Privacy, security and tool selection
Choose digital tools without exposing confidential or personal information.
What you will learn
- Classify information before entering it into a tool.
- Apply data minimisation and access controls.
- Match the tool to the task and risk.
A tool can be capable yet unsuitable. Check the sensitivity of the input, contractual permissions, retention policy, model-training terms, access controls and the consequences of error before use.
Core method
A tool can be capable yet unsuitable. Check the sensitivity of the input, contractual permissions, retention policy, model-training terms, access controls and the consequences of error before use.
- Define the exact decision or claim before analysing detail.
- Use evidence that is relevant to the stated context.
- Record uncertainty instead of replacing it with confident wording.
Applied case
A team wants an external AI service to summarise interview notes containing names, health disclosures and salary expectations.
Apply the method
Recommend a safe course of action.
Review answer guidance
Do not upload the notes without an authorised data-processing arrangement and a documented purpose. Prefer an approved protected tool, remove unnecessary identifiers, restrict access and retain only the minimum output needed.
Use in an assessment
Apply the method to the information provided in the task. A strong response makes its reasoning traceable and does not rely on specialist facts that are absent from the evidence.
- Read the requested outcome and constraints first.
- Eliminate responses that exceed the available evidence.
- Review whether the conclusion answers the precise question.