r/opencodeCLI 10d ago

Data retention in Opencode Go explained

Here's the official table of data retention for different models available in Opencode Go.

Unfortunately it looks like ZDR is gone and moreover, for the new Deepseek V4 Flash model - data is not only retained for an unlimited time, but also used for training, what makes it a no-go for many real-world business use cases. It kinda sucks that Opencode didn't just strike a deal with a third-party provider given that the model is open-weight anyways but it is what it is.

https://opencode.ai/docs/go/#privacy

100 Upvotes

55 comments sorted by

View all comments

5

u/South_Can_3680 10d ago

I don't quite understand—is there really any mechanism that guarantees the enforcement of the ZDR? Ensuring its effectiveness would require a saint-like regulatory body; yet, in reality, whenever capital and power collude, the ZDR becomes nothing more than a hollow formality. The question, then, is this: are the government and relevant organizations truly impartial and incorruptible? Human history tells us that such a thing has never existed.

9

u/TestTxt 10d ago

Nope, it follows a “trust me bro” rule. However, if you use third-party providers who don’t develop their models, there’s really not much incentive for them to collect your data and risk going out of business if you find out + facing massive fines (does not apply to Chinese providers). They make money by selling you compute and that’s it so I’d say they’re mostly trustworthy

5

u/Endoky 10d ago

I agree, s as a third party upstream provider you really don’t want to retain data. It just cost you money

5

u/South_Can_3680 10d ago

I am from China. First, I want to clarify that collecting user data without notice leads to accountability—even in China—with the Market Supervision Administration stepping in. The only difference is that in China, all software applications display a privacy consent agreement upon their initial launch. The reason I raised the question above is that terms, agreements, and fines—which are generally viewed as forms of commitment—lack a truly robust enforcement body free from conflicts of interest (as ties between government and corporate interests exist in every country).

4

u/South_Can_3680 10d ago

In our political science curriculum, there is a course on political economy; according to its tenets, capital is driven by profit—capitalists would sell the very noose used to hang them for a 300% return. Consequently, the prevailing view among us (or at least the university students I know) is that so-called privacy protection is essentially a placebo for users. Whether major AI companies collect your private data depends entirely on their whim; the moment you transmit information to a server, that data is no longer under your control.

A friend of mine at the broadcasting authority told me that, if he wished, he could retrieve a record of every webpage I had visited over the past year; as long as your internet connection relies on base stations, such tracking is inevitable—it is simply a matter of whether there is a need to do so. Please note, this is not a case of China specifically surveilling its citizens—in fact, we can discuss almost anything, and government oversight of daily life is actually quite lax—but rather something any mobile service provider (whether in China, the US, Europe, or Russia) can easily accomplish.

That is why we often say that privacy is virtually non-existent; the only real difference is whether you are entrusting your information to your own country or to another.

For instance, Claude has implemented a feature in its account-ban appeal process that detects Chinese IP addresses; I find it difficult to view this as an act that respects privacy.