This checks your instinct to protect customer data and follow secure protocols, showing you understand the sensitivity of personal information even in informal channels.
Show that you prioritize data security over convenience. Describe the steps: don't store/save, notify user, delete, redirect to secure channel, and escalate internally.
Start by making the customer feel heard, then protect them from their own goodwill. Say plainly that you will not save, forward, or open the image further than necessary, and that you are deleting it right away to keep their information safe. Explain that this is not about being unhelpful but about following security protocols that exist for their benefit, especially since government IDs are prime targets for identity theft. Then walk them through the secure path: direct them to the official verification channel, whether that is a verified link, a dedicated email, or a phone line, and assure them that their concern will be handled properly there. If the customer hesitates or seems confused, stay calm and use a reassuring Taglish tone, something like, "Huwag po kayong mag-alala, iingatan namin ang inyong impormasyon," to keep the interaction warm without compromising the rule. Internally, flag the incident to your supervisor or data privacy officer so the team can reinforce the correct channel and, if needed, remind the customer not to send sensitive documents through social media again. The key is to treat the image as a live threat, not a convenience, and to make the customer feel that your caution is care, not bureaucracy.
Saying 'Sige po, i-send ko po sa IT yung ID niyo para ma-fix agad.' This is a serious privacy breach. Instead, say: 'I would not save or share the image. I'd inform the customer that for their protection, I'll delete it and redirect them to our secure support channel where their data will be handled properly.'
Situation
As a community manager for a fintech app, I once received a DM from a distressed user who included a clear photo of their UMID card, asking us to fix a login issue immediately.
Task
I had to help the user without mishandling sensitive personal information and without creating a compliance risk.
Action
I did not save or forward the image. I immediately replied to the user advising them not to send sensitive documents via social media, and that for their security, we would delete the message. I then followed our protocol by moving the conversation to our official support email, where we could request verification securely through our ticketing system. I flagged the interaction to our data protection officer and asked for guidance on whether we needed to log the incident. I also suggested to my manager that we create an auto-reply message for similar DMs in the future, reminding users of the proper channel.
Result
The user was successfully assisted via email within the day, and the incident prompted our team to implement an automated DM disclaimers warning about sharing sensitive data, which reduced similar occurrences by 80%.
Never treat social DMs as a secure channel for personal data, and always escalate when in doubt.
Write your own answer, then get instant AI feedback graded against:
Get AI feedback on your answer — free.
3 free AI-graded answers + 1 free mock interview, no card needed.
Sign Up FreeAlready have an account? Log in
Sign in to join the conversation.
No answers shared yet — be the first to show how you'd approach this.
Undisclosed Sponsored Post Response
Social & Influence Manager
Splitting A Limited Social Budget
Social & Influence Manager
Campaign Growth And Measurement
Social & Influence Manager
Juggling Multiple Brand Voices
Social & Influence Manager