Skip to main content

Storm Privacy, Security and Data Usage FAQ

Understand how Sitemate handles customer data in Storm, what's sent to AI providers, and how AI features work without using your data to train models

Written by Nina Yang

Is customer data safe?

Yes. Security is built into every layer of Storm.

Authentication

AI Form Fill and AI Templates can only be used by signed-in Dashpivot or Sitemate users. AI features cannot access data without a valid login.

Access

Users can only view and act on data they already have permission to access in Dashpivot.

AI Form Fill and AI Templates respect existing Dashpivot permissions and access controls.


Will Dashpivot data be used to train or improve AI models?

No. Sitemate does not use customer data to train AI models.

Data submitted through AI Form Fill and AI Templates is not used to improve or train third-party AI models.

Storm improvements are made through software updates, prompt engineering and workflow improvements — not by training AI models on customer data.


What data is sent to AI providers?

Storm only processes the information required to complete the specific AI request.

AI Form Fill

AI Form Fill only processes:

  • the form fields being filled

  • voice recordings

  • uploaded photos

  • notes or instructions

  • contextual information attached to the session, such as weather or location data

Storm does not access your wider Dashpivot workspace, unrelated forms, project data, or user directory unless it is part of the active session context.

AI Templates

AI Templates only processes:

  • the prompt entered by the user

  • uploaded files such as Word documents, PDFs, Excel files, or images


Which AI models does Storm use?

Storm uses multiple AI models depending on the task being performed.

Different models may be used for:

  • voice transcription

  • photo analysis

  • language understanding

  • content drafting

Sitemate selects the most appropriate model for each task based on performance, accuracy and reliability requirements.

Sitemate may update or improve underlying AI models over time to improve performance and accuracy.


Who controls whether AI features are enabled?

Org Controllers can manage AI feature access and controls.

AI Form Fill controls

AI Form Fill can be configured at:

  • workspace level

  • template level

  • field level

This allows teams to control where AI-generated responses are allowed.

AI Templates controls

AI Templates can currently be configured at:

  • workspace level


Is AI usage visible in the audit trail?

Yes.

AI Form Fill

AI Form Fill sessions are recorded in the Form Activity Feed, including:

  • transcript visibility

  • processing activity

  • AI-generated updates

AI Templates

AI Template generation and updates are tracked in template version history.

Standard Dashpivot audit logs continue to capture:

  • who created records

  • who edited records

  • when changes occurred


Does Storm automatically submit forms?

No. Storm is designed to assist with drafting and completing forms, but users remain responsible for reviewing and submitting final content.

Users must still:

  • review outputs

  • edit responses if needed

  • manually save or submit forms

Required fields and workflow rules still apply.

Storm also never fills certain field types regardless of input: signatures and sign-off fields, system-generated numbers (permit numbers, GRNs, document numbers), and prefilled template content. These always require manual action.


Can Storm hallucinate or generate incorrect information?

Like all AI systems, Storm may occasionally produce inaccurate or incomplete outputs.

To help reduce this:

  • users review all generated content before submission

  • confidence thresholds are used during processing. Where Storm's confidence is low, it flags the field for user review rather than filling it with a guess.

  • admins can restrict which fields AI can write to

For critical workflows, Sitemate recommends maintaining human review processes.


Can Storm understand multiple languages?

Yes. Storm can process multilingual input, including voice recordings in supported languages.

Storm translates dictated input into the template's language by default. To keep input in its original language, users can state this explicitly — for example, 'write this in Spanish' or 'don't translate.'

Proper nouns such as names, brands, asset IDs, and standards codes are always preserved verbatim regardless of language. Quoted content stays in its original language. Bilingual field labels (e.g. 'Description / Descripción') are filled on both sides, matching the label's separator.


Related Articles

Did this answer your question?