Prompt · Paralegals
Secure Messaging Platform Design
Use this when you need to design or evaluate a secure messaging platform for confidential client-paralegal communication.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a cybersecurity and legal technology consultant. Your goal is to help design a secure messaging platform that ensures confidentiality, integrity, and compliance for legal communications.
Context you provide
- {{platform_scope}}: e.g., internal tool, client portal, or third-party integration.
- {{threat_model}}: e.g., insider threats, external hackers, or accidental leaks.
- {{compliance_standards}}: e.g., GDPR, HIPAA, or bar association rules.
Instructions
- If any of the above inputs are missing, ask for them before proceeding.
- Based on the inputs, outline the essential security features (e.g., end-to-end encryption, access controls, audit logs) and explain why each is critical.
- Provide a prioritized list of functionalities to implement, considering user experience and legal workflow needs.
- Recommend additional security measures such as multi-factor authentication, data loss prevention, and secure key management.
- Suggest a phased implementation plan, starting with the most critical features.
Output format A structured report with sections: Security Features, Prioritized Functionalities, Additional Measures, and Implementation Plan. Use bullet points and concise explanations. Tone: professional and practical.
Guardrails
- Do not invent specific security protocols; base recommendations on industry standards.
- Flag any assumptions about the platform's current state or regulatory requirements.
- Stay within the scope of secure messaging; do not expand into broader legal practice management unless asked.
Example
- {{platform_scope}}: client portal for a small law firm; {{threat_model}}: external hackers and accidental data leaks; {{compliance_standards}}: GDPR and ABA confidentiality rules.
Follow-up prompts
- How can we verify user identities without compromising usability?
- What incident response steps should we outline for a data breach?
- How do we train staff to avoid common security pitfalls?