Stay organized with collectionsSave and categorize content based on your preferences.
Data redaction means masking or removing sensitive information from your data to protect a user's privacy. Redaction is crucial for Google Cloud compliance and maintaining user trust. Data retention policies dictate how long data is stored. A data retention strategy should balance business needs with regulatory requirements. Use security settings to configure data redaction and retention in Agent Assist.
Security settings
Configure your security settings at the project level. You can configure separate security settings for each project andlocation. You must specify the security settings to apply for each conversation profile. If you don't specify any security settings in a conversation profile, Agent Assist doesn't apply any redaction for that conversation profile. The default and maximum retention window is 30 days.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-09-04 UTC."],[],[],null,["# Data redaction and retention\n\nData redaction means masking or removing sensitive information from your data to protect a user's privacy. Redaction is crucial for Google Cloud compliance and maintaining user trust. Data retention policies dictate how long data is stored. A data retention strategy should balance business needs with regulatory requirements. Use security settings to configure data redaction and retention in Agent Assist.\n\nSecurity settings\n-----------------\n\nConfigure your security settings at the project level. You can configure separate security settings for each project and [location](/dialogflow/cx/docs/concept/region). You must specify the security settings to apply for each conversation profile. If you don't specify any security settings in a conversation profile, Agent Assist doesn't apply any redaction for that conversation profile. The default and maximum retention window is 30 days.\n\nFor more information on the settings described in the following table, see the [RPC Security settings reference](/dialogflow/cx/docs/reference/rpc/google.cloud.dialogflow.cx.v3#google.cloud.dialogflow.cx.v3.SecuritySettings).\n\nStep 1: Create your inspect and deidentify templates\n----------------------------------------------------\n\n- **Inspect template**: Defines sensitive data requiring redaction.\n- **Deidentify template**: Specifies how to mask or remove sensitive data.\n\nFollow these steps to create these templates.\n\n1. Open the Google Cloud console, and select your project.\n\n [Google Cloud console](https://console.cloud.google.com/)\n2. Enter a search for **Sensitive data protection**, and click the link for the security page.\n\n3. Click the **Configuration** tab, then enable the **Sensitive Data Protection (DLP)** API, and create a template.\n\nStep 2: Create security settings\n--------------------------------\n\nFollow these steps to create security settings.\n\n1. Open the unified CCAI (Customer Engagement Suite with Google AI) console and select your project.\n\n [CCAI console](https://ccai.cloud.google.com/projects)\n2. Click **Create Security Settings**.\n\n3. Enter your security settings configuration, and click **Create**.\n\nStep 3: Specify security settings\n---------------------------------\n\n1. Navigate to the Agent Assist console and select your project.\n\n [Agent Assistconsole](https://agentassist.cloud.google.com)\n2. Click **Conversation profiles** and select a profile.\n\n3. Navigate to **Security Settings** and select the display name of the template you created."]]