Prompt capture
Off by default.default, When enabled,and the setting that deserves the most thought before you turn it on.
What it does
Stores the actual content of AI conversations is— storedwhat developers typed and what the model
replied — so you can read whatthem waslater actuallyon asked and answered — underthe Conversations. screen.
Without it you still get everything else: who, when, which tool, which model, what the policy decided, what the detectors found. What you do not get is the text.
Before you turn it on
ThisTell your team. Not because the law necessarily requires a specific notice in your
jurisdiction, but because discovering afterwards that their prompts were being stored is
the mostfastest privacy-sensitiveway settingto in the product. Turning it on means you are
recordinglose your developers' workingcooperation conversations.
What protects the content
[REDACTED:aws_access_key_id]
rather than the key. In the console these render as amber shield badges.
WhenTurning it earns its keepon
IncidentPolicy review→ ("whatPrompt exactlycapture. didConversations then start appearing on the Conversations
screen. Until then that agentscreen doshows beforean itexplicit deleted"Prompt thecapture branch?"),is andoff" substantiatingstate with a compliancelink
questionback withto evidencePolicy, rather than assertion.an Ifempty neitherlist appliesthat tolooks you, leaving it off islike a legitimate choice — Activity still records every
request, model, outcome and risk finding without the content.bug.