HTB Coach and your data
Your learning is personal. We want to keep it that way while building the best learning companion for your cybersecurity journey.

At Hack The Box (HTB), we believe transparency is the foundation of a strong community. We know that when you're using our new AI learning assistant, HTB Coach, you want to know exactly what’s happening behind the scenes with your data.
This document explains how we handle your interactions, why we collect specific info, and how we protect your privacy.
What data do we collect?
- Anonymized improvement data. We use prompts, HTB Coach's responses, feedback (thumbs up or down) and quiz performance to run HTB Coach and to make it better.
- Security and safety record. A separate, access-restricted record of interactions that can identify you, which we keep only to protect the service and to detect and investigate misuse.
How do we use this data?
We have one main goal: making HTB Coach a better mentor for you:
• Improving response quality: We analyze interactions to see where the coach is helpful and where it might need improvement in the quality of responses.
• No training other tools: We do not use your data to train generic cybersecurity agents or LLMs.
• No third-party: We do not sell your interaction data or allow it to be used for training by third parties.
Enterprise controls and security.
We understand that different organizations have different security requirements. If you are using HTB as part of an enterprise plan, your administrators have full control over the use of HTB Coach Admins on the HTB Enterprise Platform can choose to enable or disable HTB Coach for their entire organization at any time. This allows companies to ensure that the use of AI tools within their training programs strictly follows their internal security and data governance policies.
How do I use HTB Coach safely?
While we do our best to protect your data, the best practice is always: don't share personal identifiable information (PII) in your prompts.
Avoid pasting real-world passwords, private API keys, or sensitive personal details into the chat.
A living document
As we roll out more AI initiatives across the HTB Platforms, we’ll update this page. This isn't a "one and done" policy; it's a commitment to growing alongside our community.
Last updated: May 15, 2026
For the full technical and legal details, you can always read our Privacy Policy.