LawVu logo

Artificial Intelligence at LawVu: Security & Privacy FAQ

Last Updated: 12 March 2026

Information security is at the centre of everything we do. LawVu is committed to maintaining a trust and compliance program that aligns with the needs of your organization, including those associated with any AI powered tools supplied as part of our services.

In addition to our Trust Centre pillars, Security, Reliance, Privacy and Compliance, LawVu uses and designs AI powered tools following its Principles for AI.

Our security and privacy practices that apply to AI powered tools will be updated as these services evolve. LawVu will ensure that our security and privacy program align with industry best practices and adheres to all applicable laws.

LawVu AI Powered Products

When LawVu refers to “LawVu AI Powered Products”, we mean functionality provided in the LawVu Services such as AI product features or automation capabilities.

FeaturePartner Technology
Contract ExtractionMicrosoft Azure OpenAI
Bulk Contract ImportMicrosoft Azure OpenAI
Invoice ExtractionMicrosoft Document Intelligence
Workspace IntelligenceDocument Intelligence, Content Understanding
Billing GuidelinesMicrosoft Azure OpenAI, Document Intelligence, Content Understanding
CoPilot IntegrationIntegrates with Customer’s existing licenses to Microsoft CoPilot
Drafting & ReviewingMicrosoft Azure OpenAI, Microsoft Azure AI Search

In addition to LawVu’s existing security and privacy practices, LawVu is aligned with the new ISO42001 standard for AI Management Systems and is actively pursuing independent audit and certification.

LawVu has also adopted AI Principles for the use, development and implementation of AI tools.

LawVu is using third-party services as set out in the table above to power the AI Powered Products available in the LawVu Services.

No, neither directly nor indirectly. We do not use your data to train any models or allow our third-party service providers to train their models using your data. Your inputs and outputs to the AI service are also not used for training purposes.

No. Because LawVu handles highly sensitive customer data, we operate under an exemption from Microsoft’s standard Azure OpenAI monitoring terms. This means Microsoft is not permitted to access or monitor our Azure OpenAI usage.

AI Powered Products are a proven tool to increase efficiency, provide valuable insights and scale legal services - all with less effort. LawVu wants to support you to engage with this technology. However, we understand that these are new technologies, and our customers have different adoption rates and risk profiles. As such, we will provide you with a clear and explicit opportunity to opt into our AIpowered products in the LawVu Workspace that use Generative AI technologies, or are a core component of the AI-powered product before you enable them. We have decided to enable some AI features that do not have a Generative AI component (e.g. invoice extraction) by default. This decision has been made after full review against LawVu’s extensive security and privacy and data practices.

LawVu is a cloud-based company and primarily runs on Microsoft Azure. LawVu’s engineering team has helped to closely test many of Microsoft’s new technologies and LawVu’s security and privacy teams determined that the visibility we had into their product development was in accordance with preexisting thorough and regular due diligence of this long-time service provider. Microsoft provides extensive information to all users of its AI product, including the Microsoft Responsible AI Standard, which meets our goals of providing transparent information on the use of AI tools to our customers.

Organization Admins can choose to enable or disable new LawVu features within the LawVu Workspace and manage user permissions at any time. LawVu Draft requires separate enablement. To access LawVu Draft, please contact your Customer Success Manager.

You can discontinue use. Our AI powered products do not use your data for any purpose other than to provide the service to you. Interactions with our AI powered tools are transactional and do not retain your data.

Your User Data is stored in your designated Data Stack Location, as specified in your SaaS Agreement with LawVu. Certain AI-powered products may process data outside of your selected Data Stack Location, as outlined in our Subprocessor List, for the purpose of generating outputs. Any User Data processed in this way is handled only transiently and solely to deliver the relevant AI‑powered features.

For information about LawVu’s general subprocessing practices, please refer to our Subprocessor List.

Your company's data remains logically segregated from any other data and is not used to train public models. Your company's data is kept safe and secure by LawVu’s Information Security program. Please see our Security Pack for more information.

LawVu maintains a comprehensive data privacy program, including a commitment to GDPR and CCPA compliance which is audited by a third party. LawVu ensures that its practices are evolving with developing privacy and security laws and standards that apply to AI. LawVu will continue to complete privacy data impact assessments for all new AI features and functionality.

LawVu’s use of AI systems inherits the same application security and privacy controls as our hosted software and use of third-party service providers. Our standard authentication and authorization controls are applied prior to any processing being conducted by AI systems. All communication continues to use encryption for data in transit and customer data continues to be encrypted at rest.

All users will be required to acknowledge our Acceptable Use Policy for using AI Powered Products that rely on generative AI technologies. These terms also form part of your SaaS Agreement with LawVu.

LawVu has Data Processing Agreements with all of our subprocessors, and those providing us with AI systems are no exception. By contract and by law, these subprocessors must maintain regulated standards for privacy and security.

No. All AI models used in LawVu are provisioned and fully managed by LawVu to ensure they meet our security, privacy, and performance requirements. This approach ensures consistent and reliable AI experiences for all customers.