Classify the information before entering it
Do not enter customer personal data, account or card numbers, credentials, business secrets, internal incidents, contracts or unpublished code into a public AI service without organisational approval and verified processing terms.
Even with an approved tool, provide only what the task needs. Remove names, identifiers and details that do not change the task. Replacing a name is not full anonymisation if a person can still be identified from the remaining details.
Use an approved account and service
- Perform work through an account and service approved by your organisation.
- Check whether input is used for model training, how long it is retained and who can access it.
- Do not assume a paid version automatically satisfies organisational policy.
- Do not enter information when its destination and accountable owner are unclear.
Restrict plugins and integrations
An AI plugin may request email, calendar, contact, cloud-drive or business-application access. Check the publisher, purpose and each permission. If the task needs a calendar, access to all mail and files is a reason to stop.
Review connected applications periodically and remove those no longer used. A password change alone may not revoke access previously granted to an integration.
Verify the output before using it
Treat an AI output as a draft. Check:
- facts, figures, dates and cited sources;
- whether an important condition or exception is missing;
- whether the output reveals data that should not be included;
- whether the decision belongs to a person or a defined process;
- whether the document should be marked as a working draft.
Do not allow AI to approve a payment, change recipient details or send a sensitive message without the appropriate control.
If confidential information was already entered
- Stop adding information and record the service, account, time and affected content.
- Use available controls to delete the conversation, file and related data, but do not assume this completely reverses the event.
- Notify the data owner and relevant security, privacy or legal team under organisational procedures.
- Revoke unnecessary integrations and active tokens.
- If a password, key or other secret was entered, replace it through the official process and review its use.