Question for those using Claude Code / Codex with real client work:
How do you think about confidential client material when using a personal Claude or OpenAI account?
I’m trying to understand the practical standard for responsible handling of client data — especially when working with client files in a local folder structure through personal Claude Code / Codex.
Is this normal responsible AI-assisted work if settings are configured correctly, or should confidential client material only be handled through business/enterprise setups, signed DPAs, or local/self-hosted environments?
Especially interested in how people advising serious clients / regulated industries are handling this in practice.