← Journal

Privacy before prompting: a practical AI checklist

The safest prompt is not the most cleverly worded one. It is the one that contains only the information the task genuinely requires.

A person working privately on a laptop with code on screen
Photo by Nikita Belokhonov on Pexels.

A prompt is a data transfer

When you paste text into an online AI service, you are sending information to another system for processing. That does not automatically make the tool unsafe, but it means the decision deserves the same care you would apply to uploading a document or sharing it with a vendor.

Classify before you copy

Pause and identify the material. Is it public, internal, confidential, regulated, or personally identifying? Does it include customer records, credentials, medical information, legal advice, student data, private source code, or an unpublished business plan? If you cannot classify it, do not paste it until someone responsible can.

Minimize the input

Most tasks need less data than the original document contains. Replace names with roles, remove contact information, shorten examples, and provide only the paragraphs relevant to the question. Redaction must preserve the meaning needed for the task while removing details that could identify a person or organization.

Before you prompt
  • Do I have permission to use this information here?
  • Can I complete the task with a smaller or synthetic example?
  • Do I understand retention, training, and deletion settings?
  • Would disclosure cause harm if the data were exposed?
  • Can a human verify the output without sharing more data?

Understand the service mode

Consumer, team, enterprise, and API offerings may have different data terms and controls. Do not assume a brand name guarantees identical handling across every mode. Check the terms that apply to the account and feature actually being used, including connected files, browsing, memory, history, and third-party integrations.

Beware of indirect disclosure

Private information can enter through attachments, screenshots, browser connectors, meeting transcripts, or tools the assistant can call. Review permissions and the scope of connected accounts. A system with access to email and cloud storage has a different risk profile from a blank chat.

Treat output as potentially sensitive

A summary may reproduce details from the input. Generated output can also combine clues in ways that make a person identifiable. Store, share, and delete the output according to the sensitivity of the source—not according to how harmless the interface appears.

Build an organizational rule people can follow

“Never use AI” is often ignored; “be careful” is too vague. A usable rule names approved tools, prohibited data, allowed tasks, review requirements, and a contact for uncertainty. Include examples. Revisit the rule when services, integrations, or legal obligations change.

Privacy and accuracy are connected

Removing too much context can reduce output quality, while sharing everything creates unnecessary exposure. The solution is not maximal input but deliberate input: the smallest sufficient context, supplied through an approved channel, for a result that remains reviewable.

Sources and further reading

Editorial note: This general information is not legal advice. It was prepared with AI assistance and reviewed for practical privacy guidance by LifeTechGlow.