Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 6 additions & 4 deletions models/artifacts/data-privacy-and-compliance.mdx
Original file line number Diff line number Diff line change
Expand Up @@ -4,18 +4,20 @@ description: Learn where W&B files are stored by default. Explore how to save, s
title: Artifact data privacy and compliance
---

Files are uploaded to Google Cloud bucket managed by W&B when you log artifacts. The contents of the bucket are encrypted both at rest and in transit. Artifact files are only visible to users who have access to the corresponding project.
Files are uploaded to a Google Cloud bucket managed by W&B when you log artifacts. The contents of the bucket are encrypted both at rest and in transit. Artifact files are only visible to users who have access to the corresponding project.

<Frame>
<img src="/images/artifacts/data_and_privacy_compliance_1.png" alt="GCS W&B Client Server diagram" />
</Frame>

When you delete a version of an artifact, it is marked for soft deletion in our database and removed from your storage cost. When you delete an entire artifact, it is queued for permanently deletion and all of its contents are removed from the W&B bucket. If you have specific needs around file deletion please reach out to [Customer Support](mailto:support@wandb.com).
When you delete a version of an artifact, it is marked for soft deletion in our database and removed from your storage cost. When you delete an entire artifact, it is queued for permanent deletion and all of its contents are removed from the W&B bucket. If you have specific needs around file deletion, reach out to [Customer Support](mailto:support@wandb.com).

For sensitive datasets that cannot reside in a multi-tenant environment, you can use either a private W&B server connected to your cloud bucket or [reference artifacts](/models/artifacts/track-external-files). Reference artifacts track references to private buckets without sending file contents to W&B. Reference artifacts maintain links to files on your buckets or servers. In other words, W&B only keeps track of the metadata associated with the files and not the files themselves.
By default, deleted artifacts are retained for 7 days and can be restored during this period, which is configurable for Dedicated Cloud. Learn more about data retention in [Multi-tenant Cloud](/platform/hosting/hosting-options/multi_tenant_cloud#data-retention-policy) or [Dedicated Cloud](/platform/hosting/hosting-options/dedicated_cloud#data-retention-policy).

For sensitive datasets that cannot reside in a multi-tenant environment, you can use [W&B Dedicated Cloud](/platform/hosting/hosting-options/dedicated_cloud) or [reference artifacts](/models/artifacts/track-external-files). Reference artifacts track references to private buckets without sending file contents to W&B. Reference artifacts maintain links to files on your buckets or servers. W&B only keeps track of the metadata associated with the files, not the files themselves.

<Frame>
<img src="/images/artifacts/data_and_privacy_compliance_2.png" alt="W&B Client Server Cloud diagram" />
</Frame>

For alternatives, contact us at [contact@wandb.com](mailto:contact@wandb.com) to talk about private cloud and on-premises installations.
For more information about deployment options, see [Dedicated Cloud](/platform/hosting/hosting-options/dedicated_cloud) or [Self-Managed](/platform/hosting/hosting-options/self-managed). To discuss your specific requirements, contact [contact@wandb.com](mailto:contact@wandb.com).
25 changes: 25 additions & 0 deletions platform/hosting/hosting-options/dedicated_cloud.mdx
Original file line number Diff line number Diff line change
Expand Up @@ -50,6 +50,31 @@ To understand how W&B manages updates on Dedicated Cloud, refer to the [server r

Security controls for W&B Dedicated Cloud are periodically audited internally and externally. Refer to the [W&B Security Portal](https://security.wandb.ai/) to request the security and compliance documents for your product assessment exercise.

## Data retention policy
By default, a Dedicated Cloud instance retains the following items for 7 days after deletion:
- Runs and history
- Non-artifact run files, such as media, configuration files, and log files
- Artifacts and artifact references

Until this period elapses, these items can be restored. Contact [support](mailto:support@wandb.ai) or your AISE for assistance.

To meet your data retention requirements, you can change the data retention period for your Dedicated Cloud instance. Depending on your use case, select the **Environment variable** or **Helm** tab for details.

<Tabs>
<Tab title="Environment variable">
To change the data retention policy, set the environment variable `GORILLA_DATA_RETENTION_PERIOD` to a number of hours. For example, to retain deleted data for 14 days (336 hours):
```bash
export GORILLA_DATA_RETENTION_PERIOD="336h"
```
</Tab>
<Tab title="Helm">
To change the data retention policy, set the Helm value `env.dataRetentionPeriod` to a number of hours. For example, to retain deleted data for 14 days (336 hours):
```helm
env: dataRetentionPeriod: "336h"
```
</Tab>
</Tabs>

## Migration options

Migration to Dedicated Cloud from a [Self-Managed instance](/platform/hosting/hosting-options/self-managed) or [Multi-tenant Cloud](/platform/hosting/hosting-options/multi_tenant_cloud) is supported, subject to specific limits and migration-related constraints
Expand Down
8 changes: 8 additions & 0 deletions platform/hosting/hosting-options/multi_tenant_cloud.mdx
Original file line number Diff line number Diff line change
Expand Up @@ -24,6 +24,14 @@ Users on an Enterprise plan can [bring their own bucket (BYOB) using the secure

You are responsible for ensuring that your deployment complies with your organization's policies and [Security Technical Implementation Guidelines (STIG)](https://en.wikipedia.org/wiki/Security_Technical_Implementation_Guide), if applicable.

## Data retention policy
Multi-tenant Cloud retains the following items for 7 days after deletion:
- Runs and history
- Non-artifact run files, such as media, configuration files, and log files
- Artifacts and artifact references

Until this period elapses, these items can be restored. Contact [support](mailto:support@wandb.ai) or your AISE for assistance.

## Identity and access management (IAM)
If you are on an Enterprise plan, enhanced identity and access managements capabilities allow for secure authentication and effective authorization for your W&B deployment:

Expand Down