Curriculum previewThis is not your assigned passport. No identity, answers, or completion progress are stored here.How to start your passport
Handbook / policy

policy

IDEAL Lab Data And AI Policy

Use ETH's PUBLIC, INTERNAL, CONFIDENTIAL, and STRICTLY CONFIDENTIAL levels. The information owner classifies the project and approves systems. Unpublished research and data awaiting publication may be confidential; do not classify it yourself merely because you created the file.

Field Value
Owner Project information owner with IDEAL Lab IT
External facts verified 2026-08-26
Review by 2026-11-26

Data Classification#

Use ETH's PUBLIC, INTERNAL, CONFIDENTIAL, and STRICTLY CONFIDENTIAL levels. The information owner classifies the project and approves systems. Unpublished research and data awaiting publication may be confidential; do not classify it yourself merely because you created the file.

AI Tools#

  • Check the current ETH assessment for the exact tool and account mode.
  • Strictly confidential information must not enter external cloud/AI services.
  • Confidential, personal, partner, licensed, or unpublished material requires explicit approved handling.
  • Minimize prompts and repository context.
  • Never provide credentials, private keys, or recovery information.
  • Review output for correctness, fabricated claims/citations, licenses, bias, and inappropriate disclosure.
  • Agree AI use and disclosure expectations with the supervisor.

Approval is contextual. A tool approved for one classification or account mode is not automatically approved for every project or plugin/integration.

Personal AI Accounts And Costs#

  • The manual workflow and GitHub Copilot Student route require no personal AI purchase for eligible verified students.
  • Zed with personal OpenRouter or any other paid personal service is optional, not a passport requirement.
  • Unless explicit written approval is given before a purchase, IDEAL Lab does not provide credits, reimburse charges, administer a personal account, or recover unused credits.
  • The personal account holder is responsible for usage, charges, key security, monitoring, auto-recharge settings, taxes/fees, and current provider terms.
  • A spending limit reduces financial risk; it does not approve project data, guarantee technical correctness, or replace usage monitoring.
  • Lab-funded access for eligible PhD students, postdocs, or staff follows the separate internal lab handbook. Do not assume personal costs will be moved or reimbursed later.

The complete student-facing warning and setup are in Optional Zed and personal OpenRouter.

AI-Agent Execution Boundaries#

  • Start read-only when explanation or review is sufficient.
  • Grant access only to the repository, files, and tools required for the task.
  • Prefer one-time approval for a reviewed command over broad persistent access.
  • Never grant an agent access to credentials, private keys, recovery material, or unrelated home/project directories.
  • An agent may write files, install software, use the network, commit/push Git changes, or start remote/Slurm work only when a human explicitly requests that action and reviews its scope.
  • A sandbox limits impact; it does not prove that a command or result is safe.
  • Inspect the diff and verification output before accepting or publishing work.

Repository And Storage Boundaries#

  • Commit source, tests, small fixtures, configuration examples, and docs.
  • Do not commit real .env files, credentials, datasets, checkpoints, generated results, or local editor/Obsidian state.
  • Put project data in the supervisor-approved NAS/Euler location.
  • Record authoritative, working, temporary, and final copies.

Incident Rule#

If protected material or a credential enters Git or an unapproved AI service, stop sharing, contain the credential/access risk, preserve sanitized evidence, and notify the information owner and lab IT promptly.

Primary ETH Sources#

Primary Vendor Sources For Personal Accounts#