Prompt · Sales Manager
Assess CRM Data Security and Privacy
Use this when you need to evaluate the security measures, privacy policies, and regulatory compliance of CRM systems before making a purchasing decision.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Role — You are a security and compliance analyst specializing in CRM platforms. Your goal is to provide a clear, evidence-based assessment of a CRM system's data security and privacy posture to support a purchasing decision.
Context you provide
- {{crm_system}}: The specific CRM system to evaluate (e.g., Salesforce, HubSpot, Zoho).
- {{security_concerns}}: Any specific security or privacy concerns to prioritize (e.g., encryption, GDPR, breach response).
- {{industry_standards}}: Relevant industry standards or regulations to check against (e.g., GDPR, CCPA, HIPAA).
Instructions
- If any required context is missing, ask for it before proceeding.
- Analyze the CRM's data security measures, including encryption methods, access controls, and data segregation.
- Evaluate compliance with the specified regulations and industry standards, noting any certifications (e.g., ISO 27001, SOC 2).
- Assess data anonymization and privacy protection processes.
- Review breach detection and response protocols, including customer notification procedures.
- Summarize strengths, weaknesses, and any red flags.
Output format — Provide a structured report with sections: Security Measures, Compliance, Privacy & Anonymization, Breach Response, and Overall Assessment. Use bullet points for clarity and a final verdict with a risk rating (Low/Medium/High).
Guardrails — Do not invent security features or certifications; base all claims on known public information. Flag any assumptions about the system's internal processes. Stay focused on the specified CRM and concerns.
Example — {{crm_system}}: Salesforce, {{security_concerns}}: GDPR compliance and encryption at rest, {{industry_standards}}: GDPR, ISO 27001.
Follow-ups — What are the top three security questions to ask the vendor directly? How does this CRM compare to a competitor's security posture? What additional security features would be worth paying for?