissions.

  • Access example:  If a user does not have access to the RFIs tool at all (based on the settings in the permissions tool), and they ask a question related to a specific RFI, then they would not get any answer based on RFIs.
  • Create or send example: Whether an Agent was created by Procore or by a user, if it's set up to create or send an Observation but the person running the Agent doesn't have the required Observations tool permissions, the Agent cannot complete the action on their behalf.

Procore's AI Technology

Procore AI products currently utilize Microsoft’s Azure OpenAI Service. Microsoft Azure OpenAI is a listed Procore subprocessor. 

No customer data is used to train, retrain, fine-tune, or improve Microsoft Azure OpenAI or any other Microsoft products or services. Additionally, the indexed data sent to the LLM is not persistently stored by Microsoft, only the prompts and responses are stored securely for up to 30 days by Microsoft to detect and mitigate abuse. You can learn more about how Microsoft uses prompts and data by reviewing Microsoft's Data Privacy and Security for Azure OpenAI page

In addition to Azure OpenAI, Procore AI products also utilize internal AI models to better understand user inputs and prioritize relevant search results, improving the overall user experience. These internal models may utilize data collected from customer inputs and outputs to help improve Procore AI accuracy. Procore never shares or discloses a customer’s data with another customer, and that includes customer prompts to Procore AI and Procore AI’s responses. Due to the nature of machine learning and the technology powering Procore AI products, output may not be unique, and Procore AI may generate the same or similar output for third parties.

Guidelines for Using Procore AI Products

Procore AI products (including Assist, Agent Builder, and Starter Agents) provide powerful tools for enhancing productivity and problem-solving on your construction projects. However, it is critical to use this technology responsibly. These guidelines are designed to help you use Procore AI products effectively.

1. Oversight of AI Output 

Like all generative AI tools, content and actions (output) generated by Procore AI products should not be treated as infallible and may produce errors, omissions, inaccuracies, or outputs that are incomplete. Accordingly, you should evaluate any outputs against your own reasonable policies and procedures before taking action.  You are responsible for your use of Procore AI output, including determining whether the output is appropriate for a given use.

2. Responsible Uses of Procore AI

Your use of Procore AI products is subject to your Subscription Agreement with Procore. Do not use Procore AI products in any manner restricted by the Subscription Agreement. This includes using Procore AI products to create or disseminate harmful, offensive, or illegal content. You are responsible for (i) the lawfulness of all inputs into Procore AI products and (ii) all decisions, actions, or inactions arising from its use, including, without limitation, ensuring such decisions, actions, or inactions comply with applicable laws, regulations, and other legal requirements related to data protection, intellectual property, and the use of artificial intelligence or machine learning.

3. Updates  

Procore may update these guidelines from time to time, by posting here (or any successor page), which will constitute notice. Any updates will not materially degrade the overall performance or security posture of Procore AI products, except as required to comply with applicable legal or regulatory obligations. By continuing to use Procore AI products after any update, you agree to adhere to the updated guidelines.