The tool only has access to the data the user shares with it. If a user does not have access to certain data, for instance, a sensitive document, they will not be able to share it with the tool and we will not be able to see it. In the future, to provide more consistent answers across a single organization, we may index a single model per organization, in which case data would be shared. In this case, we will implement user-based access controls so that users can only see data from source documents that they have access to. This will provide a finer level of granularity than role-based access and will more faithfully reflect the access given within the user’s own organization.