Masking
What the model sees when you ask
Before a question leaves your browser, OA6 swaps the details that identify your organization for placeholders. The list of which placeholder stands for what stays in your browser, and OA6 puts the real names back on your screen when the answer arrives. Masking runs before OA6 decides where the request goes, so your own model receives exactly what Claude would.
01Named things become placeholders
Users, groups, directory roles, Conditional Access and Intune policies, devices, apps, labels, eDiscovery cases, incidents, and your tenant's name.
02So do identifiers inside text
In descriptions, alert evidence, file paths, error messages and your own question, OA6 masks:
- email addresses and your domains
- SharePoint and onmicrosoft.com hostnames
- object IDs and security identifiers
- user profile folders and OneDrive owners
IP addresses are shortened, IPv4 to a /24 and IPv6 to a /32.
03What is still sent as written
Masking covers identifiers, not meaning. Other text is sent as it appears in your tenant: descriptions, alert titles, policy settings, eDiscovery search queries, job titles, departments and cities, license names and counts, sign-in countries, and device models.
A one-word name inside a sentence, such as a group called Sales, can also pass through as written.
A question asked from the search box with nothing open carries no tenant data at all. It is sent exactly as you typed it, and the panel tells you so before you press send.