Skip to content

Add PII storage and PHI specification under Guides > Security > Application#788

Merged
KurodaSteph merged 2 commits into
mainfrom
kurodasteph-Add-PII-storage-and-PHI-specification-under-PII-in-Guides
Apr 20, 2026
Merged

Add PII storage and PHI specification under Guides > Security > Application#788
KurodaSteph merged 2 commits into
mainfrom
kurodasteph-Add-PII-storage-and-PHI-specification-under-PII-in-Guides

Conversation

@KurodaSteph
Copy link
Copy Markdown
Contributor

Ref. https://hub.thoughtbot.com/tickets/8715

We are connecting Anthropic Claude Team account to Google Drive, Calendar, Slack, and Figma. Some PII like emails related to sales may live in Google Drive.

While this is not Handbook, in Guides, we want to be explicit that:

but we want to be explicit that:

When you must store PII:

  • Store sensitive data in controlled systems with appropriate access restrictions and encryption. In particular, Protected Health Information (PHI) should not be stored in broad, shared tools such as Google Drive, Slack, or Figma.

While this PR is for Guides, we have a corresponding PR in Handbook where this Guides guidance is a Handbook policy: https://github.com/thoughtbot/handbook/pull/4422

@KurodaSteph
Copy link
Copy Markdown
Contributor Author

Thanks, @JoelQ!

@KurodaSteph KurodaSteph merged commit e5bbe37 into main Apr 20, 2026
2 checks passed
@KurodaSteph KurodaSteph deleted the kurodasteph-Add-PII-storage-and-PHI-specification-under-PII-in-Guides branch April 20, 2026 21:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants